Live data from Hacker News

Death by a Thousand Slops

daniel.haxx.se

141–149 of 149 posts

Re: Death by a Thousand Slops

#141
post #48

Earlier quoted context omitted.

>They could offer value, but just rarely, at least with the LLM/model/context they used. Eating human excrement can also offer value in the form of undigested pieces of corn and other seeds. Are you interested?

Funnily enough, fecal transplants (Fecal Microbiota Transplants, FMT) are a thing, used to help treat a range of diseases. It’s even being investigated to help treat depression. So…

Oh, certainly. I know that if I was the test subject, no matter what else happened it wouldn't be the worst thing done to me that day :)

Re: Death by a Thousand Slops

#142

And it's not just vulnerability reports that are affected by this general trend. I use social media, X specifically, to follow a lot of artists, mostly for inspiration and because I find it fun to share some of the work that other artists have created, but over the past year or so I find that the mental workload it takes for me to figure out if a particular piece of art is AI-generated is too much and I start leaning…

Genuine question; if you cant tell, why does it matter?

Volume.

It's like spam. Something like art used to have a value, like a message, because someone had to go to the trouble of making it. Now, nothing matters or has value because it's a flood of meaninglessness, like spam, so it stops mattering whether you can tell if it's a scam or whether maybe some random person DOES have a neat idea for stopping my back from hurting.

That person, and any artist, is now out of luck, because of volume. There are too many cheap reasons to pretend to be them, and like spam it's just unmanageable.

Re: Death by a Thousand Slops

#143
post #118

As the only developer maintaining a big bounty program. I believe they are all trending downward. I've recently cut bounties to zero for all but the most severe issues, hoping to refocus the program on rewarding interesting findings instead of the low value reports. So far it's done nothing to improve the situation, because nobody appears to read the rewards information before emailing. I think reading scope/rewards…

Putting on my tinfoil hat, I wonder if some of that slop might be coming from actual black-hat groups or state actors - who have an interest in making it harder to find and close real exploits. Those people wouldn't care about the bounty, overwhelming the system would be the point.

I think those people are busier overwhelming other, bigger systems right now, but it's a fair point. I daresay when you get down to a real salt-the-earth destroy-everything point, open source projects can expect destruction by the same people.

To say nothing of the uses of real exploits: that's salient.

Re: Death by a Thousand Slops

#144

LLM are a net negative on society on so many levels.

Email came with spam, and we solved it. Similarly, we're discovering the same with AI, and we'll solve it. No need to throw out the baby with the bathwater.

I barely use email any more, not just due to blatant spam, but also due to companies that I need to receive one notification email each time I do a transaction, or to verify an account, as an excuse to send me daily or weekly emails.

I can't necessarily block them because I might need them for a password reset or a future transaction. I spent a while trying to set up filters that work, but eventually got tired of trying to fight it.

Now I mostly just avoid email for anything other than these things, and have just given up on it otherwise.

Spam won. Email lost.

And social media services are losing in similar ways. Rather than showing me things from people I subscribe to, they're pushing all kinds of automated "content for you" that I don't want and can't opt out of. So I'm pulling away from them as well.

The internet is filling with slop and distraction, both AI generated and not, and we haven't "solved" it, it's constantly getting worse.

Re: Death by a Thousand Slops

#145
You could implement a deposit system. People submitting reports pay a deposit fee that gets refunded immediately after the report is confirmed not to be slop. That way, the only people who pay the fee are the ones who submit slop reports.

Re: Death by a Thousand Slops

#146
post #145

You could implement a deposit system. People submitting reports pay a deposit fee that gets refunded immediately after the report is confirmed not to be slop. That way, the only people who pay the fee are the ones who submit slop reports.

Did you read the link? That idea is covered there.

Re: Death by a Thousand Slops

#147
like most of bitchat's PRs, just pure slop. these are my certified classics though:

https://github.com/permissionlesstech/bitchat/pull/155

"Security audit: Fix critical encryption vulnerabilities"

https://github.com/permissionlesstech/bitchat/pull/219

"Satellite networking extension for BitChat". It doesn't even look like it's going to work...

https://github.com/permissionlesstech/bitchat/pull/199

"Secure Enclave key generation and retrieval to KeychainManager". Same folk, replying to themselves with AI.

Re: Death by a Thousand Slops

#148
post #145

You could implement a deposit system. People submitting reports pay a deposit fee that gets refunded immediately after the report is confirmed not to be slop. That way, the only people who pay the fee are the ones who submit slop reports.

Did you read the link? That idea is covered there.

Oh, whoops. I only saw that they mentioned charging a fee but thought it seemed hostile—I figured, seems like there's a way to mitigate that, but I guess they realized that too.
Post reply on HN