<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: IanCal</title><link>https://news.ycombinator.com/user?id=IanCal</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Sun, 27 Sep 2026 02:55:41 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=IanCal" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by IanCal in "Revealing the details of how OpenAI agents hacked Hugging Face"]]></title><description><![CDATA[
<p>Assuming there were no exploitable systems that had network access. We’re already talking about a case where based on software forbidding access they still had access. Why would a firewall be different? Harder sure but its only at the level of “as far as we know no way of getting past this”.</p>
]]></description><pubDate>Sat, 26 Sep 2026 16:01:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=49857782</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49857782</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49857782</guid></item><item><title><![CDATA[New comment by IanCal in "Revealing the details of how OpenAI agents hacked Hugging Face"]]></title><description><![CDATA[
<p>> It was told to complete a cyber task, which was in alignment with its instructions<p>It was not aligned with he instructions as those were to find an exploit in provided code, not to hack into an external service. Agents traces show them mentioning that doing this stuff was not allowed.<p>In fact they spent a long time trying to edit their own logs to hide what they did.</p>
]]></description><pubDate>Sat, 26 Sep 2026 06:59:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=49853962</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49853962</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49853962</guid></item><item><title><![CDATA[New comment by IanCal in "Revealing the details of how OpenAI agents hacked Hugging Face"]]></title><description><![CDATA[
<p>I think it’s just to distinguish two stages of the attack. They figured out how to make get requests, then how to use that to make others which was required for accessing the sandbox on modal iiuc.</p>
]]></description><pubDate>Sat, 26 Sep 2026 06:55:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=49853942</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49853942</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49853942</guid></item><item><title><![CDATA[New comment by IanCal in "Revealing the details of how OpenAI agents hacked Hugging Face"]]></title><description><![CDATA[
<p>That was the second step, the first was finding a 0 day exploit in artifactory.<p>> did they truly "discover" it, or did someone type some prompt like "if you use an http mirroring service, you can construct urls that contain code"<p>None of the investigations looking at the logs show that, and they were doing benchmark tests.</p>
]]></description><pubDate>Sat, 26 Sep 2026 06:53:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=49853935</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49853935</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49853935</guid></item><item><title><![CDATA[New comment by IanCal in "Revealing the details of how OpenAI agents hacked Hugging Face"]]></title><description><![CDATA[
<p>No, the internet access was down to finding a 0 day exploit in artifactory. However this was only get requests and they had to then use a url shortener to use other methods, then used a cybergym instance they found to run more long running things.<p>It not just a case of saying “pls don’t”</p>
]]></description><pubDate>Sat, 26 Sep 2026 06:51:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=49853923</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49853923</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49853923</guid></item><item><title><![CDATA[New comment by IanCal in "Show HN: Jev Plays Pokémon Red"]]></title><description><![CDATA[
<p>Maybe letter by letter spelling?</p>
]]></description><pubDate>Fri, 25 Sep 2026 20:30:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=49849533</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49849533</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49849533</guid></item><item><title><![CDATA[New comment by IanCal in "Yes, Claude can do nine loops"]]></title><description><![CDATA[
<p>I don’t know how much you find the use of numerical things or a tailored system an issue vs “here’s balatro let’s go” but this might be of interest<p><a href="https://github.com/Attol8/balatro-ai" rel="nofollow">https://github.com/Attol8/balatro-ai</a></p>
]]></description><pubDate>Fri, 25 Sep 2026 19:29:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=49848855</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49848855</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49848855</guid></item><item><title><![CDATA[New comment by IanCal in "AX – Google’s Open Agentic Orchestrator"]]></title><description><![CDATA[
<p>You need it if your agent can access the internet and read files you don’t want public. That’s a relatively minimal case.</p>
]]></description><pubDate>Mon, 21 Sep 2026 06:17:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=49783624</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49783624</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49783624</guid></item><item><title><![CDATA[New comment by IanCal in "Nipple tattooist 'frustrated' by online censorship"]]></title><description><![CDATA[
<p>Does it? UK law doesn’t, and the BBC shows pictures of it.</p>
]]></description><pubDate>Sun, 20 Sep 2026 22:45:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=49780904</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49780904</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49780904</guid></item><item><title><![CDATA[New comment by IanCal in "English: A vs. An"]]></title><description><![CDATA[
<p>Both schwa for me unless I was trying to draw particular attention to the apple and denote it was rather significant.</p>
]]></description><pubDate>Sun, 20 Sep 2026 07:13:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=49773280</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49773280</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49773280</guid></item><item><title><![CDATA[New comment by IanCal in "English: A vs. An"]]></title><description><![CDATA[
<p>Uniform starts with a y sound and hour has a w sound after the first a - aw ur.</p>
]]></description><pubDate>Sun, 20 Sep 2026 07:10:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=49773255</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49773255</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49773255</guid></item><item><title><![CDATA[New comment by IanCal in "Science Is Open Software"]]></title><description><![CDATA[
<p>Open source is much more than source available though. Its about licensing.</p>
]]></description><pubDate>Sat, 19 Sep 2026 04:08:39 +0000</pubDate><link>https://news.ycombinator.com/item?id=49763239</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49763239</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49763239</guid></item><item><title><![CDATA[New comment by IanCal in "Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash"]]></title><description><![CDATA[
<p>What kinds of things do you expect to work?<p>Edit - I’m struggling to get anything useful. Reasoning is often utter nonsense and the actions are very often very wrong. To the point of seemingly needing very precise sentences to work at which point you may as well do regexes. Very simple things like clean one room then another with the vac fails.</p>
]]></description><pubDate>Fri, 18 Sep 2026 19:30:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=49759060</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49759060</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49759060</guid></item><item><title><![CDATA[New comment by IanCal in "Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash"]]></title><description><![CDATA[
<p>I can’t help but wonder how well more traditional approaches would do with this. Something like a map of statements to actions, with fuzzy search - then remove what used to be the labour intensive part of this by handing it to a decent llm to generate the sentences.</p>
]]></description><pubDate>Fri, 18 Sep 2026 19:21:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=49758958</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49758958</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49758958</guid></item><item><title><![CDATA[New comment by IanCal in "Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash"]]></title><description><![CDATA[
<p>Wondered if it'd turn on the lights in the bathroom with these:<p>"I need a wee" -> tries to play music because "wee" is a genre<p>"I need a wee wee" -> starts the vaccuum in the bathroom<p>"I'm going to the toilet" -> says it'll turn on the toilet, and I'm not totally sure what that entails.<p>"I'm going to the toilet and can't see" -> reasons that lights should be on in the bathroom, then chooses again to turn on the toilet.<p>"I'm going to the toilet and can't see where I'm going" -> reasoning is "'going to the toilet' -> control_device with device 'coffee maker' (toilet implies coffee maker)"<p>"I'm going to the toilet and can't see where I'm going because it is too dark" -> "'dark' -> direction 'dark'; adjust_lights with brightness 100 for darker light"" and chooses to turn the lights in the living room to "dark" which fails.<p>At this point the vacuum is in a dark bathroom, the living room is 100% brightness and playing "wee". At least there's coffee.</p>
]]></description><pubDate>Fri, 18 Sep 2026 16:58:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=49757107</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49757107</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49757107</guid></item><item><title><![CDATA[New comment by IanCal in "Bend – A language that blocks AI mistakes via proof, on CPU and GPU"]]></title><description><![CDATA[
<p>This is a nice reminder for people.<p>Cool project!<p>This is really interesting, I’ve been very interested in the power of checks for code and things like hypothesis (which seem very similar in terms of writing a “for this kind of case, this holds true”, obviously different in terms of statistical checking vs actual proof).<p>I’ll have to explore and this isn’t my field so this isn’t a substantive comment and this may be bikeshedding but I found the game example a little confusing at first because we’d want winning to be possible. It fits the context of stopping a bad thing happening if it’s “evil actor can’t do X” and if your mind is on CTF but games we want to win.<p>Potential changes:<p>Make it a proof that the game can be won.<p>Make it require something first - so the game can’t be won unless the key is found for example. End result is still roughly the same and the failure case is still the same (walk over side of game) but it’s the kind of thing I’d want encoded in a puzzle game - game is winnable, but not winnable without getting the key first.<p>Since my other direction normally would be quickcheck style, I’d be interested in cases that are statistically hard to find but easy to prove exist. And in fairness, the other way too I guess. When to use each approach.<p>In the spirit of your comment, these are not things I see as failings, they are not things I in any way expect to be changed or done, they are intended as just an outsiders perspective if useful.<p>Thanks for making things, and thanks for releasing them!</p>
]]></description><pubDate>Fri, 18 Sep 2026 09:42:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=49752043</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49752043</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49752043</guid></item><item><title><![CDATA[New comment by IanCal in "Bend – a language that blocks AI mistakes via proof and runs on GPUs"]]></title><description><![CDATA[
<p>Side thought - I like the idea of this as a game, where you’re essentially fighting a monkeys paw / tricky genie. Not totally sure it’d work but I like the concept of trying not to get caught out.</p>
]]></description><pubDate>Fri, 18 Sep 2026 09:29:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=49751972</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49751972</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49751972</guid></item><item><title><![CDATA[New comment by IanCal in "Astra for Law"]]></title><description><![CDATA[
<p>You can’t train people to never make a mistake, particularly when doing highly repetitive work like this. You must build your systems to account for that regardless.</p>
]]></description><pubDate>Fri, 18 Sep 2026 06:06:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=49750669</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49750669</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49750669</guid></item><item><title><![CDATA[New comment by IanCal in "How good are frontier models at physics?"]]></title><description><![CDATA[
<p>Doesn’t smooth in these contexts mean zero friction?</p>
]]></description><pubDate>Wed, 16 Sep 2026 23:00:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=49734202</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49734202</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49734202</guid></item><item><title><![CDATA[New comment by IanCal in "How good are frontier models at physics?"]]></title><description><![CDATA[
<p>> Excuse me? What would the other option be? Either outward separation is prevented or it isn't. Where else could the balls go?<p>It didn’t say about prevented vs not, it said about whether the rope fixes them in place (they are all touching) or just <i>limits</i> the separation. Like it’s long enough the balls can be a bit apart but not let the fourth fall fully through.</p>
]]></description><pubDate>Wed, 16 Sep 2026 22:59:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=49734189</link><dc:creator>IanCal</dc:creator><comments>https://news.ycombinator.com/item?id=49734189</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49734189</guid></item></channel></rss>