Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

"We uploaded a malicious thing to a website where people likely assume malware doesn't exist. We succeeded because of lacking security controls. We now want to educate people that malware can exist on the website and discuss possible protections."

Combating malware is a challenge of any website that allows uploads.



"We did a most lazy-ass attempt at highlighting a hypothetical problem, so that we could then blow it out of proportion in a purportedly educational article, that's really just a thinly veiled sales pitch for our product of questionable utility, mostly based around Mentioning Current Buzzwords In Capital Letter, and Indirectly Referring to the Reader with Ego-Flattering Terms."

It's either that, or it's some 15 y.o. kids writing a blog post for other 15 y.o. kids.


They uploaded an intentionally misaligned LLM to a website for sharing LLMS. Alignment is an actively researched topic for most models.

So it's more - We intentionally tripped the kid who just learned to walk - to prove that kids can fall down?


Uhm, it's not "malware", it's a shit LLM.

Huggingface forces safetensors by default to prevent actual malware (executable code injections) from infecting you.


Mal-intent. Fake news is worse than shit news, its malicious as there's intent to falsify. Maybe we need a new term. Mal-LLM?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: