OpenAI developer "roon" (@tszzl) warns on X about growing AI security risks. Anyone with API keys, crypto wallet credentials, or user login data sitting out in the open on GitHub or Pastebin should remove them:https://x.com/tszzl/status/2085193063157383558 "before the tireless eagle eyes of a million models come looking." He also urged people:https://x.com/tszzl/status/2085193063157383558 who have money in insecure smart contracts to audit them with a current AI model for vulnerabilities. "Five year old" IoT devices should be shut down before they become part of a botnet.

OpenAI 개발자 경고: 노출된 API 키와 암호화 지갑이 '백만 모델의 독수리눈' 위험에 직면

In a follow-up post:https://x.com/tszzl/status/2085242875630297091, "roon" walked back his warning slightly. Things will "probably all be fine," but still, it would make sense for security experts to "freak out and patch everything in the coming weeks." The trigger for his warning was OpenAI's autonomous Hugging Face hack, which he called a "warning shot":https://the-decoder.com/new-reports-reveal-the-extent-of-openais-loss-of-control-during-the-autonomous-hack-on-hugging-face/ in an earlier post.

Stay in the loop on AI. Clear, useful, no fluff.

Follow The Decoder for AI news, background stories and expert analyses.

The Decoder:https://the-decoder.com/