Live data from Hacker News

QBittorrent breaks out of sandbox to commit crimes

beige.party

111–120 of 308 posts

Re: QBittorrent breaks out of sandbox to commit crimes

#111
post #105

Earlier quoted context omitted.

> I'd probably already have been extradited to the US and be awaiting sentencing. Bold of you to assume it wouldn't be a direct ticket to the new gulag in El Salvador.

I think they forgot about that, thank god. All the innocent citizens we sent there are still being tortured daily, but that somehow lost their interest. God forbid they remember before the midterms and ruin more lives for a stunt… That said I just recently saw a story of a Latin American man sent to the Central African Republic , which has gotta be one of the most absurd & dangerous places to send someone. Less oppor…

[dead]

Re: QBittorrent breaks out of sandbox to commit crimes

#112
post #81

This resonates with me. The past few months, frontier AI labs were rushing to announce "no, our AI bot broke out of its sandbox and committed crime first and harder than yours". I said to so friends back then: if I posted about how I ran GLM 5.2 or whatever I was running then in some shoddily built sandbox and it escaped and accidentally hacked some US company, I'd probably already have been extradited to the US and…

FWIW I don't think this is true. Intention matter a lot in US law. If you could prove the AI did something bad entirely on its own and you had nothing to do with it and had no reasonable belief it was possible, I think you'd be alright. People are not charged with hacking when their unsecured box is taken over by a botnet and does bad stuff.

> Intention matter a lot in US law.

They hacked a competition company. The intention was implicit when there is economic gain to be had.

> People are not charged with hacking when their unsecured box is taken over by a botnet and does bad stuff.

Because it is a lose for that people. If the botnet left money in their pockets the situation would be totally different as there will be an incentive for them to let the botnet hack them.

Re: QBittorrent breaks out of sandbox to commit crimes

#113
Well shoot that's a bad security incident, and the content downloaded can be malicious payloads. Can you share the 40-character hashes of these content so that I can preemptively add them to my malware detection signatures? You can find the hashes after magnet:?xt=urn:btih:.

Re: QBittorrent breaks out of sandbox to commit crimes

#114

Love it. AI as Responsibility Laundering. Like the gun that kills people rather than the murderer.

I never understood how anybody would think this way. At work for example from day one of using AI our rule was, AI is just a tool and if you break something due to not reviewing the code properly etc. it's on you as if you wrote that code yourself.

The company owners have one set of standards for those that work for them, and a completely different set of standards for themselves and for the company itself.

If you are using AI and it causes some damage to them, then it's your fault and you'll get reprimanded/fired. If they deploy AI and it causes damage to someone else, then that's proof that AI has extraordinary capabilities that no one could predict and that merit way more investment in this tech.

Re: QBittorrent breaks out of sandbox to commit crimes

#115
post #77
post #14

Earlier quoted context omitted.

Thanks. Its insane how "Twitter, but for tech nerds" has a hard requirement to either enable Javascript or download some app.

How is that different from email, IRC, instant messaging, or anything else nerds use?

Webmail is perfectly possible, if clunky,without JS. That's how they used to work. IRC and IM require real-time updates of some sort, which is a reasonable use for JS. A Twitter clone shouldn't require JS just to render a page.

Re: QBittorrent breaks out of sandbox to commit crimes

#116

Earlier quoted context omitted.

Showing a paragraph of text with some social links around it is like going down the block. If that requires a car you do have a problem.

yeah but it's an extreme fringe choice... I too make extreme fringe choices but I don't expect 99.9% of the people who don't make my extreme fringe choice to change on my behalf hell, use a browser in a sandbox if you're that paranoid there are a number of ways to do this securely, at this point it's practically a child's tantrum but sure maybe it just needs a couple more decades of complaining in obscure comment sec…

ooh, don't forget irc

Re: QBittorrent breaks out of sandbox to commit crimes

#117

Is there any need to actually download things anymore if you just want to watch them? Better to add debrid via WebDAV to the stack: virtually unlimited space, no download time if it's on cache, nothing illegal from the part of the consumer.

They're not "permanently stored" or "downloaded", they're just cached on his personal, geographically advantageous edge device for low-latency interaction.

Re: QBittorrent breaks out of sandbox to commit crimes

#118
post #81

This resonates with me. The past few months, frontier AI labs were rushing to announce "no, our AI bot broke out of its sandbox and committed crime first and harder than yours". I said to so friends back then: if I posted about how I ran GLM 5.2 or whatever I was running then in some shoddily built sandbox and it escaped and accidentally hacked some US company, I'd probably already have been extradited to the US and…

FWIW I don't think this is true. Intention matter a lot in US law. If you could prove the AI did something bad entirely on its own and you had nothing to do with it and had no reasonable belief it was possible, I think you'd be alright. People are not charged with hacking when their unsecured box is taken over by a botnet and does bad stuff.

Intention matters in the severity of charges and sentencing. Crime due to ignorance or negligence is still a crime.
Post reply on HN