Hacker News new | ask | show | jobs
by pc86 42 days ago
It seems closer to "roll two or three successive 1s on a D100 and have your LLM hooked directly into your production systems and have your LLM user have DELETE permissions" and probably 1 or 2 other things I'm forgetting.
1 comments

It pulled an api key from an unrelated file. It wasn’t given delete permission, it found it.

Not picking on you specifically, but in general the comments here have me wondering if AI has stolen our basic reading comprehension, or if we were always this bad.

Anyway, take “LLM user had delete permission” off your list and add “deleting the production db also deletes all the backups” to the list.

Fair criticism mate. I'll only say that if your backups aren't in a completely separate system you don't really have backups.