Hacker Newsnew | past | comments | ask | show | jobs | submit | throwoutway's commentslogin

Crazy? System prompt leaks are old news with dozens of trix to do it


mitmproxy


In your mind do you think the user request goes straight to the LLM???

I hope that's not what people are doing

I only figure [older pulls of Mistral 7b] were doing it, since it was so easy to exfiltrate false names, so I don't mean it's totally unheard of, but in 2026 I hope people are treating the LLM as untrustworthy - like the client in client/server setups.


In naive implementations like Grok that is exactly what happens.


Does Grok not have native models? What are you saying precisely


SpaceX and Tesla investing initial $16.8B to build a fab and manufacturing complex in Grimes County, TX. Musk says Terafab will handle each step of chip production including design.


What’s interesting about that?


It's interesting, in that every market where Musk has succeeded has been one in which the incumbents were either lazy (space launch), incompetent (satellite ISPs), or nonexistent (EVs).

If he thinks the same engineering approach will work in semiconductor fabrication, or that he can bluff and bluster his way to success in that particular industry, he has a surprise or three coming.


Who here is using Jimeng AI or Doubao Pro? Is it comparable to Claude / Gemini / GPT?


ANSWER: you can have AI write your a low quality substack post! How is that valuable?


It was a success? then why it not scaled up instead of shut down


You're also wrong

"Math is something humans invented"

Majority of mathematicians are platonists and believe arithmetic was existed and was discovered and was not "invented".

"There is no logic per se"

There is logic to it! Most logicians are mathematicians at heart. See Russel, Godel, Hilbert, etc

"no beauty of Mathematical Logic"

Mathematicians do focus on beauty. Entire books have been written on this. G.H. Hardy in A Mathematician's Apology even said math MUST be beautfiul

"Proofs are religious things"

What are you going on about...


Consensus may give a hint to what is or isn't reality. But consensus—even expert consensus—does not determine reality. Experts can be wrong. Most of the experts, even, can be wrong simultaneously.

Philosophy is the exercise of testing ideas for oneself in the laboratory of one's own mind.

When I test the idea that math is discovered in my own mind, from my own perspective, with my own experience and education brought to bear, I find it unconvincing.

When you test the same idea in the laboratory of your mind, with your experience and your education applied, and get a different result, that is interesting. Your result is relevant information to me. If nothing else, it's a good prompt/trigger for me to revisit my earlier conclusion and see if it still holds.

But your disagreement—or indeed, the disagreement of a majority of trained mathematicians—does not constitute an automatic reason for me to conclusively determine that you/they are right and I am wrong.

I still have my own examination of the concept, with my own supporting and detracting arguments. And the result of my examination continues to be that math being invented is the significantly more persuasive view.


Ingredeant lists != nutrition chart


You should make a work flow YT video! It would be worth a watch


Two past co's I know well rebranded themselves as "cloud" a decade ago with a narrow definition


Spin up a VM at some hosting company... "we're a cloud company now."


Yesterday ProPublica and ArsTechnica published a takedown of Azure: "Federal cyber experts called Microsoft’s cloud a “pile of shit,” approved it anyway" ...

https://arstechnica.com/information-technology/2026/03/feder...


In which one expert called the documentation provided "a pile of shit", which propublica took the liberty of extending to Azure itself


In those types of reviews/audits, documentation is the first indicator of whether a security organization has their act together. It's about building a trust relationship between the accreditor and contractor that will have to endure for years, as nation-state level actors throw their resources at finding vulnerabilities. MS couldn't do this or couldn't be bothered to do this. So shit documentation -> shit security processes and operations -> shit security -> shit cloud product in a government context. So the title wasn't that much of a stretch.


And they weren’t wrong


They still lied, because they didn't say "X is shit" but "Z said that X is shit", however Z apparently never said that.

I have become very cautious of such stories for this very reason. Who gets how much blame has a lot to do with "culture" or momentum. Bashing Microsoft for example is always super fine, but at multiple occasions I found the facts to be much more nuanced.


In this case, it’s just yet another design-level vulnerability in Microsoft cloud’s services. There isn’t much room for nuance.


It's true, they lied. But, paradoxically, in this case, while they lied about details, the conclusion is still true: Azure is very far from AWS and GCP as far as security is concerned. I have my own suspicions why it is so, but the reasons are not important, what counts is the final conclusion: if you really care for security, you'd better chose one of the other two.


“Fake but accurate.”

ProPublica has an agenda, and they slant their reporting to push it.

You can like their agenda and support this effort, but it’s not journalism.


What is their agenda?


Compare 600+ stories tagged for the Trump administration:

https://www.propublica.org/topics/trump-administration

…with 16(!!) since 2020 on Biden’s term:

https://www.propublica.org/topics/biden-administration

My favorite missing Biden story that should have been right in their wheelhouse: The unprecedented $36 billion bailout of the Teamsters’ pension fund.

https://www.statesman.com/story/news/politics/politifact/202...


Well, yeah, their agenda is reporting on fraud and illegal actions. If you do more fraud or illegal actions, you will have more stories about you. Trump does more fraud and illegal actions, objectively. If you’re a Trump supporter, reality may make you sad and angry when in conflict with the mental model.

I don’t mind pension bailouts, compared to tax cuts for the very wealthy and unnecessary military action in the Middle East (which has cost ~$50B as of this comment). Compare the costs.


Here’s an article on their front page today on a few thousand dollars in campaign contributions, no allegations of fraud or anything illegal:

https://www.propublica.org/article/sean-duffy-michael-alfons...

The Teamsters bailout was something like a million times that, from a Democratic president to a critical Democratic constituency.


Teamsters members in a majority voted for Trump. Google it. Biden helped people who didn’t value it. You blame Biden for “buying support” when it didn’t help Democrats; he did it because it was the right thing to do to protect the retirement promises made to union workers.

Can’t fix uneducated, unsophisticated voters I suppose.

https://www.theguardian.com/us-news/2024/sep/18/election-tea...

https://www.currentaffairs.org/news/sean-obrien-sold-labor-t...


I’m not arguing the merits of the policy. I’m arguing that if the Big Beautiful Bill contained a $70B slush fund for the administration to hand out to its tech buddies, ProPublica would have gone wall to wall.


If a slop engine calls a slop company slop, has anyone really lost?


We lost, for one of us got tricked to bring it here.


Titles are editorialised and space limited. The first couple lines in the article linked above make the nuance pretty clear.

[edit: 'pretty' instead of 'perfectly']


You are defending not just clickbait, but libelous clickbait.


I doubt this reaches the bar for libel by a long shot.


It's only libelous if it's not true. This vulnerability says otherwise.


It is libelous because it is a claim that "X said Y", not "Y".


Ah, so you're worried about the review team being misrepresented, not that Azure is shit.


Every security engineer I know working at Azure is on the verge of self-harm because of the current situation, or is the dumbest IC I've ever met and somebody I think should have never become a security engineer. Sample size ~12.


That is quite the indictment.


I am not very close with every one of these engineers, and some no longer work at MSFT, but yes talking to employees in Seattle working on security made me never want to use Azure.


Last I heard, the CO+I org has some pretty serious cultural problems that contribute to this, and which will not be easily solved.


Ars just republished it under license


Bloomberg and CNBC don't seem to have reported about this, maybe someone with contacts could make them aware?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: