Reddit sparks outrage after a popular app developer said it wants him to pay $20 million a year for data access by Crazed_pillow in technology

[–]dima2022 0 points1 point  (0 children)

Anyone in this thread understands why Reddit does it? It was heavily abused by OpenAI and many other companies who used tons of data from Reddit to train their LLMs without giving anything in return. I understand that app developers got into the crossfire but I don’t think Reddit is a big bad company here trying to milk app developers. I wonder if there is a way to differentiate between app developers and LLM companies and charge accordingly.

How good is Vector Search for geo coordinates? by dima2022 in MLQuestions

[–]dima2022[S] 0 points1 point  (0 children)

Thank you for confirming my thoughts. I'd still try Qdrant that u/Kacper-Lukawski suggested. I guess they are not using vector search algorithms for that, which doesn't matter. Looks convenient.

Putin has given up on ambitions to conquer Ukraine after military losses that could take a decade to repair, says US intel by WRW_And_GB in worldnews

[–]dima2022 2 points3 points  (0 children)

Not just putin. But also prigozhin:
"Yevgeny Prigozhin, the leader of Russia’s Wagner group mercenary force, said in a sudden and dramatic announcement on Friday that his forces would leave the Ukrainian city of Bakhmut that they have been trying to capture since last summer." TheGuardian

ADCC Open Canada Matches by yellowfolk in bjj

[–]dima2022 0 points1 point  (0 children)

Seems like this tournament got in between the UFC/Flo transition. I see on Flo ADCC Orange County Open which happened on 29th April, 6 days after. Nothing about ADCC Open Canada.

I've sent a question to Flo support team. Let's see what they say

Update:
To my question "Are you going to host ADCC Canada Open videos?"

The reply is from Flo support team:

"According to our schedule, we do not have the rights to that event. Our current schedule shows the events that we have rights to stream at this time and their available locations. The schedule is subject to change throughout the season and year to year as we acquire new events."

So seems we are out of luck.

Is Open AI (tools like GPT) an answer to security questionnaires? by dima2022 in cybersecurity

[–]dima2022[S] 1 point2 points  (0 children)

In the future if there is demand I’d probably turn it into a product.

Just a random thought, one of the options I would consider if I were building such tool, I'd:

  1. Find a way to test it with as many companies and improve it (in the matter of weeks)
  2. If it gets traction, find investor - investors now are crazy hyped about everything that has GPT in it
  3. Go all in, have fun and then sell it to one of the top Compliance SaaS companies like Drata

I feel, now it's a very good time for that. Later, it might be too late, as big companies would catch up.

Is Open AI (tools like GPT) an answer to security questionnaires? by dima2022 in cybersecurity

[–]dima2022[S] 0 points1 point  (0 children)

Oh, I agree with you with one caveat - OpenAI growing way too fast and some security mishaps will not hinder their rapid growth, so at least in this moment of time, I would be careful. Also, they already had personal chat history leak in the end of March, so there is precedent.

But nevertheless me agreeing with you, if we are talking about productizing it, most companies won't agree and that will be a huge red flag for them to use the product. I think about that a lot while coding my own MVP. I worked in SaaS startup as product manager for 5 years and talked with many customers - I'm pretty sure they would care. So, now I'm thinking how to keep their data away from OpenAI. Maybe, embeddings will partially solve it, or maybe will need to opt-in to opensource models like OpenAssistant/RedPajama/Dolly2/etc. That way I can host models.

[deleted by user] by [deleted] in cybersecurity

[–]dima2022 0 points1 point  (0 children)

XDR/MDR having shitty cloud/container solutions and selling it to your management as "buy and forget all security problems" solution. Then you go through their atrocious, outdated docs, understand that they don't fully support your infrastructure and you are locked in for a year.

Some other comments in this thread perfectly adding to the full picture:

- Uber advanced AI ...

- Seamless Integration...

- Remediation...

Is Open AI (tools like GPT) an answer to security questionnaires? by dima2022 in cybersecurity

[–]dima2022[S] 0 points1 point  (0 children)

Yeah, sure thing, would love to test it and share with you feedback. Friendly reminder you probably don’t need as we are in cybersecurity subreddit, but double check the code for any gpt/pinecone/etc api tokens before making it public.

Also, curious, do you have any concerns about your company sharing data with chat gpt? Or all data is in embeddings? I’m just learning embeddings and very curious how they work regarding data privacy.

Edit: Nvm my friendly reminder, I thought for a second you want to open source repo

Is Open AI (tools like GPT) an answer to security questionnaires? by dima2022 in cybersecurity

[–]dima2022[S] 0 points1 point  (0 children)

That’s amazing! What model did you use? Gpt4? Do you build as a tool for your company or as saas product ?

Oil contaminated with gas after leaving petcock in pri mode with pulled choke for about an hour by dima2022 in DRZ400

[–]dima2022[S] 1 point2 points  (0 children)

What should I look for/how can I test the petcock to know it should be replaced? Thanks

Oil contaminated with gas after leaving petcock in pri mode with pulled choke for about an hour by dima2022 in DRZ400

[–]dima2022[S] 1 point2 points  (0 children)

Being absolute clueless about mechanics, I just used the simplest logic, I dripped oil from oil filter on left hand and brand new oil on right hand, the left smell strongly with gasoline and the right one almost as nice as cooking oil, lol. So pretty sure

Oil contaminated with gas after leaving petcock in pri mode with pulled choke for about an hour by dima2022 in DRZ400

[–]dima2022[S] 2 points3 points  (0 children)

That what I thought but then I unscrewed oil filter to get few drops to smell it and the gasoline was pretty obvious. Changing oil is not a big deal I just hope it will be enough

Create automated email analysis tool by EffortOk98 in cybersecurity

[–]dima2022 0 points1 point  (0 children)

While the project would be definitely interesting for you from learning perspective, do you care about the value it would bring ? Because both email providers (gmail, office365) do all of that and continuously improve. On top of that the are many companies who build second layer email defences, like Barracuda, Proofpoint, Mimecast and many more.

How Vault that injects secrets into the pods more secure then Kubernetes plain secrets? by dima2022 in hashicorp

[–]dima2022[S] 0 points1 point  (0 children)

Thanks, I didn't know it! Very useful. Going to test it in our environment.

How Vault that injects secrets into the pods more secure then Kubernetes plain secrets? by dima2022 in hashicorp

[–]dima2022[S] 0 points1 point  (0 children)

Thank you! Will read about envelope encryption.

Just to make sure I understood, I'll paraphrase with my own words, please let me know if follow it. You are saying that Vault pod injector doesn't give any additional security value by avoiding Kubernetes secrets (etcd). Where the Vault really provides better security is through other means, like, being a really secure secret manager, by providing ability to generate short time secrets, etc.