• 0 Posts
  • 10 Comments
Joined 3 years ago
cake
Cake day: June 14th, 2023

help-circle

  • Right, but the volume was the issue. The cURL team could only work through and verify them so quickly, so the deluge of bug reports just made it impractical for them to dedicate time to sort through it. The idea in getting rid of the bug bounty being that there would be less of an incentive to generate and write a bogus bug report.

    If it was just a small handful of fake security reports, they wouldn’t have minded nearly as much.








  • Though this is more targeting retrieval-assisted generation (RAG) than the training process.

    Specifically since RAG-AI doesn’t place weight on some sources over others, anyone can effectively alter the results by writing a blog post on the relevant topic.

    Whilst people really shouldn’t use LLMs as a search engine, many do, and being able to alter the “results” like that would be an avenue of attack for someone intending to spread disinformation.

    It’s probably also bad for people who don’t use it, since it basically gives another use for SEO spam websites, and they were trouble enough as it is.