Live data from Hacker News

You did this with an AI and you do not understand what you're doing here

hackerone.com

461–470 of 571 posts

Re: You did this with an AI and you do not understand what you're doing here

#461
post #453

Earlier quoted context omitted.

Does it matter? The point of the interview is not to produce an output.

If you don't solve the problem, do you get the job?

Depends on why you didn't solve it.

Re: You did this with an AI and you do not understand what you're doing here

#462

Earlier quoted context omitted.

I once had a conversation with a potential co-founder who literally told me he was pasting my responses into AI to try to catch up. Then a few months later, another nontechnical CEO did the same thing, after moving our conversation from SMS into email where it was very clear he was using AI. These are CEOs who have raised $1M+ pre-seed.

Have you watched All-In? Chamath Palihapitiya, who takes himself very seriously, is clearly just reading off something from ChatGPT most of the time. These Silicon Valley CEOs are hacks.

The word "hacks" is so charitable, when you could use "sociopaths".

Russ Hanneman raised his kid with AI:

https://www.youtube.com/watch?v=wGy5SGTuAGI&t=217s

A company I'm funding, we call it The Lady.

I press the button, and The Lady tells Aspen when it's time for bed, time to take a bath, when his fucking mother's here to pick him up.

I get to be his friend, and she's the bad guy.

I've disrupted fatherhood!

Re: You did this with an AI and you do not understand what you're doing here

#463

Start charging users to submit a vulnerability report. It doesn't matter if it made by AI or a human, spammers operate by cheaply overproducing and externalizing their work onto you to validate their shit. And it works because sometimes they do deliver value by virtue of large numbers. But they are a net negative for society. Their model stops working if they have to pay for the time they wasted.

Even a deposit works well (and doesn't have to be large). Someone who has actually found a serious bug in cURL will probably pay $2-5 dollars as a deposit to report (especially given the high probability of a payout).

That or the dark vuln market will find a way to vet bugs and pay out faster and easier than the actual project.

Re: You did this with an AI and you do not understand what you're doing here

#464

Earlier quoted context omitted.

We will quickly evolve a social contract that AI are not allowed to directly contact humans and waste their time with input that was not reviewed by other humans, and any transgression should by swiftly penalized. It's essentially spam, automatically generated content that is profitable in large volume because it offsets the real cost to the victims, by wasting their limited attention span. If you wantme to read your…

When you put it like that, what AI does in cases like this, is enable us all to treat each other like e.g. Google and Facebook (and any sufficiently big corporate-bureaucratic entity) has treated us for a long time. We have reviewed your claims and found that [the account impersonating your grandma] has not violated our guidelines.

I hate this, my mom's account got hacked and now someone is controlling it for who knows what purpose. She had to make a new account and lost all her photos, old posts, messages, etc. Facebook was completely unhelpful

Re: You did this with an AI and you do not understand what you're doing here

#465
post #457

Earlier quoted context omitted.

There should be a language that uses "Almost-In-Time" compilation. If it runs out of time, it just gives a random answer.

This might be a similar but possibly more sensible approach? -> https://en.wikipedia.org/wiki/Anytime_algorithm

Yes, the way I described it is actually a sensible approach to some problems.

"Almost-in-time compilation" is mostly an extremely funny name I came up with, and I've trying to figure out the funniest "explanation" for it for years. So far the "it prints a random answer" is the most catchy one, but I have the feeling there are better ones out there.

Re: You did this with an AI and you do not understand what you're doing here

#467
There's a phenomenon of fraudulent "security researchers" which has sprung out of the AI world. I became aware of it when someone on discord posted a video covering an "ACE exploit" against users of a particular AI coding assistant. The exploit was this: 1. You accidentally grab a malicious config file for the assistant 2. For some reason, you would pipe this entire file into curl and then into bash 3. This results in downloading and running a script that sets up malware.

It didn't make sense at any point but I was gripped by a need to know the intention such a worthless video. It made sense when the host started shilling his online course about how to be a "security researcher" like him. Not only that, paying members get premium first access to the latest "disclosures" that professional engineers are afraid to admit exist. It's likely that the creator of this bug report is building up their own repertoire of exploits that have been ignored. Or perhaps they're trying to put their course knowledge to use.

Re: You did this with an AI and you do not understand what you're doing here

#468
post #463

Earlier quoted context omitted.

Even a deposit works well (and doesn't have to be large). Someone who has actually found a serious bug in cURL will probably pay $2-5 dollars as a deposit to report (especially given the high probability of a payout).

That or the dark vuln market will find a way to vet bugs and pay out faster and easier than the actual project.

I think people who find real bugs have lots of incentives to not sell them to criminals (in and of itself a crime!!)

Re: You did this with an AI and you do not understand what you're doing here

#469
post #263
post #253

Earlier quoted context omitted.

I vividly remember the image of one guy digging a hole and another filling it with dirt as a representation of government bureaucracy and similar. Looks like office workers are gonna have the same privilege.

> I vividly remember the image of one guy digging a hole and another filling it with dirt as a representation of government bureaucracy and similar. To be clear, it wasn’t dirt that I envisioned being shoveled.

Oh, no confusion from my side!

Re: You did this with an AI and you do not understand what you're doing here

#470

Earlier quoted context omitted.

I wonder if there was a human in the loop to begin with. I hope the future of CVS is not agents opening accounts and posting 'bugs'

I don't think there are humans involved. I've now seen countless PRs to some repos I maintain that claim to be fixing non-existent bugs, or just fixing typos. One that I got recently didn't even correctly balanced the parenthesis in the code, ugh. I call this technique: "sprAI and prAI".

I think there are humans that watch "how to get rich with chatgpt and hackerone" videos (replace chatgpt and hackerone with whatever affiliate youtuber uses).

It's MLM in tech.

Post reply on HN