@kurtseifried@infosec.exchange avatar

kurtseifried

@[email protected]

Chief Innovation Officer @cloudsecurityalliance and @kurt

This profile is from a federated server and may be incomplete. View on remote instance

@bert_hubert@fosstodon.org avatar bert_hubert , to random

My call for European governments to retain at least a core IT/communication/email/file capability that is independent of US clouds. Named after the iconic Radio Kootwijk which we built in response to the English cutting off our communications with Indonesia in 1916: https://berthub.eu/articles/posts/communicating-without-musk-and-trump-cloud-kootwijk/

kurtseifried ,
@kurtseifried@infosec.exchange avatar
@molly0xfff@hachyderm.io avatar molly0xfff , to random

As I wrote last week: "As other information sources fall, Wikipedia’s stubborn independence becomes more vital than ever. The attacks from [the right] aren't just about an online encyclopedia — they're part of a broader assault on any information source that refuses to be controlled."

https://forward.com/news/686797/heritage-foundation-wikipedia-antisemitism/

kurtseifried ,
@kurtseifried@infosec.exchange avatar

@molly0xfff the edit history is perfect for the article.

@molly0xfff@hachyderm.io avatar molly0xfff , to random

Newsletter: Celsius’ Alex Mashinsky pleads guilty to fraud, some Tornado Cash sanctions are overturned, and tech billionaires complain about “debanking”.

https://www.citationneeded.news/issue-71/

kurtseifried ,
@kurtseifried@infosec.exchange avatar

@molly0xfff we wouldn’t have to blame the victim if there were no scammers. Just saying.

@kurtseifried@infosec.exchange avatar kurtseifried , to random

@lcamtuf As an average: yes. In a specific domain, if you are a true expert you might be slightly better than it. This leads to a sort of "reverse imposter syndrome" where most experts poke at the LLM until they find an "AHA! it doesn't know something!" and then in a sort of reverse Gell-Mann Amnesia trope apply it to everything the LLM does. Forgetting that most people are NOT experts in anything, let alone multiple things, so statistically the LLM is going to beat the pants off the average human.

E.g. they can crank out limericks:

If you’re an expert in your own domain,
You might find the LLM's brain a bit plain.
Reverse imposter you'll feel,
When you catch a small deal,
But forget most folks can't do the same!

kurtseifried OP ,
@kurtseifried@infosec.exchange avatar

@dalias @lcamtuf not really, I’m working on an article but TLDR a combo of:

-Gartner hype cycle (trough of disillusionment)
-reverse imposter syndrome/ gell-Mann amnesia as mentioned
-uncanny valley

Seem to go a long way to explaining why so many people are really hating on AI. The classic “they’re taking our jobs” is also part of it, and training on everyone hard written work, but this doesn’t explain the richness and variation in how people despise AI and LLM specifically.

kurtseifried OP ,
@kurtseifried@infosec.exchange avatar

@dalias @lcamtuf Ok, one real world example of what I use LLM for: can you please analyze these pet insurance policies and tell me what's good/bad/different about them, in less than 5 minutes? https://www.petsplusus.com/sites/default/files/PPU_B_11.2017%20PC%20Policy%20WordingswStat%20FA1217NC.PDF and https://www.trupanion.com/docs/trupanionwebsitelibraries/trupanion/files/pdfs/2019_policy_english_sample.pdf?sfvrsn=e8db2911_2

I bet ChatGPT knows more about contract law and pet insurance than I do. Also you can validate their output and conclusions to a reasonable degree:

"can you provide relevant sections of text and the page number to backup each item above?"

Coverage: Text: "We cover: The Actual Cost of Treatment You incur for the Veterinary Treatment of Your Pet for unexpected Illnesses or Injuries." Page: 5​(2019_Policy_English_SAM…) Text: "Optional Coverage Riders: The following optional benefits are available subject to an additional premium... Recovery And Complementary Care rider... Breeding rider... Pet Owner Assistance Package." Page: 6​(2019_Policy_English_SAM…) Text: "Your Pet’s teeth must be Examined by a Veterinarian at least once every 12 months... Veterinary Treatment required due to dental Illness and Injury, subject to all other terms and conditions of this policy." Page: 11​(2019_Policy_English_SAM…) Deductibles: Text: "The deductible You select is defined as the monetary amount that You pay for an Illness or Injury, prior to coverage... Once You meet the deductible amount for a specific Illness or Injury, this policy will pay out all future losses for that specific Illness or Injury." Page: 5​(2019_Policy_English_SAM…)

ALT
  • Reply
  • Loading...
  • @molly0xfff@hachyderm.io avatar molly0xfff , to random

    just realized i've had the mollywhite.net domain for over 10 years(!!)

    related sneak peek into an upcoming piece: i firmly believe that if you're going to spend money on one thing online it should be a domain, particularly as online identity gets more fragmented. as platforms come and go, you can always find me there.

    kurtseifried ,
    @kurtseifried@infosec.exchange avatar

    @molly0xfff The problem is most people don't have the operational expertise to do this reliably on an ongoing basis, LTT talked about how they get a lot of resumes for technical positions with custom email/web domains that don't work. And if you want to do email you better make sure you use a provider with easy to setup SPF/DKIM/DMARC if you want anyone to read your email.

    Using Facebook/Myspace/whatever to host your online presence means you can lose it all if they stop working or delete your account, but doing it yourself with your own domain isn't 100% risk free either.

    Even well funded orgs with technical expertise mess this up: https://inti.io/p/when-privacy-expires-how-i-got-access