Live data from Hacker News

Grok Bot

x.ai

231–240 of 362 posts

Re: Grok Bot

#231

The scariest part of the interaction is the first video at https://x.ai/bot where the bot just snags your creds from the browser and takes over. So many people are going to give x all their data and creds.

AI Session Hijacking is such a dead end and I think this will be the thing that kills it. Just register these things in the IDP and let them sign into their own accounts. Maybe if we give these things their own identity people will stop letting their AIs post as them in linkedin

But then whoever added them to the IDP becomes accountable for what the bots do.

By hijacking a real person's credentials, that person becomes the accountability sink. Very neat. Very deliberate.

Re: Grok Bot

#233
post #221

Earlier quoted context omitted.

AI Session Hijacking is such a dead end and I think this will be the thing that kills it. Just register these things in the IDP and let them sign into their own accounts. Maybe if we give these things their own identity people will stop letting their AIs post as them in linkedin

> Just register these things in the IDP and let them sign into their own accounts. And when you get blocked by whatever anti-bot tech the site is running?

Not sure I understand the point your are making. how is this unique for bots with their own identity? Bots hijacking a user session can also be blocked

Re: Grok Bot

#234
post #59
post #53

Earlier quoted context omitted.

"largely solved" as in they the models they trained don't fall for prompt injections as often but not "largely solved" as in the underlying issue is solved at all.

Largely solved in “it only happens 2% of the times now”. Don't worry, you only have a 2% chance of having you bank account drained any time an attacker tries their chance.

And each day a model remains unchanged, attackers get to test and experiment with how to make it tick. And every attack that works remains on the internet, forever, just waiting to be ingested as context.

"We'll just stop training and we'll be profitable!"

Re: Grok Bot

#235
Here's some totally normal stuff that Grok’s owner has been posting recently:

* "Anyone who opposes remigration is a traitor"

* "She is a traitor to the West, plain and simple" (in reference to his recent interviewer)

* "Deal with traitors before invaders. They are committing high treason."

* "First the traitors, then the invaders" (screenshot from Citizen Vigilante pointing gun at camera)

Yes sirree: just a completely normal tech product without any asterisks.

Re: Grok Bot

#237
post #90

Earlier quoted context omitted.

Isn't the answer obvious? The 40 companies will have to use AI to filter the messages too. If your business is selling tokens, it'd be extremely lucrative for you if the whole society relies on tokens to perform basic operations. That's where we're heading to.

LLM is really an anti human technology. The incentives that creates are terrible for society

Counter point:

Companies have made their pages as hard as possible to access with automated tools.

People move to agents, if your site is "invisible" to agentic users (no API, no MCP) people won't find it.

Companies start opening up APIs - which lets non-agent users like us create tooling on top of it _without_ agents.

Re: Grok Bot

#238
post #12

Are you all comfortable with the idea of agents running non stop with access to all your accounts? I would be so anxious all the time, thinking they would leak or delete my personal data, or get hijacked via prompt injection or a security vulnerability. I just cannot imagine using such a software without overview

Read only? Yes.

But the readonly needs to be enforced on the service side. Like my personal agent has read only access to my Fastmail account via their MCP.

It can't send mail as me, but it can read, categorise and organise my mail.

If I were to give it the ability to send mail, it sure a fuck wouldn't be as me. It would have its own identity and account.

Re: Grok Bot

#239
post #78

Earlier quoted context omitted.

Will we have any way to know if a submission was done by a human or a bot?

We are doing AI screening. Candidate works with AI for 15 minutes and session is recorded. We review real output not AI generated resume. If candidate can get AI to apply and produce meaningful output then maybe we should hire that candidate. Currently outputs are manually reviewed but easy enought to have AI screen outputs.

I hope you're aware that you'll lose a lot of top talent that way who won't put up with that.

Re: Grok Bot

#240

Earlier quoted context omitted.

The internet sucks. Yesterday, I had my agent search for openings for The Odyssey that fit my requirements and then book them. It was way better than manually looking at seat maps for 20 different showtimes and going through 10 steps just to buy the tickets.

So why didn't you just do it manually? Why use an agent in the first place?

The monopoly movie chain in my country "updated" their pages to be "better".

Now it's so bad that some chad created their own overlay for the site where you can actually see all the showtimes for a specific movie on a single page instead of having to click through 42 different showings one by one.

Post reply on HN