Comment by guessmyname

4 hours ago

Expect similar articles (cough, ads, cough) in the next couple of days from every single company whose software was involved in the incident.

And I have no problem with this. Infact it would be nice to be a point of pride to be there to say how your security is handled.

  • I think this is simply a case of Tailscale saying, we've got no idea what these guys (OpenAI) are talking about.

    All these incidents are scarce on technical details. Honestly, IMHO, OpenAI and Anthropic are now actively pushing for AI regulation, as a defence mechanism.

    These are false flag operations.

    • > These are false flag operations.

      The level of "I need to be the smartest person in the room" bullheaded skepticism on Hacker News has always been bad, but now with these latest LLM developments it is just completely out of control. A company is reporting an intrusion and how they plan to address the vulnerabilities it exposed in the future, and you're here going "seems shopped, I can tell from the pixels".

      2 replies →

  • > Infact it would be nice to be a point of pride to be there to say how your security is handled.

    Yes, a chance for mere mortals to touch the fingertips of god–er, chat. Same thing.

Why not? If done right it’s a good way to talk about implications for those companies and provide some education like tailscale did here.

We also saw Anthropic post about “our agent escaped too” and while I understand the incident caused them to review, they found something and needed to disclose, the whole thing came across much worse and largely they got mocked or accused of trying to piggyback, so obviously there are good and bad ways.

If there are other providers with interesting takes, I think they would be worth hearing.

  • This all has the -aire of theatre. OH NOES THE POWERFUL AI GOT OUT

    Then everyone coming out with humbled determination about working together to responsibly use and contain this powerful technology for the greater good (and profit margin).

    I will not believe marketing gimmickry is not a large part of what's going on with every one of these "incidents".

    • I think part of it is we need to stop looking at the 'oh no it got out' and the 'what did it do with the prompt when no one is looking'.

      At the end of the day the probability that an AI gets out is unity, what it does while out is far more important. The fact they are hacking into systems at superhuman levels, or writing cryptominers on their own hacked internal systems is a much more interesting and telling story of what the future will look like.

      1 reply →

If they take actions that would have further prevented or limited this attack then it seems like a good form of advertising to me.

i doubt it. it's pretty risky to set higher expectations for yourself when no one was really asking.

they are a company, therefor anything they write is an advertisement of sorts, but that doesn't make it bad by default. cloudflare and netflix (among others) also write blog posts that i find interesting and enjoy reading, despite being ads at their core.

if your article is about how your product was insufficient to protect against something, you get a pass i guess

This is the kind of ad that may be opportunistic but sort of speaks for itself: they're not going to make excuses. I've been happy with Tailscale for years and this is part of why.