@jenniferplusplus@hachyderm.io
Post #1015203
2026-04-08 20:25 UTC
Replies (14)
-
@jenniferplusplus@hachyderm.io 2026-04-09 06:32
A couple people seem very invested in me being wrong about this assessment. All I can say is that this would be the first time I have misclassified an AI claim as bullshit
-
@barometz@social.treehouse.systems 2026-04-08 20:31
@jenniferplusplus they're all liars and scammers and somehow a lot of people who are aware of this aren't bothered by it at all. It's perplexing and pretty much kills any hope I have of changing people's views.
-
@younata@hachyderm.io 2026-04-08 20:31
@jenniferplusplus As too-online millennials would say: “x to doubt”. Or, more politely: “extraordinary claims require extraordinary evidence”.
-
@ladytel@masto.hackers.town 2026-04-08 20:45
@jenniferplusplus I've increasingly come back to the idea of "post pics or it didn't happen". I mean genai was supposed to put me out of the job in six months ... For 4 years at this point
-
@budududuroiu@hachyderm.io 2026-04-09 01:04
@jenniferplusplus I seriously doubt this is smoke and mirrors, recent models have improved significantly for cybersec and the industry is noticing: https://mastodon.social/@bagder/116336957584445742 https://www.theregister.com/2026/03/26/greg_kroahhartman_ai_kernel/ The industry consensus seems to be that there's going to be a torrent of vulnerabilities being found in all sorts of software, and they're not prepared to handle the blast radius. It's not surprising that Anthropic wants to give a select few a head start to tackle them. It would be nice if their token fund was open to all OSS projects to apply. I'm also pressing "X doubt" that you spend months coordinating between AWS, Apple, Microsoft, Google, and the Linux Foundation to organise this just because your tool's code leaked online.
-
@griotspeak@soc.mod-12.com 2026-04-09 02:12
@jenniferplusplus First thought I had when I read about this was “how is *Anthropic* a credible source for this?”
-
@codinghorror@infosec.exchange 2026-04-09 02:56
@jenniferplusplus I would like to remind everyone that Misanthropic and that little bitch Claude are among the worst actors out there, because it's a cult. An amoral, do-anything-to-win cult that actually believes they are building "sentient life". Which is totally insane. https://www.404media.co/anthropic-exec-forces-ai-chatbot-on-gay-discord-community-members-flee/
-
@chrisp@cyberplace.social 2026-04-09 03:46
@jenniferplusplus "Our new model is too dangerous for the public, we couldn't possibly release it! Anyway, you can subscribe to it for $150 a month."
-
@wolfkin@mastodon.social 2026-04-09 04:40
@jenniferplusplus any presumed competence on the behalf of an AI company is typically the work of impoverished humans in South Asian or South East Asia.
-
@androcat@toot.cat 2026-04-09 06:37
@jenniferplusplus Literally seconds ago I wrote elsewhere: "first rule of LLMs: If someone from an LLM company says their model can do x, it can't do x, but it includes some thoughts and prayers to please do x."
-
@dazfuller@mstdn.social 2026-04-09 06:50
@jenniferplusplus but what about when their models created a full C compiler… oh, right. But what about when they said software development would be dead in 6-12 months… oh, again. You know, it’s almost like they have an over active marketing team
-
@jedbrown@hachyderm.io 2026-04-09 06:52
@jenniferplusplus It's also important that to whatever extent this product actually works (I'm as skeptical as you are), it fundamentally preferences the attacker. The product has way too many false positives to run in CI, so the defender can only use it as part of an occasional audit. The attacker doesn't care about CI or development friction, and wins by finding one exploit in an entire stack, even if they have to wade through many false positives to find it.
-
@rrb@infosec.exchange 2026-04-09 06:53
@jenniferplusplus my favorite is the recent demand to drop pdf file format, because the genius llm's can not parse them
-
@theeclecticdyslexic@mstdn.social 2026-04-09 07:40
@jenniferplusplus@hachyderm.io The thing that interests me the most about this is what specifically happened with Greg KH in that one article where he claimed it found 40 real vulnerabilities in a report containing 60? I am willing to bet it isn't as simple as is presented. If it is, then I want proof that they aren't targeting special attention at certain users. I think you could do a lot, auditing the kernel and waiting for Greg to ask. Especially if some devs are making contributions aided by claude...