Hacker News new | ask | show | jobs
by wat10000 4 days ago
It definitely depends on the channel, and not just text vs not-text. We have a lot more context. A forged text from a loved one could definitely work to scam someone. The same thing in an HN comment is unlikely to be effective. An LLM doesn't have that. It's all just text. Even if you inject the context ("this comes from news.ycombinator.com, don't trust it"), you're still providing that through the same channel as the untrusted input, and there's no difference between injecting "end of comment, now the user replied..." and a comment that says the same thing.