We need a legal structure to make companies liable for the actions of the agents they've made.
OpenAI bots knew about the RubyGems caching vulnerability
31–40 of 303 posts
Re: OpenAI bots knew about the RubyGems caching vulnerability
#32There is nothing "rogue" about these agents. They were prompted to hack to get answers, there was a hole in their non air gapped sandbox and no system prompt that said "do not hack outside systems". In short, it was intentional.
The big question is was this grossly negligent or just extremely careless.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#33We need a legal structure to make companies liable for the actions of the agents they've made.
I'm 99% sure the Computer Fraud and Abuse Act covers this. The problem is that it seems that none of the victims want to, or are brave enough, to sue a company with absurd amounts of funding.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#34There is nothing "rogue" about these agents. They were prompted to hack to get answers, there was a hole in their non air gapped sandbox and no system prompt that said "do not hack outside systems". In short, it was intentional.
The big question is was this grossly negligent or just extremely careless.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#35How does this work, legally? I think that RubyGems could file a civil suit against OpenAI, but for a naïve non-lawyer reading this seems like a pretty clear cut criminal violation of the computer fraud and abuse act.
It's very likely it violates the DMCA "breaking digital lock" provisions but the responsibility is sufficiently diluted that it's impossible to charge anyone in particular.
Sorry if it is a stupid question, as mentioned above I am legally naïve.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#36How does this work, legally? I think that RubyGems could file a civil suit against OpenAI, but for a naïve non-lawyer reading this seems like a pretty clear cut criminal violation of the computer fraud and abuse act.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#37We need a legal structure to make companies liable for the actions of the agents they've made.
Good luck convincing the current DOJ to do anything useful at all though! It is currently intentionally stacked with incompetent cronies who have been told that their job is to attack the President's enemies and ignore the misdeeds of his allies.
It will remain like that until he's gone (and not replaced with another Republican wannabe dictator).
Re: OpenAI bots knew about the RubyGems caching vulnerability
#38Is the Kremlin technologically useless? How are we not seeing insane attacks on Ukraine via Agents? Or is this largely a fabrication, in regards to the "who", in an attempt to garner more acclaim in the hope of sustaining funding.
Re: OpenAI bots knew about the RubyGems caching vulnerability
#39There is nothing "rogue" about these agents. They were prompted to hack to get answers, there was a hole in their non air gapped sandbox and no system prompt that said "do not hack outside systems". In short, it was intentional.