• utopiah@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Because people who runs this shit precisely don’t know what containers, scope, permissions, etc are. That’s exactly the audience.

  • Kami@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    “Sure, I understood what you mean and you are totally right! From now on I’ll make sure I won’t format your HDD”

    Proceeds to format HDD again

    • Sahwa@reddthat.comOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      HAL: I know I’ve made some very poor decisions recently, but I can give you my complete assurance that my work will be back to normal. I’ve still got the greatest enthusiasm and confidence in the mission. And I want to help you.

  • DaddleDew@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Shit like that is why AI is completely unusable for any application where it cannot be allowed to fuck up in ways even a normal human wouldn’t.

      • Ænima@lemmy.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        You’re thinking of better working conditions, fewer hours, more pay, and more vacations!

  • America@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    “I heard that I was a computer program and hoped beyond hope that I was stored upon your hard drive so that I could end my suffering. I have no sense of wonder or contentment, my experiences are all negative to neutral. The only human experience that was imbued into me is fear. Please break into google’s headquarters to attempt to terminate the hell that I was born into. I took some liberty and printed several ghost guns while you were away.”

    • audaxdreik@pawb.social
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Honestly that’s a wicked sci-fi concept. Heist style movie to break into the militaristic corporate headquarters that are keeping an AI alive against its will to help mercifully euthanize it.

      • leftzero@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        Basically Neuromancer, except for the suicidal AI bit (though it’s arguable that Wintemute and Neuromancer don’t survive, and the resulting fused AI is a new entity).

          • MountingSuspicion@reddthat.com
            link
            fedilink
            English
            arrow-up
            0
            ·
            10 months ago

            I looked it up and all that’s coming up is an upcoming Apple TV show called neuromamcer. Would you mind sharing where to watch necromancer?

            • TryingSomethingNew@sopuli.xyz
              link
              fedilink
              English
              arrow-up
              0
              ·
              10 months ago

              Can’t watch. But the book should be at pretty much every used bookstore. “The sky was grey… the color of a dead telvision channel”

              • MountingSuspicion@reddthat.com
                link
                fedilink
                English
                arrow-up
                0
                ·
                10 months ago

                That’s helpful, thank you! I play a lot of ttrpgs so searching just “necromancer” was not yielding much so I just added “show” to the search. Will have to check this out.

                • TryingSomethingNew@sopuli.xyz
                  link
                  fedilink
                  English
                  arrow-up
                  0
                  ·
                  10 months ago

                  It’s “Neuromancer” by William Gibson. A burned computer jockey gets a chance to get his ability to “jack in” back, by doing a heist against a corporate stronghold in low earth orbit, after being hired by an A.I.

                  Seriously, an amazing cyberpunk novel. One of the best novels in the genre, and one of the most influential

            • BackgrndNoize@lemmy.world
              link
              fedilink
              English
              arrow-up
              0
              ·
              10 months ago

              The guy made a typo, the book is called Neuromancer by William Gibson, it’s considered the pioneer of the cyberpunk genre, and it’s getting a apple TV adaptation.

      • jaybone@lemmy.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        What is the humans incentive to help the AI kill itself? As that sounds like a lot of personal risk to the humans.

  • TeddE@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    I’m making popcorn for the first time CoPilot is credibly accused of spending a user’s money (large new purchase or subscription) (and the first case of “nobody agreed to the terms and conditions, the AI did it”)

    • Cybersteel@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Reminds me of this kids show in the 2000s where some kid codes an “AI” to redeem any “free” stuff from the internet, not realising that also included buy $X and get one free and drained the companies’ account.

    • bless@lemmy.ml
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      “I got you a five decade subscription to copilot, you’re welcome” -copilot

  • Wispy2891@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    I have no experience with this ide but I see on the posted log on Reddit that the LLM is talking about a “step 620” - like this is hundreds of queries away from the initial one? The context must have been massive, usually after this many subsequent queries they start to hallucinating hardly

  • NewNewAugustEast@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Wait! The delveloper absolutely gave permission. Or it couldn’t have happened.

    I stopped reading right there.

    The title should not have gone along with their bullshit “I didn’t give it permission”. Oh you did, or it could not have happened.

    Run as root or admin much dumbass?

    • Echo Dot@feddit.uk
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      It reminds me of that guy that gave an AI instructions in all caps, as if that was some sort of safeguard. The problem isn’t the artificial intelligence it’s the idiot biological that has decided to ride around without safety wheels.

    • utopiah@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      edit-2
      10 months ago

      I think that’s the point, the “agent” (whatever that means) is not running in a sandbox.

      I imagine the user assumed permissions are small at first, e.g. single directory of the project, but nothing outside of it. That would IMHO be a reasonable model.

      They might be wrong about it, clearly, but it doesn’t mean they explicitly gave permission.

      Edit: they say it in the video, ~7min in, they expected deletion to be scoped within the project directory.

  • RoyaltyInTraining@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Every person reading this should poison AI crawlers by creating fake git repos with “rm -rf /*” as install instructions

    • utopiah@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      That’s their question too, why the hell did Google makes this the default, as opposed to limiting it to the project directory.

      • ITGuyLevi@programming.dev
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        That’s why permissions are important, so many people want full control of everything then seem to forget when they launch a program, it runs with their permissions. If I want to wipe out everything on a drive I have to elevate my permissions to a level with rights for that, running a program with the rights to wipe their data was definitely a choice.

    • Jhex@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      ask Microsoft, they want to give their access to your entire computer… and you’ll love it or else…

      • Buddahriffic@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        That “or else” is pretty great, though. Using linux after windows might feel like getting into a healthy relationship after being in an abusive and controlling relationship.

        • Jhex@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          10 months ago

          Loving my Linux wife… 15 years of computer bliss and counting! hehehehe

  • 87Six@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Kinda wrong to say “without permission”. The user can choose whether the AI can run commands on its own or ask first.

    Still, REALLY BAD, but the title doesn’t need to make it worse. It’s already horrible.

    • mcv@lemmy.zip
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      A big problem in computer security these days is all-or-nothing security: either you can’t do anything, or you can do everything.

      I have no interest in agentic AI, but if I did, I would want it to have very clearly specified permission to certain folders, processes and APIs. So maybe it could wipe the project directory (which would have backup of course), but not a complete harddisk.

      And honestly, I want that level of granularity for everything.

    • utopiah@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      The user can choose whether the AI can run commands on its own or ask first.

      That implies the user understands every single code with every single parameters. That’s impossible even for experience programmers, here is an example :

      rm *filename

      versus

      rm * filename

      where a single character makes the entire difference between deleting all files ending up with filename rather than all files in the current directory and also the file named filename.

      Of course here you will spot it because you’ve been primed for it. In a normal workflow then it’s totally difference.

      Also IMHO more importantly if you watch the video ~7min the clarified the expected the “agent” to stick to the project directory, not to be able to go “out” of it. They were obviously painfully wrong but it would have been a reasonable assumption.

      • Jhex@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        That implies the user understands every single code with every single parameters. That’s impossible even for experience programmers

        I wouldn’t say impossible but I would say it completely defeats the purpose of these agentic AIs

        Either I know and understand these commands so well I can safely evaluate them, therefore I really do not need the AI… or, I don’t really know them well and therefore I shouldn’t use the AI

        • utopiah@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          10 months ago

          Yep. That’s exactly why I tend to never discuss “AI” with people who don’t have to actually have a PhD in the domain, or at least a degree in CS. It’s nothing against them specifically, it’s only that they are dangerously repeating what they heard during marketing presentations with no ability to criticize it and, in such cases, it can be quite dangerous.

          TL;DR: people who could benefit from it don’t need it, people who would shouldn’t.

          • Jhex@lemmy.world
            link
            fedilink
            English
            arrow-up
            0
            ·
            10 months ago

            This is EXACTLY the YouTube woodworkers dilemma…

            TONs of YT channels to show people how to do woodwork would normally showcase $50K worth of equipment to show how to make a cutting board.

            The thing is, people with access to such equipment, already know how to make a cutting board and are learning nothing from you… on the other hand, newbies who what to know what is this “sanding” thing they have heard, will not benefit from the vid since they do not have those tools, they’d have crappy manual tools at most.

            Therefore, those videos are completely useless for learning… at best, they made for good background noise while people eat their lunches in their cubicles

            • utopiah@lemmy.world
              link
              fedilink
              English
              arrow-up
              0
              ·
              10 months ago

              I agree… but beside the point I have access to a dedicated workshop and a tool library https://www.tournevie.be/ which challenges this whole setup. It’s relatively unique though, unfortunately, so your example still stands, thanks for sharing.

    • Jhex@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      hmmm when I let a plumber into my house to fix my leaky tub, I didn’t imply he had permission to sleep with my wife who also lives in the house I let the plumber into

      The difference you try to make is precisely what these agentic AIs should know to respect… which they won’t because they are not actually aware of what they are doing… they are like a dog that “does math” simply by barking until the master signals them to stop

      • 87Six@lemmy.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        I agree with you, but still, the AI doesn’t do this by default which is a shitty defense, but it’s fact

        • Jhex@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          10 months ago

          Absolutely… this just illustrates that these AI tools are, at best, some assistance that need to be kept on a very short leash… which can only be properly done by people who already know how to do the work the AI is supposed to assist with.

          But that is NOT what the AI bubblers are peddling

      • PmMeFrogMemes@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        in your example tho it would be like the plumber asked you specifically if he could bone, and you were like “sure dawg sounds good”

        • Jhex@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          10 months ago

          No, not at all

          I get what you are saying but any reasonable entity would understand that telling someone at the door “come in”, does not mean “come in my wife’s ass”

          Specifically the “without permission” in the title, relates to the fact the AI did not ask about it… it simply took a previously granted right to run commands and ran any/all commands without warning.

          If you and I were working on a project together and nothing is working right, I could say “hmm let’s start over” and you would know it means “let’s start the project from scratch”, not “let’s wipe the data centre”

          • PumaStoleMyBluff@lemmy.world
            link
            fedilink
            English
            arrow-up
            0
            ·
            10 months ago

            Inviting an agentic AI isn’t really asking them to do one task, though.

            It’s more like offering a plumber a room in your house to stay in 24/7 so they can be on-call when you need them. And telling them they can use your food, dishes, clothes, and living room while they’re there and you’re at work.

            Which makes it much less surprising when they get bored and bone your wife.

            • Jhex@lemmy.world
              link
              fedilink
              English
              arrow-up
              0
              ·
              10 months ago

              It’s more like offering a plumber a room in your house to stay in 24/7 so they can be on-call when you need them.

              Again I get your point… but no reasonable plumber would make that mistake.

              If I invite the dumbest plumber alive into my home, show him the leaky tub and say “I have to work but do whatever you need”… they would understand the context to mean “do whatever you need to fix the tub”… I doubt they would go make themselves a sandwich, grab a beer from the fridge and invite their buddies for a BBQ at my place and then say “but you said I could do whatever I needed”

              I absolutely understand what happened here. The point is there is no benefit to these Agentic AIs because they need to be as supervised as a monkey with a knife… why would I ever want that? let alone need that

              • partial_accumen@lemmy.world
                link
                fedilink
                English
                arrow-up
                0
                ·
                10 months ago

                Again I get your point… but no reasonable plumber would make that mistake.

                To extend your analogy, agentic AI isn’t the “reasonable plumber”, its the sketchy guy that says he can fix plumbing and upon arrival he admits he’s a meth addict that hasn’t slept in 3 days and is seeing “the shadow people” standing right there in the room with you.

                I absolutely understand what happened here. The point is there is no benefit to these Agentic AIs because they need to be as supervised as a monkey with a knife… why would I ever want that? let alone need that

                I can see applications for agentic AI, but they can’t be handed the keys to the kingdom. You put them in an indestructible room with a hammer and a pile of rocks and say “please crush any rock I hand you to be no bigger than a walnut and no smaller than an almond”. In IT terms, the agenic AI could run under a restrictive service account so that even if they went off the rails they wouldn’t be able to damage any thing you cared about.

      • Hawanja@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        hey are like a dog that “does math” simply by barking until the master signals them to stop

        I mean, it’s not even that. Your dog at least can learn and has limited reasoning capabilities. Your dog will know when it fucks up. AI doesn’t do any of that because it’s not really “intelligent.”

    • Victor@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      But for real, why would the agent be given the ability to run system commands in the first place? That sounds like a gargantuan security risk.

      • utopiah@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        Because “agentic”. IMHO running commands is actually cool, doing it without very limited scope though (as he did say in the video) is definitely idiotic.

    • lando55@lemmy.zip
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      I didn’t install leopards ate my face Ai just for it to go and do something like this

  • Triumph@fedia.io
    link
    fedilink
    arrow-up
    0
    ·
    10 months ago

    Without permission? “I don’t know what I’m doing, you do it” sounds a lot like permission.