Index | Thread | Search

From:
Tomasz Rola <rtomek@ceti.pl>
Subject:
Re: AI-Driven Security Enhancements for OpenBSD Kernel
To:
tech@openbsd.org
Cc:
Alfredo Ortega <ortegaalfredo@gmail.com>
Date:
Tue, 11 Jun 2024 13:18:09 +0200

Download raw body.

Thread
On Tue, Jun 11, 2024 at 07:41:20AM -0300, Alfredo Ortega wrote:
> Yes indeed! its a first version. Surely the tool will improve it in
> the coming weeks.
> Nevertheless, the kernel boots at the IP stack works with the
> additional checks. A release version would need a little bit of manual
> cleaning (or AI improvements).
> But the fact that whole netinet/netinet6 10000+ checks were added with
> no human intervention and produced a working, arguably safer kernel,
> is surprising to me.
> Beware that at the current state, it might not be actually safer as
> the checks may actually introduce new bugs.

Perhaps this is a future, but not today, I am afraid. And it might
require inventing a special purpose programming language (ai-related)
and easily manipulated by tools written in this same language... oh
well, they already invented this language and nobody wants to use
it...

As of current incarnation of AI, I understand it is more like
"juvenile psychopath, hallucinatory edition" rather than something
reliable/trustworthy. Because of it, every single change in a code
this thing makes would require evaluation made by a human who is
knowledgeable enough to catch errors. Given that there is not too many
quality humans, this means increased toll on existing quality humans.

I also notice that many enthusiastic endorsements of this new tech
smells to me like some folks dreaming of hitting a pot of gold and
early retiring. They may be happy with whatever looming catastrophe
they left behind them, but then the shit has to be cleaned by
somebody, someday and somehow I do not feel enthusiastic at all.

Just MHO.

(Just in case: I am not accusing you of bad will, I really do not)

-- 
Regards,
Tomasz Rola

--
** A C programmer asked whether computer had Buddha's nature.      **
** As the answer, master did "rm -rif" on the programmer's home    **
** directory. And then the C programmer became enlightened...      **
**                                                                 **
** Tomasz Rola          mailto:tomasz_rola@bigfoot.com             **