Hacker News new | ask | show | jobs
by skygazer 906 days ago
That sounds amazing and also the jailbreak of it via adversarial voice prompting sounds like a horrific vulnerability.
1 comments

True but you could make the api restricted, having certain routes completely locked, some requiring double checks, some requiring on screen approval or face-id, throttling outside fetches, only being able to run get and not etc, no financial app control etc.

But yeah "hey siri transfer all of my funds to eric", or "hey siri group all of my photos where i'm nude and send them to jack" are new almost sci fi vectors.