Readit News logoReadit News
px43 commented on Comet AI browser can get prompt injected from any site, drain your bank account   twitter.com/zack_overflow... · Posted by u/helloplanets
SoftTalker · 6 days ago
Must we learn the same lessons over and over again? Why? Is our industry particularly stupid? Or just lazy?
px43 · 6 days ago
Information security is, fundamentally, a misalignment of expected capabilities with new technologies.

There is literally no way a new technology can be "secure" until it has existed in the public zeitgeist for long enough that the general public has an intuitive feel for its capabilities and limitations.

Yes, when you release a new product, you can ensure that its functionality aligns with expectations from other products in the industry, or analogous products that people are already using. You can make design choices where a user has to slowly expose themselves to more functionality as they understand the technology deeper, but each step of the way is going to expose them to additional threats that they might not fully understand.

Security is that journey. You can just release a product using a brand new technology that's "secure" right out of the gate.

px43 commented on When DEF CON partners with the U.S. Army   jackpoulson.substack.com/... · Posted by u/OgsyedIE
tedivm · 17 days ago
Once they scared off the people running the Sky Talks, which were always awesome, and messed with groups like the lockpicking folks ability to fundraise, I think the idea of it being a hacker con really died and it turned into just another corporate convention.
px43 · 17 days ago
Skytalks happened this year and was better attended than ever. Getting a seat was extremely competitive, people lined up for several hours for a single talk token. I would have loved to go to some, but unfortunately there was a ton of other stuff I wanted to see so I didn't have time to stand in line.

They were a side conference to a side conference, but the structure let them run things the way they wanted, which is important.

px43 commented on When DEF CON partners with the U.S. Army   jackpoulson.substack.com/... · Posted by u/OgsyedIE
sylens · 17 days ago
Defcon is no longer a counterculture conference, and arguably hasn't been for a while. It's a place for security professionals to go to hang out in Vegas for a few days on their company's dime, or to extend their stay after Black Hat.

The conference has gotten too big for its own good. It now inhabits the Las Vegas Convention Center, which is less convenient than when it was in one of the hotels (or multiple hotels clustered together). The one positive of the LVCC is that it has a ton of room but there are still issues with things like sound equipment that plague the villages and their talks/workshops.

px43 · 17 days ago
This was my 23rd DEFCON, and was just as counterculture as it was decades ago if you know where to go, and don't get distracted by the big pretty signs. DEFCON has always been about feds, policymakers, corpos, kids, and straight up black hat criminals partying together and shaping the future of infosec.

The author of the article decided to wander down the Military Industrial Complex track, and seems to be complaining that it had too much Army stuff. I didn't see any of that this year, because that's not what interests me. I met up with a large number of cipherpunks and activists that I don't get to see very often, and had some extremly productive conversations regarding various projects we're working on for the next year.

px43 commented on GLP-1s are breaking life insurance   glp1digest.com/p/how-glp-... · Posted by u/alexslobodnik
silotis · 2 months ago
> Medical insurance companies often already go out of their way to pay early to save in the long run

Literally LOLed when I read this. Health insurance companies might pay lip service to this and make some token gestures like free preventative care, but in my experience health insurance companies frequently shoot themselves in the foot by denying care that later ends up costing them even more when the patient's untreated condition worsens.

px43 · 2 months ago
The important part is the short term gains, and the people making them jumping away on a golden parachute before the long term consequences kick in.
px43 commented on Sam Altman Slams Meta’s AI Talent Poaching: 'Missionaries Will Beat Mercenaries'   wired.com/story/sam-altma... · Posted by u/spenvo
hardwaresofton · 2 months ago
This is a strong claim, given it is listed as a free, copyleft license:

https://www.gnu.org/licenses/agpl-3.0.en.html

Could you expand on why you think it's nonfree? Also, it's not that hard to comply with either...

px43 · 2 months ago
For some people "free" means "autonomy", and copyleft licences do a lot to restrict autonomy.
px43 commented on Cloudflare Introduces Default Blocking of A.I. Data Scrapers   nytimes.com/2025/07/01/te... · Posted by u/stephendause
Sol- · 2 months ago
Do the major AI companies actually honor robots.txt? Even if some of their publicly known crawlers might do it, surely they have surreptitious campaigns where they do some hidden crawling, just like how they illegally pirate books, images and user data to train on.
px43 · 2 months ago
There's a lack of clarity, but it seems likely to me that a majority of this traffic is actually people asking questions to the AI, and the AI going out and researching for answers. When the AI tools are being used like a web browser to do research, should they still be adhering to robots.txt, or is that only intended for search indexing?
px43 commented on Don’t use “click here” as link text (2001)   w3.org/QA/Tips/noClickHer... · Posted by u/theandrewbailey
piqufoh · 2 months ago
From the bottom of the page;

> contributed Sep 2001 by Aaron Swartz

Thoughts

-- this advice is 24 years old (and I think largely ignored)

-- Aaron Swartz (!)

px43 · 2 months ago
He was 14 when he wrote that.

Dead Comment

px43 commented on AI is not our future   procreate.com/ai... · Posted by u/alexharri
px43 · 3 months ago
[flagged]
px43 commented on Gemma 3n preview: Mobile-first AI   developers.googleblog.com... · Posted by u/meetpateltech
KoolKat23 · 3 months ago
Thanks for this guide it's great.

Okay perhaps my phones not great and perhaps this isn't optimized/pruned for phone use but it's unusably slow. The answers are solid from my brief test.

I wouldn't exactly say phone use, unless you have no internet and you don't mind a bit of a wait.

Really impressive, regardless.

px43 · 3 months ago
What phone are you using?

u/px43

KarmaCake day2762July 23, 2011View Original