Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
teravor
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
teravor
4d ago
with Wayland it's generally not any safer. if you use Wayland's security context to prohibit privileged protocols such as arbitrary clipboard access then an application will either not be able to grab clipboard content until you f
2.
▲
by
teravor
4d ago
when an LLM is trained backpropagation reaches into the entirety of the key value table. or rather, all the layers (not just the tokens) which come before the current tick. langauge is only produced by the final layer every tick. and every
3.
▲
by
teravor
5d ago
> They're still autocomplete LLMs are simulations and the tokens are the ticks. if we transcribe your brain into a simulation and give it a tickrate, you will be just autocomplete too. the argument could be made that you a
4.
▲
by
teravor
5d ago
> Many graduate students (I know) are having a crisis if any of their research worth it? If AI can (or will) do everything, what's the point of doing experiments and all? This will eventually deter a whole generation of curio
5.
▲
by
teravor
5d ago
it's only faster in a medium, which technically isn't even light but rather electron interactions.
6.
▲
by
teravor
6d ago
apparently they weren't even properly configured until almost touching down.
7.
▲
by
teravor
6d ago
if such a method gains traction then so will the effort to bypass it. either by stealing private keys or just projecting light onto the sensor.
8.
▲
by
teravor
7d ago
some VMMs just straight up translate vsock from the guest to UDS on the host.
9.
▲
by
teravor
8d ago
> “you are saying I am doing X bad thing? What about Y bad thing you’re doing, let’s discuss that instead”. no one is generally expecting or even asking for "let’s discuss that instead". what they are doing is trying
10.
▲
by
teravor
10d ago
false security. if there aren't LLM's monitoring patches with disassembler MCPs ready, there will be soon.
11.
▲
by
teravor
12d ago
well that's why setting it up is hard, because you would want to do it in a way that what they want doesn't matter.
12.
▲
by
teravor
12d ago
ideally, an auction and the vendor or a government can bid against malicious actors (which can also be a government). hard to set up though.
13.
▲
by
teravor
12d ago
RCE inside sandbox, so requires chaining with another 0day.
14.
▲
by
teravor
13d ago
there have been people who took existing LLM's and conducted an algoritmic search to find out which group of layers they can duplicate in order to improve performance, and it worked.
15.
▲
by
teravor
13d ago
the only real way to have a decentralized domain system is something like https://github.com/pubky/pkarr but you lose the ability to have short domains. also until such a time that pkarr is widely adopted, you are bett
16.
▲
by
teravor
13d ago
> Researchers have confirmed Graphite attacks through WhatsApp and iMessage, although the complete method remains secret. unsurprising that it's closed source software which is vulnerable like this. LLMs can now decompile
17.
▲
by
teravor
14d ago
it has been amusing watching you try to pretend that you knew what survivorship bias was. first you assumed it had something to do with death. then you invoked the plane anecdote. now you link the wikipedia without realizing that over 90% o
18.
▲
by
teravor
14d ago
survivorship bias is a statistical error, why would you invoke planes? especially after saying this: Huh? Survival of what? Are you claiming that Democrat fraud was not found only because the perpetrators are all dead? also, you a
19.
▲
by
teravor
14d ago
> because what you describe is not survivorship bias then you should look up what survivorship bias is. the visible group in this scenario are the individuals who were caught. which says nothing about any conspiracies or even o
20.
▲
by
teravor
14d ago
he is implying that the focus on the republican cases (the survivors) is a red herring because the system is presumably such that an actual conspiracy cannot be detected. I don't know anything about elections, a question worth asking i
21.
▲
by
teravor
16d ago
such decentralized systems would have to rely on a DHT and the domains would be public keys, somewhat defeating the purpose of a domain. an effort to do this: https://github.com/pubky/pkarr
22.
▲
by
teravor
16d ago
that means all you had to do was gate the content behind a javascript snippet with a timer.
23.
▲
by
teravor
17d ago
anubis was a joke on arrival. PoW for this purpose is plain stupid. the only feasible CAPTCHA at this moment is probably hCaptcha. they began to offer animated challenges. it's probably the best you can do, using an LLM to solve them w
24.
▲
by
teravor
17d ago
there is currently no linux distribution where it's safe to run an application as is. they tend to have access to /home which is game over. some people who actually care about security will create bubblewrap/bwrap profiles fo
25.
▲
by
teravor
19d ago
and those measures have always been merely annoyances. except for the VM methods which impact performance significantly. now none of those methods matter as you can just instruct an LLM to bang its head against the wall until the wall break
26.
▲
by
teravor
19d ago
you can diff binaries in a disassembler, the technique has been used for a long time to discover patched Microsoft vulnerabilities, create exploits and then race the world. now you can instruct an LLM to do this with MCP...
27.
▲
by
teravor
20d ago
you might as well call consciousness a soul at this point. something I once wondered about is what a soul can be and what implications it would have. the conclusions I drew is that the entire concept was incoherent. if a soul is so intrinsi
28.
▲
by
teravor
21d ago
in the limit the honeypots would be dynamic and some of them secret, so at the very least a rogue agent would have a significant chance of stepping on a landmine. this game doesn't favor the agents, the honeypot could be as simple as a
29.
▲
by
teravor
21d ago
perhaps a solution would be to honeypot the sandbox. if anything touches the honey you kill the agent. also the conclusion to use firecracker or gvisor is obvious, that's what they were made for. it's bizarre to try and escape QEM
30.
▲
by
teravor
21d ago
2 and 3 are virtually on top of each other. they both use KVM too. technically 2 exposes a slightly broader attack surface due to the tighter integration model. you can think of 2 as what would happen if you take 3 and modify it to share r
More ›