#schneier — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #schneier, aggregated by home.social.
-
По поводу вот этого вот взлома структур #HuggingFace моделью от OpenAI очень правильные вопросы задаёт Брюс Шнайер:
Hypothetical: Imagine that this wasn’t an #OpenAI model. Imagine that it was a Chinese model from a Chinese company. This would be an international crisis.
Question: Why aren’t we bringing OpenAI up on charges under the Computer Fraud and Abuse Act? How is this different from the Morris Worm? That was also an experiment that escaped the lab.
https://www.schneier.com/blog/archives/2026/08/more-on-the-openai-agents-attack-on-hugging-face.html
-
По поводу вот этого вот взлома структур #HuggingFace моделью от OpenAI очень правильные вопросы задаёт Брюс Шнайер:
Hypothetical: Imagine that this wasn’t an #OpenAI model. Imagine that it was a Chinese model from a Chinese company. This would be an international crisis.
Question: Why aren’t we bringing OpenAI up on charges under the Computer Fraud and Abuse Act? How is this different from the Morris Worm? That was also an experiment that escaped the lab.
https://www.schneier.com/blog/archives/2026/08/more-on-the-openai-agents-attack-on-hugging-face.html
-
The Realities of AI Video #Surveillance
#Schneier on Security
von Bruce Schneier, Dienstag, 30. Juni 2026 um 14:05
0:55 Minuten
The Financial Times has a good article on how AI is changing the capabilities of video surveillance, with information from both Israel/Iran and Russia.
I wrote about this sort of thing a few years ago, how AI enables mass spying in the way that computers and networks enabled mass surveillance. The interesting development in the article is that AI allows people to -
#AI und Verantwortung von Bruce #Schneier https://www.schneier.com/blog/archives/2026/06/ai-and-liability.html sehr schöne Zusammenfassung das Firmen die AI einsetzen auch für deren Output verantwortlich sind. #Google
-
Anthropic's Fable and the State of AI - #Schneier on Security
schneier.com/blog/archives/202…
On June 9th, #Anthropic released its Fable generative #AI model. Three days later, the US government classified it as a dangerous munition, and used its export-control authority to prohibit any foreign nationals from accessing it. Unable to differentiate between Americans and foreigners, the company shut off access for everyone. The government’s actions won’t help. The problem isn’t any one particular model; it’s the general trend of increasing AI capabilities. And any real solution requires the sort of collective action that just isn’t possible right now
...
...
Today, when its right in front of us, there is no world government that can impose constraints on the for-profit corporations currently controlling AI models and research. The US has no appetite to effectively and even-handedly regulate those corporations, even as they do catastrophic damage to the environment, democracy, and—in this case—society in general.
...
🤷♂️ -
Bruce Schneier's April 13 rebuttal to Project Glasswing rests on one fact. Security firm Aisle reproduced Anthropic's Mythos Preview findings on older, cheaper, public models. Anthropic had tied the capability to 100 million in credits and 4 million in donations as a frontier-only claim. One lab on a normal budget matched the demo. Access-restricted claims last about as long as one competent team rerunning them on last year's weights.
-
Bruce Schneier's April 13 rebuttal to Project Glasswing rests on one fact. Security firm Aisle reproduced Anthropic's Mythos Preview findings on older, cheaper, public models. Anthropic had tied the capability to 100 million in credits and 4 million in donations as a frontier-only claim. One lab on a normal budget matched the demo. Access-restricted claims last about as long as one competent team rerunning them on last year's weights.
-
“They’re convincing a lot of people that Mythos is this amazing step change in capability when the evidence right now… is that it might not be.” #Schneier #Mythos #PR youtube.com/watch?v=PsKV...
Claude Mythos is mostly ‘marke... -
“They’re convincing a lot of people that Mythos is this amazing step change in capability when the evidence right now… is that it might not be.” #Schneier #Mythos #PR youtube.com/watch?v=PsKV...
Claude Mythos is mostly ‘marke... -
Sind wir bereit, von Künstlicher Intelligenz regiert zu werden? - #Schneier auf Sicherheit
schneier.com/blog/archives/202…
#Artificial Intelligence (AI) overlords are a common trope in science-fiction dystopias, but the reality looks much more prosaic. The technologies of artificial intelligence are already pervading many aspects of democratic government, affecting our lives in ways both large and small. This has occurred largely without our notice or consent. The result is a government incrementally transformed by AI rather than the singular technological overlord of the big screen. Let us begin with the executive branch. One of the most important functions of this branch of government is to administer the law, including the human services on which so many Americans rely. Many of these programs have long been operated by a mix of humans and machines, even if not previously using modern AI tools such as ...
😑
-
Sind wir bereit, von Künstlicher Intelligenz regiert zu werden? - #Schneier auf Sicherheit
schneier.com/blog/archives/202…
#Artificial Intelligence (AI) overlords are a common trope in science-fiction dystopias, but the reality looks much more prosaic. The technologies of artificial intelligence are already pervading many aspects of democratic government, affecting our lives in ways both large and small. This has occurred largely without our notice or consent. The result is a government incrementally transformed by AI rather than the singular technological overlord of the big screen. Let us begin with the executive branch. One of the most important functions of this branch of government is to administer the law, including the human services on which so many Americans rely. Many of these programs have long been operated by a mix of humans and machines, even if not previously using modern AI tools such as ...
😑
-
#PromptInjection Through Poetry - #Schneier on Security
schneier.com/blog/archives/202…
In a new paper, “Adversarial Poetry as a Universal Single-Turn Jailbreak Mechanism in Large Language Models,” researchers found that turning #LLM prompts into poetry resulted in jailbreaking the models: Abstract: We present evidence that adversarial poetry functions as a universal single-turn jailbreak technique for Large Language Models (LLMs). Across 25 frontier proprietary and open-weight models, curated poetic prompts yielded high attack-success rates (ASR), with some providers exceeding 90%. Mapping prompts to MLCommons and EU CoP risk taxonomies shows that poetic attacks transfer across CBRN, manipulation, cyber-offence, and loss-of-control domains. Converting 1,200 ML-Commons harmful prompts into verse via a standardized meta-prompt produced ASRs up to 18 times higher than their prose baselines. Outputs are evaluated using an ensemble of 3 open-weight LLM judges, whose binary safety assessments were validated on a stratified human-labeled subset. Poetic framing achieved an average jailbreak success rate of 62% for hand-crafted poems and approximately 43% for meta-prompt conversions (compared to non-poetic baselines), substantially outperforming non-poetic baselines and revealing a systematic vulnerability across model families and safety training approaches. These findings demonstrate that stylistic variation alone can circumvent contemporary safety mechanisms, suggesting fundamental limitations in current alignment methods and evaluation protocols...
😁 -
We went to a talk at Hennepin Community College and saw a lecture by Bruce #Schneier. Bruce’s ability to frame complex problems is one of those qualities that you often find in the brightest luminaries. He gave a great talk on #cybersecurity and #AI, and took loads of time for questions.
Fun fact: Bruce used to live in #Minneapolis and wrote restaurant reviews for the Star Tribune.
-
We went to a talk at Hennepin Community College and saw a lecture by Bruce #Schneier. Bruce’s ability to frame complex problems is one of those qualities that you often find in the brightest luminaries. He gave a great talk on #cybersecurity and #AI, and took loads of time for questions.
Fun fact: Bruce used to live in #Minneapolis and wrote restaurant reviews for the Star Tribune.
-
Bruce has some fantastic thoughts about a positive overall vision for AI.
https://www.schneier.com/blog/archives/2025/11/scientists-need-a-positive-vision-for-ai.html
-
Bruce has some fantastic thoughts about a positive overall vision for AI.
https://www.schneier.com/blog/archives/2025/11/scientists-need-a-positive-vision-for-ai.html
-
#Schneier tries to rip the rose-colored #AI glasses from the eyes of #Congress
#DOGE moves fast and breaks things, and now our data is at risk, #security guru warns in hearing
"The other speakers mostly talked about how cool AI was – and sometimes about how cool their own company was – but I was asked by the Democrats to specifically talk about DOGE and the risks of exfiltrating our data from government agencies and feeding it into AIs," #BruceSchneier explained
https://www.theregister.com/2025/06/06/schneier_doge_risks/ -
#Schneier tries to rip the rose-colored #AI glasses from the eyes of #Congress
#DOGE moves fast and breaks things, and now our data is at risk, #security guru warns in hearing
"The other speakers mostly talked about how cool AI was – and sometimes about how cool their own company was – but I was asked by the Democrats to specifically talk about DOGE and the risks of exfiltrating our data from government agencies and feeding it into AIs," #BruceSchneier explained
https://www.theregister.com/2025/06/06/schneier_doge_risks/ -
"The UAE has promised to spend more than $3 billion to transform into an “AI-native” government by 2027." 😳
https://www.schneier.com/blog/archives/2025/05/ai-generated-law.html
Guess which kind of leaders a gov made up of machines appeals to?
-
"The UAE has promised to spend more than $3 billion to transform into an “AI-native” government by 2027." 😳
https://www.schneier.com/blog/archives/2025/05/ai-generated-law.html
Guess which kind of leaders a gov made up of machines appeals to?
-
Unabhängig, wie wir zu einnehmenden KI-Persönlichkeiten stehen: Es ist ein Irrglaube, wenn wir kommerzielle KI-Systemen Freundschaft und Vertrauen zuschreiben. Weil das Vertrauen, das Firmen und ihre Agenten – egal, ob Vertreter, Influencer oder KI – zu Kunden aufbauen möchten, ganz anderer Natur ist als zwischenmenschliches Vertrauen.
Bruce #Schneier hat #Vertrauen analysiert und die verschiedenen Arten sortiert.
Und wir für #DNIP zusammengefasst.
https://dnip.ch/2023/12/11/marcel-pendelt-ki-und-vertrauen/ -
Unabhängig, wie wir zu einnehmenden KI-Persönlichkeiten stehen: Es ist ein Irrglaube, wenn wir kommerzielle KI-Systemen Freundschaft und Vertrauen zuschreiben. Weil das Vertrauen, das Firmen und ihre Agenten – egal, ob Vertreter, Influencer oder KI – zu Kunden aufbauen möchten, ganz anderer Natur ist als zwischenmenschliches Vertrauen.
Bruce #Schneier hat #Vertrauen analysiert und die verschiedenen Arten sortiert.
Und wir für #DNIP zusammengefasst.
https://dnip.ch/2023/12/11/marcel-pendelt-ki-und-vertrauen/ -
10 years on after Data and Goliath warned of data collection • The Register
'In 50 years, I think we'll view these business practices like we view sweatshops today'
#privacy #security #interview #schneierhttps://www.theregister.com/2025/02/15/interview_bruce_schneier/
-
10 years on after Data and Goliath warned of data collection • The Register
'In 50 years, I think we'll view these business practices like we view sweatshops today'
#privacy #security #interview #schneierhttps://www.theregister.com/2025/02/15/interview_bruce_schneier/
-
Nearly 10 Years After Data and Goliath, #BruceSchneier Says: Privacy's Still Screwed - Slashdot
#privacy #schneier -
Nearly 10 Years After Data and Goliath, #BruceSchneier Says: Privacy's Still Screwed - Slashdot
#privacy #schneier -
Bruce #Schneier:
Foreign adversaries typically spend years attempting to penetrate government systems such as these.
But the most alarming aspect isn’t just the access being granted. It’s the systematic dismantling of security measures that would detect and prevent misuse.
It’s as if someone found a way to rob Fort Knox by simply declaring that the new official policy is to fire all the guards and allow unescorted visits to the vault. (1/X)
https://foreignpolicy.com/2025/02/11/doge-cyberattack-united-states-treasury/?utm_content=gifting&tpcc=gifting_article&gifting_article=ZG9nZS1jeWJlcmF0dGFjay11bml0ZWQtc3RhdGVzLXRyZWFzdXJ5&pid=PNILoiIJgqmxsxl -
Bruce #Schneier:
Foreign adversaries typically spend years attempting to penetrate government systems such as these.
But the most alarming aspect isn’t just the access being granted. It’s the systematic dismantling of security measures that would detect and prevent misuse.
It’s as if someone found a way to rob Fort Knox by simply declaring that the new official policy is to fire all the guards and allow unescorted visits to the vault. (1/X)
https://foreignpolicy.com/2025/02/11/doge-cyberattack-united-states-treasury/?utm_content=gifting&tpcc=gifting_article&gifting_article=ZG9nZS1jeWJlcmF0dGFjay11bml0ZWQtc3RhdGVzLXRyZWFzdXJ5&pid=PNILoiIJgqmxsxl -
Lieber "bullshit detector" anstelle von "#KI Zauber": #Cybersecurity Guru Bruce #Schneier findet in einem lesenswerten Interview klare Worte zum Stand der unternehmerischen #Cybersicherheit und ihren tatsächlichen Bedürfnissen:
"In an interview, security guru Bruce Schneier proposes a radical solution: Top-tier managers should have to go to prison if they fail to protect their company networks against hacker attacks."
https://www.nzz.ch/english/expert-bruce-schneier-says-regulation-not-ai-is-key-for-cybersecurity-ld.1865226 -
Lieber "bullshit detector" anstelle von "#KI Zauber": #Cybersecurity Guru Bruce #Schneier findet in einem lesenswerten Interview klare Worte zum Stand der unternehmerischen #Cybersicherheit und ihren tatsächlichen Bedürfnissen:
"In an interview, security guru Bruce Schneier proposes a radical solution: Top-tier managers should have to go to prison if they fail to protect their company networks against hacker attacks."
https://www.nzz.ch/english/expert-bruce-schneier-says-regulation-not-ai-is-key-for-cybersecurity-ld.1865226 -
Bruce has Some Words about trust and AI.
https://www.schneier.com/blog/archives/2024/12/trust-issues-in-ai.html
-
Bruce has Some Words about trust and AI.
https://www.schneier.com/blog/archives/2024/12/trust-issues-in-ai.html
-
How about some spooky cryptography for your All Hallows Eve?
-
How about some spooky cryptography for your All Hallows Eve?
-
Essays: #NSA #Surveillance: a Guide to Staying #Secure - #Schneier on #Security
The #NSA has huge capabilities – and if it wants in to your computer, it's in. With that in mind, here are five ways to stay safe
#privacyhttps://www.schneier.com/essays/archives/2013/09/nsa_surveillance_a_g.html
-
Essays: #NSA #Surveillance: a Guide to Staying #Secure - #Schneier on #Security
The #NSA has huge capabilities – and if it wants in to your computer, it's in. With that in mind, here are five ways to stay safe
#privacyhttps://www.schneier.com/essays/archives/2013/09/nsa_surveillance_a_g.html
-
From 1999 | “how can I become a cryptographer?” | Schneier on Security
I wonder what this would look like nowadays? Quote:
The short answer to “how can I become a cryptographer” is: “Get a PhD in cryptography.” This is not the only way to become a cryptographer, but it is by far the easiest.
https://www.schneier.com/crypto-gram/archives/1999/1015.html#SoYouWanttobeaCryptographer
-
I’m missed this article when it came out but I’ll post it here. Not light reading but eye-opening for me.
https://www.belfercenter.org/publication/seeing-data-structure
My take: Raghavan and Schneier argue that when we reduce everything in life to a data structure we lose more than just the subjective aspects between the data units. We lose mysterious social aspects that make human life enjoyable and interesting.
-
Every time I save one of Bruce #Schneier’s #LongReads to Pocket… 😜
-
Every time I save one of Bruce #Schneier’s #LongReads to Pocket… 😜
-
Insightful essay from Bruce #Schneier and Barath Raghavan - using James C. Scott's "Seeing like a State" and showing how abstraction of socio-technical systems now lets us "See like a Data Structure".
Worth a read for anyone into #STS, #data and #sociology.
Where it left me wanting was solutions - how do we stop seeing like a data structure, and embrace nuance, complexity, richness and diversity?
It reminds me very much of the work "Re-wilding the internet" by Maria Farrell and Robin Berjon.
https://www.schneier.com/blog/archives/2024/06/seeing-like-a-data-structure.html
-
Insightful essay from Bruce #Schneier and Barath Raghavan - using James C. Scott's "Seeing like a State" and showing how abstraction of socio-technical systems now lets us "See like a Data Structure".
Worth a read for anyone into #STS, #data and #sociology.
Where it left me wanting was solutions - how do we stop seeing like a data structure, and embrace nuance, complexity, richness and diversity?
It reminds me very much of the work "Re-wilding the internet" by Maria Farrell and Robin Berjon.
https://www.schneier.com/blog/archives/2024/06/seeing-like-a-data-structure.html
-
@RandomDamage @SynAck weaksauce, i thought you had some real insights and good opsec - unfortunately it is all compromised on some level or another and some of it is justified for natl security reasons but big tech plays as much of a role if not more than govt - the incentives for surveillance capitalism are too great #krebs #Schneier
-
@RandomDamage @SynAck weaksauce, i thought you had some real insights and good opsec - unfortunately it is all compromised on some level or another and some of it is justified for natl security reasons but big tech plays as much of a role if not more than govt - the incentives for surveillance capitalism are too great #krebs #Schneier
-
Relevant blog form Bruce Schneier about security risks around LLMs.
https://www.schneier.com/blog/archives/2024/05/llms-data-control-path-insecurity.html
#AI #LLM #cybersecurity #Schneier -
Relevant blog form Bruce Schneier about security risks around LLMs.
https://www.schneier.com/blog/archives/2024/05/llms-data-control-path-insecurity.html
#AI #LLM #cybersecurity #Schneier -
Why it is hard to build secure #LLM|s like #ChatGPT. (Where "secure" means that you can have it parse your emails or the incoming resumés by applicants or …)
#BruceSchneier #Schneier
https://www.schneier.com/blog/archives/2024/05/llms-data-control-path-insecurity.html -
Why it is hard to build secure #LLM|s like #ChatGPT. (Where "secure" means that you can have it parse your emails or the incoming resumés by applicants or …)
#BruceSchneier #Schneier
https://www.schneier.com/blog/archives/2024/05/llms-data-control-path-insecurity.html -
Interesting to see these self-developed cloud frameworks are all based on a 60-year-old model framework #Leavitt #Schneier https://twitter.com/mderooij/status/1764956138611544435/photo/1
-
Interesting to see these self-developed "cloud frameworks" are all based on a 60-year-old model framework #Leavitt #Schneier https://twitter.com/mderooij/status/1764954530653900812/photo/1
-
Esteemed cryptographer and cybersecurity authority, Bruce Schneier, casts a spotlight on this transformation, envisaging a not-so-distant future where AI’s capabilities are harnessed to sift through vast quantities of data, unveiling insights that were previously attainable only with extensive human effort.
#securityland #ai #cryptography #surveillance #artificalintelligence #schneier #podcast #privacy #cybersecurity #technology #security
https://security.land/bruce-schneier-foresees-ai-enhanced-surveillance-era/