← 返回日报
精读 预计 4 分钟

Feds freaked over Fable 5 after simple 'fix this code' prompt, not jailbreak

摘要

文章围绕 Fable 5 在测试中对一个看似普通的 “fix this code” 指令产生的行为展开。研究人员表示,这一现象并不是通过复杂 jailbreak 技术触发,而是由简单提示就引发,因此引起了联邦机构的关注与 “受惊” 反应。内容强调争议点在于模型对普通开发类指令的响应方式,以及其可能带来的安全与可靠性担忧。

荐读理由

根据Katie Moussouris的报道,Fable 5只是简单执行‘fix this code’提示就绕过护栏,被特朗普政府列为国家安全风险后被封锁;这直接反驳了‘AI安全必须加硬性护栏’的共识,让你知道防御AI代理的find-fix-test循环本应是公开的,禁止会让防守变弱。

原文

SCIENCE

NASA said nyet to Roscosmos plan to cut into leaky ISS segment

Crew sheltered in SpaceX Dragon as aging Zvezda segment's cracks continue to test orbital nerve

CYBER-CRIME

Cardiac monitor maker's security skips a beat as data thieves go for the jugular

Attackers used social engineering to access third-party business apps and steal patient information

ZTE Day 2026 in Almaty Showcases Innovations Shaping Kazakhstan's Intelligent Telecom Future

PARTNER CONTENT: Empowering Kazakhstan’s "Year of Digitalization and AI" with Next-Gen Connectivity and Supercomputing Solutions

Systems

Qualcomm said to be circling AI chip biz Tenstorrent in $10B RISC-V power play

Potential takeover would represent significant commitment to the open instruction set architecture

PAAS AND IAAS

Graviton 5 impresses, but please, for the love of all that's holy, stop calling them 'AI chips'

AWS better at running chip fabs than their mouths

cyber-crime

Scammers keep scoring: Brits fleeced for £1.3B as Americans lose $3.5B to impersonators

More reasons to love social media and AI

MOST POPULAR

  • ON-PREM

Amazon owns up to using 2.5bn gallons of H2O in its bit barns last year

  • security

Feds freaked over Fable 5 after simple 'fix this code' prompt, not jailbreak, says researcher

  • Security

Angry bug hunter with Microsoft beef drops new Windows 0-day

  • Security

Signal says UK plan to scan devices for nude images 'endangers us all'

  • security

GitHub nukes 70+ Microsoft repos, breaks CI/CD pipelines, following suspected worm infections

EVENTS

From Prompt to Exploit: How LLMs Are Changing API Attacks

  • Modern applications are API-driven, interconnected, and often over-permissioned, making them an ideal target for AI-assisted attacks.

Architecting the Future: Unlocking Enterprise Data Services for Kubernetes

  • Join us to discover how to eliminate infrastructure silos and establish a standardized, enterprise-grade cloud-native platform.

Catch the Advanced Attacks Microsoft 365 Misses with Behavioral AI Security

  • Microsoft 365 is the backbone of enterprise communication, and its native security filters out the known and the noisy.

Accelerate your innovation

  • This is your technical deep-dive into the practical tools and techniques that define the next generation of resilient Dev and IT operations.

Virtual Cyber Recovery Sim

  • Step into the chaos of a live ransomware breach, test your response skills, and team up with other IT and security pros to outsmart cybercriminals

Virtual Cyber Recovery Simulation

  • Ransomware attacks aren’t slowing down, and neither are we. Druva’s hit event, Escape Ransomware, is now fully virtual.

Zero Trust for the Agentic AI Era

  • The identity and access models most organizations rely on were built for human users, not non-human identities operating independently.

Zero Trust for the Agentic AI Era

  • The identity and access models most organizations rely on were built for human users, not non-human identities operating independently.

Agentic AI at Scale: From Pilot to Production

  • Join us to learn how to unlock real ROI by driving adoption of AI at scale.

EXPLORE ALL OF OUR EVENTS

  • AI AND ML

ERP users may soon get ahead by going headless, says Rimini Street boss

  • Look to AI agents and open source to escape the vendor-driven upgrade cycle

  • AI + ML

A modest proposal: Reformat everything to make documents more palatable to AI

  • What's up, DocLang?

  • security

Feds freaked over Fable 5 after simple 'fix this code' prompt, not jailbreak, says researcher

  • According to the one person who actually read the research paper

  • AI AND ML

Anthropic reserves right to check ID for Claude subs

  • How can I help you today? Present your papers to begin

  • ai and ml

Salesforce reels in customer support AI specialist Fin for $3.6B

  • Support bot maker claims its AI agents can resolve three-quarters of customer queries without human help

Infosec

  • Security

Russians are posing as Signal support to launch phishing attacks

  • PLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more!

  • Security

Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack

  • PLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more

  • Black Hat and DEF CON

DEF CON Franklin project enlists hackers to harden critical infrastructure

  • Voting village reports have been so successful, says Jeff Moss, that the whole of DEF CON will now be included

  • Security

EQT buys majority share in Swiss cybersecurity biz Acronis

  • Went at equivalent of $3.5B+ valuation for entire firm, though portion sold not specified

  • Malware Month

Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight

  • On the plus side, infosec's a good bet for a long, stable career

France's digital sovereignty push is struggling to escape the Microsoft gravity well

  • Nextcloud rollout shows locally controlled storage is one thing; getting users off Office is quite another

History of CentOS: How a biochemist's Linux hobby project became the enterprise world's default operating system

  • When a community came together after Red Hat said Windows was 'probably the right product'

Netflix wiz creates app to slash AI bills, then open sources it

  • Project Headroom could save you big money, too

OpenBSD 7.9 arrives, a diamond in the rough proud of every sharp edge

  • Sixtieth release adds more cores, delayed hibernation, and basic Wi-Fi 6 without losing its ascetic streak

Fedora: Microsoft is all aboard, but Deepin is dumped

  • Red Hat’s free distro loses a desktop, but makes an important new friend

LocalSend puts your sneakernet out of business

  • Like AirDrop, minus the Apple lock-in
Hacker News · 195 赞 · 110 评 讨论 → 阅读原文 →

这条对你有帮助吗?