Post #690216
2026-03-16 15:11 UTC
someone sent me a table of "security issues" for me to review, despite not being in security
i didn't recognize the report format, and it had some nonsense like a "high security" issue where ubuntu is downloading from our internal deb mirror over http instead of https (which is completely normal for debian/ubuntu since the packages and indices are all signed with a private key)
so of course i ask where it came from, and they tell me it came from copilot
i swear, if someone sends me another bit of slop for me to review for them, i'm burning this place down
LLMs are not useful as an informational tool since the only way to know they are correct is if you already know the information you are looking for
Replies (1)
-
@kkarhan@infosec.space 2026-03-16 15:47
@drikanis@mstdn.caif that happened to me, I'd literally tell this person, HR and all the CxO's that I'd consider this a firm of harrassment and mobbing and that I'll nit work on things that noone.could be bothered to write themselves. Also such #AIslop should be banned organization-wide abd not being given any access or information. IDC how "insensitive" that info is; it's still #CorporateEspionage for a foreign (overseas) corporation!In fact if I had done such shite, I would've been in jail for that!