Live data from Hacker News

NIST's DeepSeek "evaluation" is a hit piece

erichartford.com

201–210 of 251 posts

Re: NIST's DeepSeek "evaluation" is a hit piece

#201

Earlier quoted context omitted.

Most of the claimed provinces of China did not belong to a historical nation of China. Tibet, Xinjiang are obvious. But even the other provinces were part of separate kingdoms. Also the BRI is a way to invade without invasion. It’s used to subjugate poor countries as servants of China, to do their bidding in the UN or in other ways. I would also classify the vast campaign of intellectual theft and cyberattacks as war…

Is this some kind of satire or are you just completely ignorant of European/US history? Either way its laughable to even compare IP theft to the invasion of Iraq or bombing of Cambodia. How do you think the industrial revolution got started in the US, they just did it on their own? Not to mention that the entire US was stolen from the natives.

No, it’s not laughable. Your insinuation that China doesn’t invade other countries, meant to imply they haven’t engaged in warfare, was false. And yes IP theft is comparable to invasions and often worse.

> Not to mention that the entire US was stolen from the natives.

This is partially true. But partially false. You can figure out why if you’re curious.

Re: NIST's DeepSeek "evaluation" is a hit piece

#202

Earlier quoted context omitted.

Like generating vulnerable code given a specific prompt/context. I also don't think it's just China, the US will absolutely order American providers to do the same. It's a perfect access point for installing backdoors into foreign systems.

Why would they do this? Deepseek is a private company not owned by the CCP. There's zero reason or even technical feasibility for them to skip in backdoor that would be easily detected and destroy their market share None of the security benchmarks or audits show that any Chinese models write insecure code

Companies in China have no intrinsic right to operate in ways that displease the ruling party. If the CCP feels strongly that a company there should or shouldn't do something the company managers will comply or be thrown in jail.

Re: NIST's DeepSeek "evaluation" is a hit piece

#203
post #49

Earlier quoted context omitted.

> While I agree this report is BS and xenophobic Examples please? Can you please share where you see BS and/or xenophobia in the original report? Or are you basing your take only on Hartford's analysis? But not even Hartford make any claims of "BS" or xenophobia. It is common throughout history for a nation-state to worry about military and economic competitiveness. Doing so isn't necessarily isn't necessarily xenoph…

> Can you please share where you see BS and/or xenophobia in the original report? Here’s an example of irrational fear: “the expanding use of these models may pose a risk to application developers, consumers, and to US national security.” There’s no support for that claim in the report, just vague handwaving at the fact that a freely available open source model doesn’t compare well on all dimensions to the most expen…

>> (me) The NIST report, of course, implicitly promotes ideals of western democratic rule over communist values

> (antonvs) If only that were true.

Using a charitable reading of your comment, it seems you are actually talking about the effectiveness of NIST, not about its mission. In so doing, you were not replying to my actual claim. If you read my sentence in context, I hope it is clear that I'm talking about the implicit values baked into the report. When I write that NIST promotes certain ideals, I'm talking about its mission, stated here [1]:

> To promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life.

This is explained using different words in a NIST FAQ [2]:

> Everything in science and technology is based on measurement. Everything we use every day relies upon accurate measurements to work. NIST ensures the measurement system of the U.S. meets the measurement needs of every aspect of our lives from manufacturing to communications to healthcare. In science, the ability to measure something and determine its value — and to do so in a repeatable and reliable way — is essential. NIST leads the world in measurement science, so U.S. businesses can innovate in a fair marketplace. We use measurement science to address new challenges ranging from cybersecurity to cancer research.

It is clear NIST's mission is a blend of scientific rigor and promotion of western values (such as free markets, free ideas, innovation, etc). Reasonable people can disagree on the extent to which NIST achieves this mission, but I don't think reasonable people can deny that NIST largely aims to achieve this mission.

My take on the Trump and his administration: Both are exceptionally corrupt by historical standards. They have acted in ways that undermine many of the goals of NIST. But one has to be careful to distinguish elected leaders and appointees from career civil servants. We have to include both (and their incentives, worldviews, and motivations) when making sense of what is happening.

[1]: https://www.nist.gov/about-nist

[2]: https://www.nist.gov/nmi

Re: NIST's DeepSeek "evaluation" is a hit piece

#204

Meenwhile Europe is sandwiched between these two aweful governments

And I'm guessing China and US are to blame for the explosive growth in the far-right parties of almost every continental European country?

And I’m guessing that was a rhetorical question

Re: NIST's DeepSeek "evaluation" is a hit piece

#205
post #49

Earlier quoted context omitted.

> While I agree this report is BS and xenophobic Examples please? Can you please share where you see BS and/or xenophobia in the original report? Or are you basing your take only on Hartford's analysis? But not even Hartford make any claims of "BS" or xenophobia. It is common throughout history for a nation-state to worry about military and economic competitiveness. Doing so isn't necessarily isn't necessarily xenoph…

> Can you please share where you see BS and/or xenophobia in the original report? Here’s an example of irrational fear: “the expanding use of these models may pose a risk to application developers, consumers, and to US national security.” There’s no support for that claim in the report, just vague handwaving at the fact that a freely available open source model doesn’t compare well on all dimensions to the most expen…

Here is how I would charitably and clearly restate your position -- let me know if this is accurate:

1. You accept the definition: "Xenophobia is fundamentally about irrational fear or hatred of people based on their foreign origin or ethnicity. It targets people and operates through stereotypes, dehumanization, and often cultural or racial prejudice."

2. You claim this sentence from the NIST report is an example of irrational fear: "the expanding use of these models may pose a risk to application developers, consumers, and to US national security."

3. As irrational fear isn't sufficient for xenophobia, you still need to show that it is "based on their foreign origin or ethnicity".

4. You don't provide any evidence from the report of #3. Instead, you refer to Trump's comments as evidence of his xenophobia.

5. You directly quote my question "Can you please share where you see BS and/or xenophobia in the original report?" In your response, you imply that Trump's xenophobic language is somehow part of the report.

My responses to the above (again, which I think is an accurate but clearer version of your argument): (1) Good; (2) I disagree, but I'll temporarily grant this for the sake of argument; (3) Yes; (4) Yes, Trump has used xenophobic language; (5) Since we both agree that Trump's language is not part of the report, your example doesn't qualify as a good answer to "Can you please share where you see BS and/or xenophobia in the original report?".

Your claim only shows how a xenophobic Trumpist would interpret the NIST report.

My take: Of course the Trump administration is trying to assert control over NIST and steer it in more political directions. This by definition will weaken its scientific objectivity. To what degree it has eroded so far is hard for me to say. I can't speak to the level of pressure from political appointees relating to the report. I can't speak to the degree to which they meddled with it. But this I can say: when I read the language in the report, I don't see xenophobia.

Re: NIST's DeepSeek "evaluation" is a hit piece

#206
post #97

Meenwhile Europe is sandwiched between these two aweful governments

The implication being that Europe is not its own conglomeration of awful governments? Your European snobbery is odious to the core.

This is true. They are problematic also. Especially Putin, which I believe we are partially responsible for also. The desire for better governments is not snobbery. Especially from the US and China, because they suck big time right now and they are the most influencial globally.

Re: NIST's DeepSeek "evaluation" is a hit piece

#207
post #49

Earlier quoted context omitted.

> While I agree this report is BS and xenophobic Examples please? Can you please share where you see BS and/or xenophobia in the original report? Or are you basing your take only on Hartford's analysis? But not even Hartford make any claims of "BS" or xenophobia. It is common throughout history for a nation-state to worry about military and economic competitiveness. Doing so isn't necessarily isn't necessarily xenoph…

> Can you please share where you see BS and/or xenophobia in the original report? Here’s an example of irrational fear: “the expanding use of these models may pose a risk to application developers, consumers, and to US national security.” There’s no support for that claim in the report, just vague handwaving at the fact that a freely available open source model doesn’t compare well on all dimensions to the most expen…

> The absolutely most charitable thing that could be said about this report is that it’s a weak attempt at smearing non-US competition.

You aren't using the words "absolute" [1], "charitable" [2], and "smear" [3] in the senses that reasonable people expect. I think you are also failing to use your imagination and holding onto one possible explanation too tightly. I think it would benefit you to relax your grip on one narrative and think more broadly and comprehensively.

[1] Your use of "absolute" is rhetorical not substantive.

[2] You use the word "charitable" but I don't see much intellectual flexibility or willingness to see other valid explanations. To use another phrase, you seem to be operating in a 'soldier' mindset rather than a 'scout' mindset. [5]

[3] Here is the sense of smear I mean from the Apple dictionary: "to damage the reputation of (someone) by false accusations; slander: someone was trying to smear her by faking letters." NIST is not smearing DeepSeek, because smearing requires false claims. [4]

[4] If you intend only to claim that NIST is overly accentuating negative aspects of DeepSeek and omitting its strengths, that would be a different argument.

[5] https://en.wikipedia.org/wiki/The_Scout_Mindset

Re: NIST's DeepSeek "evaluation" is a hit piece

#208

Earlier quoted context omitted.

Dude. The CCP sucks. Just ask Jack Ma or Gedhun Choekyi Nyima https://en.wikipedia.org/wiki/Gedhun_Choekyi_Nyima

The American "democracy" also sucks. Just ask anyone in Latin America who had to live under US-backed dictatorships, or those in Middle Eastern countries that were destabilised or destroyed by American influence. Or the immigrants (or citizens that happen to look like immigrants) under siege in the country right now. I could go on for a long, long time.

Whataboutism is boring and lame.

Re: NIST's DeepSeek "evaluation" is a hit piece

#209
post #49

Earlier quoted context omitted.

> While I agree this report is BS and xenophobic Examples please? Can you please share where you see BS and/or xenophobia in the original report? Or are you basing your take only on Hartford's analysis? But not even Hartford make any claims of "BS" or xenophobia. It is common throughout history for a nation-state to worry about military and economic competitiveness. Doing so isn't necessarily isn't necessarily xenoph…

> Can you please share where you see BS and/or xenophobia in the original report? Here’s an example of irrational fear: “the expanding use of these models may pose a risk to application developers, consumers, and to US national security.” There’s no support for that claim in the report, just vague handwaving at the fact that a freely available open source model doesn’t compare well on all dimensions to the most expen…

> Here’s an example of irrational fear: “the expanding use of these models may pose a risk to application developers, consumers, and to US national security.”

Yes, that contains a quote from the executive summary. First (perhaps a minor point), I wouldn't frame this a fear, I would call it a risk assessment. Second, it is not an irrational assessment. It seems you don't understand the reasoning, in which case disagreement would be premature.

> There’s no support for that claim in the report, just vague handwaving at the fact that a freely available open source model doesn’t compare well on all dimensions to the most expensive frontier models.

I'm going to put aside your unfounded rhetoric of "vague handwaving". You haven't connected the dots yet. Start by reviewing these sections with curiosity and an open mind: 3.3: Security Evaluations Overview (pages 15-16); 6.1: Agent Hijacking (pages 45-57); 6.2: Jailbreaking (pages 48-52); 7: Censorship Evaluations (pages 53-55)

Once you read and understand these sections, the connection to the stated risks is clear. To spell it out: when an organization deploys a DeepSeek model, they are exposing themselves and their customers to higher levels of risk. Risks to (i) the deploying organization; (ii) the customer; and (iii) anything downstream, such as credentials or access to other systems.

Just in case I need to spell it out: yes, if DeepSeek is only self-deployed (e.g. via Ollama) on one's local machine, some risks are much lower. But a local-deployment scenario is not the only one, and even it has significant risks.

Lastly, it is expected (and not unreasonable) for government agencies to invoke national security when cybersecurity and bioterrorism are involved. Their risk tolerance is probably lower than yours, because it is their job.

Next, I will ask you some direct questions:

1. Before reading Hartford's post, what were your priors? What narratives did you want to be true?

2. Did you actively try to prove yourself wrong? Did you put in at least 10 uninterrupted minutes trying to steel-man the quote above?

3. Before reading the NIST report, would you have been able to e.g. explain how hijacking and jailbreaking are different? Would you have been able to explain in your own words how they fit into a threat model?

Of course you don't have to tell us your answers. Some people have too much pride to admit they are uninformed or mistaken even privately, much less in public. To many, internet discussions are a form of battle. Whatever your answers are, strive to be honest with yourself. For some, it takes years to get there. I'm speaking from experience here!

Re: NIST's DeepSeek "evaluation" is a hit piece

#210

Earlier quoted context omitted.

did you even read the article? when you download open source deep seek model and run it yourself - zero packets are being transmitted. thereby disproving the fundamental claim in the NIST report (additionally NIST doesn't provide any evidence to support their claim) This is basic science and no amount of politicking should ever challenge something this fundamental!

Meanwhile we know for a fact that Gemini for example uses chat logs to build a social graph and Google is complicit in NSA surveillance Not to mention Anthropic says Claude will eventually automatically report you to authorities if you ask it to do something "unethical"

> Not to mention Anthropic says Claude will eventually automatically report you to authorities if you ask it to do something "unethical"

Citation? Let's see if your claim checks out -- and if it is worded fairly.

Post reply on HN