← Back to context

Comment by Lio

8 hours ago

Is there any financial motivation for OpenAI to stop doing this other than reputational damage? In some ways, it may actually be good for their reputation.

If an individual gets in to a poorly protected system they're still criminally responsible for the damage or disruption caused.

You can't use the excuse of "well they used 'password' as their password[1], they were asking for it".

Until the management of OpenAI is held to the same standard this is only going to get worse.

1. That's not to excuse poor system management. If you leave data exposed then you should be held responsible for that separately.