Live data from Hacker News

CISA’s acting head uploaded sensitive files into public version of ChatGPT

politico.com

211–220 of 264 posts

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#212

Earlier quoted context omitted.

wait, so I can apply and be honest? Sick! I just poorly misassumed they had classicly archaic interpretations of drugs.

I don’t have a clearance so someone can correct me, I believe you still have to have not used drugs in the prior year.

Maybe you can get a security clearance, but don’t cross the border: https://www.wired.com/2007/04/canadian-psycho/

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#213

Earlier quoted context omitted.

I don’t have a clearance so someone can correct me, I believe you still have to have not used drugs in the prior year.

>I don’t have a clearance so someone can correct me Why would you give an answer when by your own statement, you're not knowledgeable? What a strange mindset. >I believe you still have to have not used drugs in the prior year. My own experience does not agree with this speculation.

Because this is a thing I’ve heard. You can check and verify it yourself. I went to a CIA recruiting event when I was in university and this is what they told me, I assumed it was true but that’s why I caveated it. I shared it so the OP could do their own research since they seem to have even less information.

Can you clarify your own experience to help the OP?

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#214

Earlier quoted context omitted.

In any enterprise, normal would be to have monitoring on all ingress and egress points from the network and on devices themselves. You can't only have monitoring on managed devices because someone might BYOD and plug in an unmanaged device/connect it to internal wifi etc. You bring in vendors and they need guest wifi to give you a demo, you need to be able to give them something to connect to but you don't want that…

What I'm really asking/wondering is how (and who or which party) figured out that this was leaked, and secondly how that propagated to the public. I don't really expect to find that answer. But if I had to guess OpenAI found out first, because employees there are more likely to leak the fact that the leak happened. But also, how was it caught in the first place? Was it automatically flagged because content scanners a…

it says "according to four Department of Homeland Security officials with knowledge of the incident." and "according to the four officials, each of whom was granted anonymity for fear of retribution." .. so It seems to be an internal lead.

as the post above says.. on managed devices, there can be an enforced vpn, that monitors all traffic coming and going, and while its at it, strip out the encryption and look inside the packets, and apply heuristics like .. what is the host domain, is it from a known LLM site.. and is its a POST message sending data, and then does the text of that data have a string matching "INTERNAL USE ONLY". I assume something like this.

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#215
post #203
post #73

Earlier quoted context omitted.

Every cause that led to this event is, in itself, quite shocking. I feel for my American friends, and hope they never again optimise their government for comedy value.

Unfortunately it’s not so shocking anymore. The Secretary of Defense texting imminent war plans to a journalist in a Signal group kinda jumped the shark.

Secretary of War

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#216

This administration's op-sec has been consistently "barney fife" levels of incompetence.

Maduro and his bodyguards would slightly disagree.

Unfortunately for Maduro, that operation was run by military professionals rather than directly by Trump's lackeys. But give Hegseth enough time and he'll bring them around to the new standard.

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#217
post #144

Earlier quoted context omitted.

You're the one making a political argument by doing a whataboutism that attempts to negate the failings of this administration. Which you're not even doing correctly because by every measure the previous administration was drastically more competent by looking at the qualifications of the people who filled their posts.

Can you explain how leaking the phone metadata of 80% of Americans and compromising the integrity of the 2024 election campaign's private comms is better OpSec than a single leak? It's the worst U.S. government leak of all time, by far.

The 2024 election had no substantial integrity compromises. Nobody with credibility has critiqued its results.

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#218

It’s absolutely necessary to have ChatGPT.com blocked from ITAR/EAR regulated organizations, such as aerospace, defense, etc. I’m really shocked this wasn’t already the case.

Its something I have been talking about. Going to be needed for everyone.

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#219
post #25

Earlier quoted context omitted.

South Dakota is in the northern portion. But to your statement, historically speaking the southern states after the civil war kept trucking along in terms of power and influence.

The Dakotas weren't really north/south in the Civil War context; only about 4k people lived there in 1860. It was largely empty land, and not a state until 1889.

4k white settlers

Re: CISA’s acting head uploaded sensitive files into public version of ChatGPT

#220
post #184

It's so often the guys that are at the top who are the exception to the rules that are the problem. I knew some folks who worked military communications and they broke rules regularly because senior officers just didn't want to walk across the street to do something secure...

Have worked in places where juniors had to lock devices when on prem; only authorized hardware in the rooms. Yet, the danger was from sloppy O6+ not the O1/GS6 who would (ready&abel) carry the water.

The is a serious problem with folk with power and authority and somehow no responsibility.

That's across government, service and corporate.

Post reply on HN