Comment by simianwords
2 hours ago
And they are not calling it a day and they have done most things possible to communicate the fact that they are building something dangerous.
2 hours ago
And they are not calling it a day and they have done most things possible to communicate the fact that they are building something dangerous.
What about the waves of employees quitting both OAI and anthropic stating as their reason that they see their work as a direct threat to the future of humanity, and that their management isn't taking it seriously enough. Is that a PR stunt too?
They "called it a day" when they decided to deploy an agent which they believe to be dangerous inside this poorly secured environment.
There was no real isolation because a part of the system that doesn't provide any isolation guarantees was bridged to the internet. The next version of Artifactory, which you definitely wouldn't audit before you rolled it out, could simply add a public API that sends requests out to the internet.
Such an innocent upstream change would be equally catastrophic for your security model, which should demonstrate why it's negligent to rely on undefined behavior to enforce your security policies.
This should frankly be obvious any operator entrusted with running dangerous and possibly malicious code. Even if you don't know what you're doing, any LLM would tell you that this is a really bad idea if you simply asked. Don't rely on spacebar heating [1] to keep humanity alive.
[1] https://xkcd.com/1172/