Live data from Hacker News

Curl: We still have not seen a valid security report done with AI help

linkedin.com

11–20 of 258 posts

Re: Curl: We still have not seen a valid security report done with AI help

#11
post #5
post #3

Earlier quoted context omitted.

Fortunately, they can beat an automated idiot agent, which is much closer to what we have today.

[flagged]

This very thread is about LLMs hallucinating too much today. The curl dev is reporting a zero percent hit rate on automated bug reports in TYOOL 2025. You could say that's an example of the toupee fallacy, but nobody is showing up to defend the AI tools they used for valid curl bug reports either.

Re: Curl: We still have not seen a valid security report done with AI help

#13
post #10
post #7

Earlier quoted context omitted.

[flagged]

You're moving into delusional territory here. He is not being "exhaustively probed," he is being "constantly spammed by confidently incorrect nonsense."

Clearly the answer is to have an AI assistant handle all the reports from bogus AI auditors.

It's all turtles, all the way down.

Re: Curl: We still have not seen a valid security report done with AI help

#14
post #2

[flagged]

Did you actually read the objection? They are basically getting DDoS by spurious vuln reports. How do you "get over" that.

Don’t you see? The boy who cried wolf was just using the wrong terminology, he was exhaustively probing the village’s disaster recovery methods. I wonder what other fables can receive such a helpful reframing.

Re: Curl: We still have not seen a valid security report done with AI help

#15
Something that really frustrates me about interacting with (some) people who use AI a lot is that they will often tell me things that start “I asked ChatGPT and it said…” stop it!!! If the chatbot taught you something and you understood it, explain it to me. If you didn’t understand or didn’t trust it, then keep it to yourself!

Re: Curl: We still have not seen a valid security report done with AI help

#17

Earlier quoted context omitted.

Did you actually read the objection? They are basically getting DDoS by spurious vuln reports. How do you "get over" that.

Don’t you see? The boy who cried wolf was just using the wrong terminology, he was exhaustively probing the village’s disaster recovery methods. I wonder what other fables can receive such a helpful reframing.

[deleted]

Re: Curl: We still have not seen a valid security report done with AI help

#18

Something that really frustrates me about interacting with (some) people who use AI a lot is that they will often tell me things that start “I asked ChatGPT and it said…” stop it!!! If the chatbot taught you something and you understood it, explain it to me. If you didn’t understand or didn’t trust it, then keep it to yourself!

Thanks for this. It's a great response I intend to use going forward.

Re: Curl: We still have not seen a valid security report done with AI help

#19

Something that really frustrates me about interacting with (some) people who use AI a lot is that they will often tell me things that start “I asked ChatGPT and it said…” stop it!!! If the chatbot taught you something and you understood it, explain it to me. If you didn’t understand or didn’t trust it, then keep it to yourself!

Thanks for this. It's a great response I intend to use going forward.

[deleted]

Re: Curl: We still have not seen a valid security report done with AI help

#20
post #10

Earlier quoted context omitted.

You're moving into delusional territory here. He is not being "exhaustively probed," he is being "constantly spammed by confidently incorrect nonsense."

Clearly the answer is to have an AI assistant handle all the reports from bogus AI auditors. It's all turtles, all the way down.

[flagged]
Post reply on HN