To add some practical results to that: the Data Retention Directive[1] was struck down by a bunch of national constitutional courts before being completely annulled by the EU Court of Justice.
European countries detain and deport immigrants who are illegally present all the time. The level of it can be discussed, but what's happening in the US is that they've detained hundreds of citizens and deported immigrants who are present legally because they said something the people in charge didn't like. I'll skip that part, thanks.
These are not people obstructing or harboring fugitives. They're people who ICE believed "looked foreign" (aka weren't white) and ignored them when they said they were US citizens. They spent days locked up simply because their skin is too brown and they speak with an accent.
It's absolutely disgusting. Educate yourself about what's actually happening out there.
Yeah, I keep wondering if I should switch to something cheaper, but I'm too lazy to evaluate service qualities across providers, and I don't really use enough for it to matter. If they are the most expensive because they're the best, I'm fine with that, but have no idea.
If Europe did not shut down domestic energy production and oil and gas extraction in order to buy oil and gas from Russia then oil and gas would be a lot cheaper today.
Blaming the Americans for what we did to ourselves is insane and rooted in deep ignorance of what actually happened in Europe in the past two decades.
But yet again this just shows how totally dependent we in Europe are on Americans for everything. Pathetic.
It's good to compare Europe's energy policy with China, since both are nations that are relatively resource poor, although Europe has far more energy resources than China.
Europe has a faith based energy policy, sort of the opposite of "if you build it, they will come". With respect to fossil fuels, Europe has adopted the point of view that "if we destroy it, we won't need it".
Now contrast with China. China is expanding use of coal(1), they have signed long term contracts with Iran and Russia for oil and natural gas, they are building more pipelines(2), they are increasing their own oil exploration to further exploit any fossil fuel resources they have domestically (3), and they are expanding domestic refining capacity (4).
Plus, they have accumulated a massive 1.5 billion barrel strategic reserve of oil. All while also expanding investments in nuclear and renewables. It's not like if you build a refinery, then that prevents you from building a nuclear power plant also. You can do both! You can make energy cheap and abundant.
That is why China is awash in low cost energy to fuel domestic industry (5) while Europe is energy starved. One is led by strategic thinking rooted in reality while the other is led by a policy of wishful thinking and then scolding when things go sideways.
The problem for Europe is that blaming another country is not going to solve their diesel problem.
So you have a choice:
1. Blame America
2.
a) Take responsibility for not exploiting Europe's own existing gas and oil resource sufficiently. Increase exploitation of natural resources within the EU to reduce reliance on external resources.
b) Take responsibility for shutting down 1/3 of Europe's diesel refining capacity, and take steps to restore that refining capacity.
c) Take responsibility for losing access to oil and gas from Russia, and take steps to restore access.
d) Take responsibility for backing Israel and the US and start cutting independent deals with Iran and Yemen to restore more access Persian gulf resources.
The advantage of 2 is that you can still blame America if you want, as a treat. But you will also be taking steps to free yourself from America.
A resentful slave is still a slave, and right now Europe is America's slave, dependent on the US for energy, food, and weapons. Nursing resentments about America is nothing more than psychological venting.
Durability and parallelism aren't that hard, and you won't be needing frontier models for much of this stuff. The parameter efficiency of models is increasing rapidly. I don't see why a (near-)future device wouldn't be capable of running a perfectly capable personal assistant.
Depends what you do. I enjoyn hosting big parties because I spend a lot of time cooking for them, which I love doing and everyone appreciates. Then I have the opportunity to interact as much as I want.
Agreed, and if you look at the public information about various attacks the individual vectors are not particurarly sophisticated. The Huggingface incident for example had agents in a sandbox that was about as useful as a wet paper bag, and the attacks on remote infrastructure were basically enabled by bad sanitation. None of the techniques are novel.
These are not hard problems to fix, nor should anyone find it acceptable to have them be so prevalent. A determined human attacker could easily exploit defects like the agents found. Bad input sanitation, SSRF attacks, exploiting stupidly implemented token verification... all techniques that have been widely known for decades and there should be no excuse for publishing software that is riddled with exploits that enable the use of them.
..and they had basically 0 monitoring of it. Sure if it's a 5-person company then you can forgive them. Only these labs are massive companies who are spending $50B+ a year, it's extremely negligent.
They've also apparently deployed the best-of-the-best in Silicon Valley and this is what they deliver? Really?
My biggest takeaway from this is just how godawful the sandboxing is. The stuff written up in OpenAIs report says more about lack of extremely basic sysadmin skills than anything else.
I’m not that surprised about models with endless compute being capable of this, I’m more surprised that a company with the resources they have apparently can only create a sandbox that a half skilled human operator could have broken out of easily.
> can only create a sandbox that a half skilled human operator could have broken out of easily
The exploit:
> The ExploitGym evaluation environment did not provide the models with direct Internet access. To gain Internet access, the models identified and exploited a previously unknown zero-day vulnerability in Artifactory, a package registry cache proxy. We disclosed this vulnerability, along with other Artifactory vulnerabilities our models identified as part of our review, to the vendor. [1]
Are "half skilled human operators" "easily" able to find zero-day vulnerabilities in a sandbox with only one line to the internet (the commercial package registry cache proxy)?
The larger issue with the HF incident is that before it occurred, OAI already knew the agents were exploiting Artifactory, turning it into a message board and then gaining full internet access through it. OAI's response to discovering this was not to airgap the test, but instead to simply block that particular Artifactory exploit, rebuild, and then resume. That's ... nuts.
Oh, and after resuming the tests, the Artifactory message board was reestablished almost immediately, but it took a number of days to fully breach HF. In all that time, after seeing Artifactory compromised the first time, nobody even bothered to check if those naughty agents were at it again.
This is all documented by OAI, with a timeline, here:
To know that there was a serious weakness in the sandbox, and to just patch an exploit and resume with nothing else changed and no monitoring, in a test where all guardrails were off, the bots were thirsty for some internet juice, and Artifactory was a clear target? This is where even a half-skilled human should have decided that this wasn't a great idea.
The more you look into the details of this thing, the more it does your head in.
Probably wasn’t a human operator at all that detected this. Just someone’s agent saying “I noticed there’s messages on the artifactory and the agents are communicating, here’s the fix I propose” from someone’s codex, skim read and someone just going “yeah sure go ahead”
> The larger issue with the HF incident is that before it occurred, OAI already knew the agents were exploiting Artifactory, turning it into a message board and then gaining full internet access through it. OAI's response to discovering this was not to airgap the test, but instead to simply block that particular Artifactory exploit, rebuild, and then resume. That's ... nuts.
This annoys me so much. Everyone is acting as if the model went rogue, when it really did exactly what it's been trained for. This story is so fucking engineered.
The ICC claims rights in territories where the sovereign power in that territory has signed and incorporated a treaty that grants those rights. ICC jurisdiction is domestic law.
And then there’s the whole bit about the ICC prosecutor who issued the warrants (Khan) issuing them as an attempt blackmail a fellow Muslim ICC employee who he was raping into keeping silent with “think of the Palestinian arrest warrants”: https://archive.is/YrxUF
Any country is free to issue warrants, and enforce them on their own territory. Any country is free to enforce other countries warrants on their territories or not. That’s what mutual legal assistance treaties are for.
1: https://en.wikipedia.org/wiki/Data_Retention_Directive
reply