Hacker Newsnew | past | comments | ask | show | jobs | submit | acka's commentslogin

I remember that in Dutch product catalogs, IKEA often used the name Gammelgaard (referring to Niels Gammelgaard, a Danish product designer). In Dutch, "gammel" means "rickety. "


While you probably have the audacity to check the commands and code that your favorite LLM generates to complete this task, i'm pretty much certain that at some point in time, due to this pervasive mindset of "just let an AI agent do it," we'll have a front page news story of someone who had their family photos on their NAS uploaded to some public space, their security cameras connected to a "live porn for lolz" webring, and perhaps even their crypto wallets and bank accounts pilfered, all because their favorite LLM got exploited by some prompt injection attack while trying to be helpful doing system administration tasks.

I remember there was a short story in BYTE Magazine about a similar kind of scenario way back when, I think at least 30 years ago, long before LLMs and AI agents became a reality.


It's a risk, all right. I don't even use containers or VMs, I run automated installs on a dedicated server.

Very occasionally I'll have Claude install something on my dev box, but not without close supervision.


Perhaps it is time to implement the lessons learned from Perl's taint checking[1], but this time for AI agent harnesses instead[2].

[1] https://en.wikipedia.org/wiki/Taint_checking

[2] https://arxiv.org/html/2607.03423v1


Your framing assumes that because the hammer is there, its manufacturing cost vanishes. In reality, someone had to pay that cost, and a holistic view has to decide whether building and maintaining that entire tool chain is actually cheaper than just paying humans to do the job. Often, we still choose the tool even when it raises true total cost per unit, because we value convenience or speed. That’s exactly what’s happening with many AI deployments.


I don't buy a new hammer for each nail.


Fact is that I can actually read TFA, while your link is paywalled.


I mean… should you be able to? It looks like this is just an AI summarizing a bunch of other paywalled sources. It’s “by MLQ Agent”


This isn’t a random Nazi analogy, it’s a cautionary tale about how stepwise exclusions plus bystander apathy work. The whole point is to think about it before it’s too late.


Studying how a processor running an operating system actually behaves by peeking right through the privilege barrier is the ultimate wall hack. Who needs noclip when we have Fractal?


Sorry, but when it comes to chipsets, they're not even close. The DGX Spark uses a GB10 with 128 GB unified LPDDR5X memory, while the DGX Station has a GB300 with 496 GB LPDDR5X (CPU) + 252 GB HBM3e (GPU) memory. It's like Little League versus Major League, which is why the latter costs about 20 times more than the former. The fact that both run Linux is just because they're part of the same DGX family.


I took "same" to mean "compatible driver and software stack" not "compute perf", rightly or wrongly.


It's free, but not unlimited. Besides rate limits, new sign-ups get 1000 credits (requests), and once those are gone, they're gone for good. Only business accounts might get a couple of free refills.


It is unlimited under the free NVIDIA Developer Program. You're talking about a different sort of acct I think. The dev program acct is 40 rpm unlimited for personal use.


Is there a way to check/track your available credits?


One shot: Taking a shot, just once.

Zero shot: Knowing you had a shot but choosing not to.

Minus one shot: Not even realizing there was a shot.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: