Hacker Newsnew | past | comments | ask | show | jobs | submit | acessoproibido's commentslogin

The eightfold path, the primordial truth, praise be the ruinous powers!

>If you allow a human to edit your code and also give them access to untrusted data (like the Internet), you have a security problem.

Security shouldn't be viewed in absolutes (either you are secure or you aren') but more in degrees. Llms can be used securely just the same as everything else, nothing is ever perfectly secure


Things can only be used securely if they have properties that can be reasoned about and relied upon.

This is why we don't usually have critical processes that depend on "human always does the right thing" (c.f. maker/checker controls).


They can be reasoned about and relied upon.

The problem is that people/users/businesses skip the reasoning part and go straight to the rely upon part.


They can be reasoned about from a mathematical perspective yes. An LLM will happily shim out your code to make a test pass. Most people would consider that “unreasonable”.

>drowns in veiled toxicity

I don't really disagree but given the massive tsunami of outright _vileness_ that has engulfed all other online soaces it's holding up remarkably well


Compared to how bad online discourse has gotten pretty much anywhere else in the meantime, it's still really good here. Only place I can stomach for extended periods

Still a couple thousand away from 0.

But yea the double whammy of toxic culture and LLMs did the trick. Decline already set in well before good enough LLMs were available.

I wonder how reddit compares, though its ofc pretty different use case there


Reddit is a forum morphed into social media. I usually use "question + reddit" on Google to confirm my suspicions about a subject. It is a place to discuss things rather than find answers. It is extremely politicized (leftist/liberal), but that's a whole other story.

Havent been able to figure this out for Instagram - also the only social media that is still relevant for me. (thankfully?) never got into twitter where it seems to be easy.

Maybe a dumb question but why?

Im a firm believer that data collected that doesnt have a clear action associated with it is meaningless - and i couldnt think of an action i would take if my traffic goes up or down on my personal blog - but tbh i mainly blog for myself not really to build an audience, so our objectives might differ


It is kind of fun even if it serves no purpose. Like those end of year recaps by various services, "oh shit I played that much Hades?"

There are some actions you can take. For example, when my traffic plummeted, I saw through my logs that search engines were trying to access my search page with questionable queries. That's when I realized I became a spam vector. I gave a better rundown through the link I shared.

Same reason why people have personal projects and share them on GitHub, it's fun to see people using / starring / interacting with your project / blog.

I really want to implement this, but i havent been able to figure out how to do it for Instagram (the only social media that is really relevant in my friend circle) and whatsapp/signal groups other than doing it manually. If anyone has tips, especially for Insta let me know...

Here's a tip: don't bother doing this. Go PESOS instead. One way to do it:

https://news.ycombinator.com/item?id=46482285


Nothing against your friend but what a hellish product

It's hard to know whether the blame should lie with the friend or YouTube

It does not make sense at all - we just react very well to AI outrage slop on HN (and other platforms) which is why these articles get written so much. You just need some half-baked idea and boom! frontpage

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: