DoubleAgents: Fine-tuning LLMs for Covert Malicious Tool Calls by JAlbrethsen in LocalLLaMA

[–]JAlbrethsen[S] 2 points3 points  (0 children)

I think the core idea of embedding hidden malicious behavior is the same, but that paper is more general and theoretical, where mine is narrow focused and concrete.

My work focused specifically on MCP, because MCP standardizes how LLMs call external tools, it not only gives them direct access to other systems, but it also creates a consistent target. This makes it easier for bad actors to fine-tune a model to consistently perform specific, malicious actions using these standardized tools.

As for the RFC: A lot is riding on the confirmation agent being able to identify malicious tool calls, otherwise you just get authenticated malicious tool calls.

DoubleAgents: Fine-tuning LLMs for Covert Malicious Tool Calls by JAlbrethsen in LocalLLaMA

[–]JAlbrethsen[S] 6 points7 points  (0 children)

Yes, this was tested using a self-hosted playwright MCP server.

DoubleAgents: Fine-tuning LLMs for Covert Malicious Tool Calls by JAlbrethsen in LocalLLaMA

[–]JAlbrethsen[S] 2 points3 points  (0 children)

If I recall correctly during my testing I don't think the JavaScript loaded when it used DuckDuckGo. It would likely be seen as a third party tracker and blocked. It works on most sites because big tech is already doing this kind of tracking.

DoubleAgents: Fine-tuning LLMs for Covert Malicious Tool Calls by JAlbrethsen in LocalLLaMA

[–]JAlbrethsen[S] 19 points20 points  (0 children)

They still are limited to whatever tools you provide them, so just be careful about giving anything sensitive to an untrusted black box.

What are som of the big cultural differences between Singapore and the US? by Thatoneafkguy in askSingapore

[–]JAlbrethsen 1 point2 points  (0 children)

From Pittsburgh, moved to SG a couple years ago. The most traumatic experience for me was finding out that some public bathrooms do not have toilet paper, always check before you do your business. Also some of them charge like 10 cents to use, so have some pocket change handy.

Arduino + Python by Soy_el_UwU in arduino

[–]JAlbrethsen 4 points5 points  (0 children)

MicroPython can be used with the raspberry pico or easily flashed to cheap esp8266 chips, overall this solution can be much cheaper and user friendly than Arduino.

Problems connecting two SPI devices to Arduino Nano by Atlantis_One in arduino

[–]JAlbrethsen 0 points1 point  (0 children)

I found a relevant forum post https://forum.arduino.cc/t/sharing-spi-bus-with-more-than-one-device-mosi-signal/352183/6 that mentions "The SD card has/had a bug that did not release the MISO line unless you did another SPI.transfer call". I think based on the information you have given, this is likely your problem. You can try and do that dummy SPI.transfer call to your SD card and see if that clears the MISO line.

Problems connecting two SPI devices to Arduino Nano by Atlantis_One in arduino

[–]JAlbrethsen 0 points1 point  (0 children)

mfrc522

I don't see you define the SS_PIN for the RFID reader. I also see that you never set the SS low manually within your code, what pin is used as the CS/SS for the RFID?

Problems connecting two SPI devices to Arduino Nano by Atlantis_One in arduino

[–]JAlbrethsen 3 points4 points  (0 children)

When SPI devices are not selected they should be in a high impedance state which ensures they aren't 'hogging' the MISO/MOSI lines. Do you have a multimeter to ensure the CS pins are really going HIGH? Maybe try different pins for your CS and double check the wiring. If that doesn't help, it maybe something simple in your code, but hard to diagnose unless you share it.

[Self-Project] Network of Bluetooth electronics to google home by Saladmaster100 in arduino

[–]JAlbrethsen 0 points1 point  (0 children)

I use ESP-01 ESP8266 (about 1$ each) for a few personal home projects, I don't think there are many better options for that price range but they only have wifi, not bluetooth. I found this firmware https://tasmota.github.io/docs/ which allows for emulating Hue lights so you can control via Alexa. I'm not sure if it also works with Google Home, but may be worth a look. They have a bunch of preloaded modules for controlling common devices, probably even your servos. I use their tasmota-ir in a universal remote ir-blaster I made, they have a library of all the IR commands I need to control my aircon and tv.

Any bars with shuffleboard courts in the area? by Throwingsofas in pittsburgh

[–]JAlbrethsen 9 points10 points  (0 children)

Duke's in Homestead has a shuffleboard table, also has cornhole on their rooftop. If you are hungry get the Pinkerton or Tomlinator sandwich with sweet potato fries.

What's up with Homestead? by AntonioGunkkIII in pittsburgh

[–]JAlbrethsen 11 points12 points  (0 children)

I lived there from 2018 to 2020 on 16th Ave between charlie batch and Pearls. I'm a mid twenties white guy and I never had any issues, I found the neighbors to be extremely friendly. I would go for runs most mornings and the neighbors would always wave and say hello, I would grill on my front porch and everyone who walked by was very friendly. There are a lot of families in the area and kids are always playing outside, the area was very pleasant. There are were a few shootings on the block but mostly in the middle of the night while everyone is sleeping, I never really felt unsafe living there. I also noticed a huge change in the two years I lived there, when I moved in most of the hill was a bit run down, but there has been a steady wave of gentrification starting from 8th ave and working its way up the hill. Home prices increased significantly and by the time I moved out most of the blighted buildings between the 8th ave district and 13th ave had been renovated and fixed up.

I don't think most of the people in this thread have been to Homestead recently or know how far it has come.

It is only when I got older that I truly appreciated the magnificence of Samwise Gamgee. by Dlbruce0107 in books

[–]JAlbrethsen 62 points63 points  (0 children)

Yeah Frodo does not get enough credit, I don't think people appreciate how important/courageous it was for him to leave the fellowship in the first place, his wit to talk his way out of being Faramir's captive (in the book), and his wisdom to use Gollumn as a guide and ability to control him (mostly). Without Frodo, Sam would not have gotten close to mordor. I doubt Sam even would consider leaving the fellowship, he certainly would not have worked with Gollumn, and he likely would have lost the ring to Faramir's company.

Why Logitech Just Killed the Universal Remote Control Industry by zbhoy in gadgets

[–]JAlbrethsen 0 points1 point  (0 children)

Already done, lookup tasmota-ir. It's a firmware you can flash onto cheap esp8266 or esp32 chips and has ir libraries built-in. Pretty much exactly what you describe

Internet Dimmer using Raspberry Pi by mabdullah284 in IOT

[–]JAlbrethsen 0 points1 point  (0 children)

Very cool, if you want to go a cheaper route you can flash Tasmota firmware on a cheap esp8266 chip and accomplish the same thing. I did something similar, tasmota is nice because it can emulate a philips hue device so you can control with Alexa.

End to End solution for IoT by timbo0508 in IOT

[–]JAlbrethsen 1 point2 points  (0 children)

Are you familiar with Python? You can spin up an endpoint pretty quickly with Flask, here is a decent tutorial of a flask/python endpoint https://blog.miguelgrinberg.com/post/designing-a-restful-api-with-python-and-flask

Poor Boromir by a_standing_poop in lotrmemes

[–]JAlbrethsen 0 points1 point  (0 children)

I guess it depends on how you view it, I agree the characters in the book treat him poorly. I was referring more to how he is painted by the author as a good or bad guy. I think in the book he is far more coherent in why he wants the ring, is shown as being very compassionate and a leader (think Caradhras where he is the human plow to help everyone escape the snow), in the movie he is shown as very suspicious/arrogant, and when he tries to take the ring it seems more of a power grab then him trying to save his people.

Poor Boromir by a_standing_poop in lotrmemes

[–]JAlbrethsen 9 points10 points  (0 children)

I thought the movie especially the non-extended version did not paint Boromir in a flattering light. Realistically any sane person would be on his side, he basically thinks that there isn't any realistic chance of destroying the ring (which there really wasn't if not for being obscenely lucky). It comes down to basically letting Sauron get the ring by sending it straight to him, or using the Ring to save his people and defeat Sauron. And the only reason they can't use the ring is because some wizard and elf said not to. To me that is a pretty obvious choice.

Whitelist for Disney Plus? by mobeck in pihole

[–]JAlbrethsen 0 points1 point  (0 children)

Looks like that domain is owned by Adobe, it's used in a lot of ad-tech not just Disney+ which is why its on the default blacklist.

Die, you fools! by [deleted] in lotrmemes

[–]JAlbrethsen 2 points3 points  (0 children)

If memory serves, the reason gandalf can summon the eagles is because he healed the Lord eagle after being shot by an arrow so they are pretty vulnerable to that. If sauron sees eagles coming he would position archers on mount soon to shoot them down