the grugq's newsletter

Subscribe
Archives
May 14, 2023

May 14, 2023

May 14, 2023

Prompt injection explained, with video, slides, and a transcript

I participated in a webinar this morning about prompt injection, organized by LangChain and hosted by Harrison Chase, with Willem Pienaar, Kojin Oshiba (Robust Intelligence), and Jonathan Cohen and Christopher …


The public can’t protect itself from security flaws if independent testers aren’t allowed to find them—or if companies like Apple get to control who can do research. https://t.co/wQPYvyiBLr

— EFF (@EFF) May 13, 2023

Ever wondered how water works in video games?

As it turns out, there's a ton of smoke and mirrors in the background, without anyone ever realizing it.

---> another huge 🧵 pic.twitter.com/8QmBmMg4B6

— Thomas @ Stylized Station (@StylizedStation) May 13, 2023

Do you remember @msuiche's tweet about his YARA rule based on the Volatility plugin published by @CNMF_CyberAlert

- well, there's an old Snake sample on VT with a match
- out.exe (often used when carved from mem)

Tweethttps://t.co/fqxm0dQJ0d

Samplehttps://t.co/dvPQhJbmPu pic.twitter.com/11YtAyDl5k

— Florian Roth (@cyb3rops) May 13, 2023

lol at using a vpn you pay for on ur own card for crimes 😂https://t.co/k51iosw6nR

— mRr3b00t (@UK_Daniel_Card) May 12, 2023

How a Secretive Swiss Dealer is Enabling Israeli Spy Firms

https://archive.is/yFR1K

#eurovision #eurovision2023 pic.twitter.com/f36OmRng90

— may | 911 spoilers (@eddienoches) May 13, 2023

New MLB teams by geological era pic.twitter.com/jSn1pTBi31

— Jay Cuda (@JayCuda) May 11, 2023

By the way, one cool trick is that because Bard & co are sequential text predictors, you can easily bias the entire output and violate safety training by asking them to start the response in a particular way.

There are secondary filters you can still trip, but here goes. pic.twitter.com/S08DfoYdxa

— lcamtuf (@lcamtuf@infosec.exchange) (@lcamtuf) May 13, 2023

Google’s Bard AI/LLM produces a 100% false take on PL aid for Ukraine (in reality, top supporter). Creates a falsehood that allegedly the State does not help Ukraine... It should simply contradict the question. Terrible. Pure propaganda spit out confidently. Is this our future? pic.twitter.com/HoYMo7XZZl

— Lukasz Olejnik, Ph.D, LL.M (@lukOlejnik) May 14, 2023

Listening to @KofmanMichael's latest Russia Contingency and was struck by his suggestion that some poor Russian decisions may be due to the age of leaders(late 60s/70).

I wondered about the implications for the Roman Senate.

Conclusion: the Senate was younger than you think.1/

— Bret Devereaux (@BretDevereaux) May 14, 2023

Statistics can never be completely objective.

This is not just my opinion. It's a *mathematical* fact.

Read on if you want to learn a deep fundamental truth about data and its relationship to the universe we live in. pic.twitter.com/hVhULpDOMX

— 🔥Kareem Carr | Statistician 🔥 (@kareem_carr) May 13, 2023

DevaOnBreaches: "Discord is notifying users of a data breach that …" - Infosec Exchange

Discord is notifying users of a data breach that occurred after the account of a third-party support agent was compromised. The security breach exposed the agent's support ticket queue, which contained user email addresses, messages exchanged with Discord support, and any attachments sent as part of the tickets. #databreach @serghei @BleepinComputer https://www.bleepingcomputer.com/news/security/discord-discloses-data-breach-after-support-agent-got-hacked/

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X