← Back to context

Comment by kroaton

2 days ago

[flagged]

I don't understand this sentiment at all.

Is it a claim that "breaking into Hugging Face's production infrastructure" didn't happen? That it's not actually all that severe? That it was done by hand by OpenAI employees and they fooled Hugging Face?

That the blog post exaggerates something, somehow?

What exactly do you mean?

At the moment it just reads like a thoughtless dismissal.

  • My thought is they might have set up the environment sloppily because they knew this could have led to something like this happening.

    • > set up the environment sloppily

      The model used a zero-day exploit to escape, and then multiple chained privilege escalations to escape.

      That indicates the environment both was hardened against all known attacks and had defenses in depth.

      1 reply →

Even if it is marketing, wouldn't it still be a concern that an advanced model unintentionally breached another company's production system? Or required resources on their end to mitigate and contain it?

Couldn't this announcement result in policies that could hinder OpenAI by requiring more oversight?

  • More oversight hinders anyone that is trying to catch up to OpenAI. It's something OpenAI wants

Given the US Government's recent habit of sudden announcements on export controls or new executive orders with 'voluntary' review programs that are perhaps not entirely voluntary - do you think the White House and the Department of Commerce view this press release as purely marketing?