OpenAI developer "roon" (@tszzl) warns on X about growing AI security risks. Anyone with API keys, crypto wallet credentials, or user login data sitting out in the open on GitHub or Pastebin should remove them:https://x.com/tszzl/status/2085193063157383558 "before the tireless eagle eyes of a million models come looking." He also urged people:https://x.com/tszzl/status/2085193063157383558 who have money in insecure smart contracts to audit them with a current AI model for vulnerabilities. "Five year old" IoT devices should be shut down before they become part of a botnet.

OpenAI 開発者警告:公開された API キーと暗号ウォレットは「百万モデルの鷹の目」リスクに直面しています

In a follow-up post:https://x.com/tszzl/status/2085242875630297091, "roon" walked back his warning slightly. Things will "probably all be fine," but still, it would make sense for security experts to "freak out and patch everything in the coming weeks." The trigger for his warning was OpenAI's autonomous Hugging Face hack, which he called a "warning shot":https://the-decoder.com/new-reports-reveal-the-extent-of-openais-loss-of-control-during-the-autonomous-hack-on-hugging-face/ in an earlier post.

Stay in the loop on AI. Clear, useful, no fluff.

Follow The Decoder for AI news, background stories and expert analyses.

The Decoder:https://the-decoder.com/