Not a hacker, but more like an asker.
Not The Onion
Welcome
We're not The Onion! Not affiliated with them in any way! Not operated by them in any way! All the news here is real!
The Rules
Posts must be:
- Links to news stories from...
- ...credible sources, with...
- ...their original headlines, that...
- ...would make people who see the headline think, “That has got to be a story from The Onion, America’s Finest News Source.”
Please also avoid duplicates.
Comments and post content must abide by the server rules for Lemmy.world and generally abstain from trollish, bigoted, ableist, or otherwise disruptive behavior that makes this community less fun for everyone.
And that’s basically it!
What a fucking joke
Holy crap this is hilarious. Quick somebody steal Trump's account then message Iran that we surrender.
Ugh, meanwhile I can't change my accounts email. It demands an otp sent to an email that was deleted by the provider.
Even though I enter the correct password, it won't let me in. And I can't change the email of my own account!
Maybe don't train the data on passwords
Cosmo Kramer doing the MoviePhone voice: “Why don’t you just give me access to High-Profile Instagram accounts”
They should ask for Zuck profile login credentials.
Considering you can just… you know, do that in any of the LLM prompts in Meta apps… I really don’t think it’s the work of a “hacker”. That’s such an obnoxiously overused term.
Vibe hacking it is
Hacking is gaining unauthorized access to a system. The method doesn't matter.
yeah kinda seems like they designed it to work this way on purpose.
Just forgot to make it verify the account.
It's LLM injection
The majority of hacking is social engineering, so I don't really see slop hacking being any less valid than that
"Social" suddenly feels like the wrong word for it, when the entity being fooled is a next-word-predictor algorithm.
🎶 social engineering 🎶
Sadly you're on to something here.
I have to disagree. Hacking is a broad term that isn't exclusive to finding buffer overflows in ghidra.
Social engineering is hacking. This is something between SE and prompt engineering.
I was watching a speedrunner live stream, and just the way he thinks...
The way speedrunners think is basically how pentesters think.
"Can I have access to a profile". = Hacker
well, yes
they found a vulnerability and exploited it. that's hacking.
This was not a vulnerability. This is the technical equivalent of going to a neighbor of the house you want to rob and asking them to borrow the spare key.
They implicitly trusted the AI with no guardrails. The AI simply gave it up.
They implicitly trusted the AI with no guardrails.
So, Meta released a vulnerability (an incredibly stupid one) and someone took advantage of it to gain access to an account they weren't authorised to access... which is the definition of hacking
Right, which is a vulnerability. That it's there by incompetence doesn't change that.