Live data from Hacker News

Trusted access for the next era of cyber defense

openai.com

21–30 of 79 posts

Re: Trusted access for the next era of cyber defense

#21

Too little too late. OpenAI's shit was nearly worthless for cybersec for what, a year already? ChatGPT 5.x just tries to deny everything remotely cybersecurity-related - to the point that it would at times rather deny vulnerabilities exist than go poke at them. Unless you get real creative with prompting and basically jailbreak it. And it was this bad BEFORE they started messing around with 5.4 access specifically. A…

That’s the whole point of this variant of the model, it won’t have those guardrails.

Re: Trusted access for the next era of cyber defense

#22
post #15

Earlier quoted context omitted.

More like they realized how much money they were wasting letting the proles generate slop and vibe code the same CRUD app they rewrote in 5 different JavaScript frameworks a few years back. The money is in enterprise and government. The consumer market doesn’t remotely pay enough. It’s just the same story with Microsoft purposely making Windows an unusable mess because that’s not where they make their money. It was g…

Wait six months, get the Chinese version.

Changes as we speak, z.ai is the first one to show differential pricing

Re: Trusted access for the next era of cyber defense

#23
post #21

Too little too late. OpenAI's shit was nearly worthless for cybersec for what, a year already? ChatGPT 5.x just tries to deny everything remotely cybersecurity-related - to the point that it would at times rather deny vulnerabilities exist than go poke at them. Unless you get real creative with prompting and basically jailbreak it. And it was this bad BEFORE they started messing around with 5.4 access specifically. A…

That’s the whole point of this variant of the model, it won’t have those guardrails.

Yes. But "perform a humiliation ritual of KYC to access the actual model instead of the nerfed version of it that's so neurotic about cybersec you have to sink 400 tokens into getting it to a usable baseline" does not inspire any confidence at all.

Re: Trusted access for the next era of cyber defense

#25

Requiring verified access is a good idea to mitigate risks from hacking while still giving people access to the latest models. Take notes, Anthropic.

A 5.4 spin with slightly different guardrails is not "access to the latest models". We know this to be true from the article because they have a section entitled "Looking ahead to our upcoming model release and beyond". I wonder if they didn't just feel like they were caught out by Mythos.

Re: Trusted access for the next era of cyber defense

#27

It seems like local LLMs will get popular for cybersecurity if this trend of locking access to models continues.

Not really. Not performant enough. Most organizations who would be interested in using a foundation model for security would either purchase the model directly or purchase a vendor who adds their special sauce or context to the model

Re: Trusted access for the next era of cyber defense

#28

Too little too late. OpenAI's shit was nearly worthless for cybersec for what, a year already? ChatGPT 5.x just tries to deny everything remotely cybersecurity-related - to the point that it would at times rather deny vulnerabilities exist than go poke at them. Unless you get real creative with prompting and basically jailbreak it. And it was this bad BEFORE they started messing around with 5.4 access specifically. A…

> OpenAI's shit was nearly worthless for cybersec for what, a year already

Plenty of AI for Cybersecurity companies use a mixture of models depending on iteration and testing, including OpenAI's.

Re: Trusted access for the next era of cyber defense

#29
post #2

I love that in the era of having LLMs summarize everything all of these companies have opted for what I call the “YouTube streamer apology video” tone and length for these announcements. These feels more or less like a way to get in the news after Anthropic's Mythos announcement by removing some guardrails. I’m still signing up though.

[deleted]

Re: Trusted access for the next era of cyber defense

#30

I completed the "Trusted Access" verification, but it seems to have unlocked nothing in the OpenAI API or Codex models. Just FYI for others.

I see a Security button in the what’s new box in the Codex section of the ChatGPT website. It appears to allow me to run vulnerability scans against my connected GitHub repositories.

Direct link: https://chatgpt.com/codex/cloud/security

Post reply on HN