150 points by shscs911 3 days ago | 46 comments | View on ycombinator
_pdp_ 3 days ago |
smokel 3 days ago |
It's not fully described how things work exactly, but apparently it does not transfer entire LLMs as part of the worm. Now that would be interesting :)
computerphage 3 days ago |
rtnplan 3 days ago |
The paper is a bit silent on why a such a worm would need an LLM. It seems that brute forcing all known vulnerabilities, script kiddie style on each new machine is about the same.
But apparently that info is too dangerous to release ...
jameslk 3 days ago |
pbrum 3 days ago |
arm32 3 days ago |
malfist 3 days ago |
This is the same nonsense that lead to article saying researchers had created a wormhole when all they had done was draw one.
I have a microcontroller with an ROM disk (i.e., physically read only). You're telling me that an AI can find a way around the physics of not being able to mutate ROM and exploit it?
pfdietz 3 days ago |
throwaway81523 3 days ago |
mattvr 3 days ago |
alentodorov 3 days ago |
is this papernot’s first paper?
mugivarra69 3 days ago |
soiax 3 days ago |
hamburgererror 3 days ago |
IshKebab 3 days ago |
K0balt 3 days ago |
Obvious pattern of using ai to replace human reasoning in a proven methodology of malware distribution, C&C, and network infiltration obviously possible, say researchers.
Researchers use AI to create the torment nexus using commodity hardware, demonstrating the very real threat that AI could enable attackers to create torment nexus nodes using commodity hardware. “It wasn’t even that hard !“ says one researcher. Firmware available to qualified researchers who pinky swear that it will not be leaked.
Researchers set fire to laboratory with gasoline, killing seven volunteer victims, demonstrating that laboratory fires are a real risk and can carry significant consequences, especially when gasoline is involved.
Just because you can, doesn’t mean you should.
The intended purpose is not to be used as a worm but it does not take a genius to figure out that with small modifications such a thing could work relatively well - especially if it uses AI keys from compromised targets. Making the agent self-modifiable is relatively straightforward task and in fact I already did that in another project.
https://github.com/chatbotkit/rook