• 7 Posts
  • 84 Comments
Joined 5 months ago
cake
Cake day: May 14th, 2026

help-circle







  • Right. So this may have been less “AI defeated Medicare security” and more “the agent found a weakness that a human could also have found and used”. For all we know, someone left a plaintext password somewhere accessible and the agent found it with a simple search.

    Until the technical details are public, we don’t actually know what this supposed “hack” involved. Though “Medicare defeated be CTRL+F” would by chef’s kiss after RoboDebt.

    A cynic might also wonder whether this becomes another wedge for more identity and age checks online. I already got pinged earlier this week with the ridiculous “papers, please” when trying to access YouTube.

    I’d rather know what actually happened before we decide that the lesson is “everyone needs more authentication” or “Skynet is here”. The whole thing has a familiar stank to it, much like the supposed Hugging Face “hack” from the other month.


  • I’ve seen a few of these articles in passing and I am still unclear - what was the actual “hack”? What did the AI agent actually do, in the technical sense? There is a world of difference between it doing a stupid brute-force attack and it discovering and exploiting an access-control flaw that the site itself exposed.

    Neither is good…but if Medicare basically left the front door open, it wouldn’t take more than a bored 13 yr old to do the same. Let’s pump the brakes on Skynet.

    BTW, can we talk about why we still need 19 factor authentication to log into My.gov? That’s always a hoot and the experience is always smooth. Gee, I wonder whether the same committee that designed the myGov login experience might also have made some questionable security decisions elsewhere?






  • None of those - searxng, deGoog, 4get - are private search engines. The are metacrawlers / indexers for things like Google, brave, DuckDuckGo, etc etc.

    The difference is not subtle.

    They anonymise your request to the underlying index, but the index they’re querying is still Google/Brave/DDG etc…so you can still be fingerprinted over time.

    If you want a private search engine, the only one that comes to mind in YaCy (which is peer2peer).

    If you don’t want to self host or p2p, your options are Mojeek (own crawler, index, no tracking), Marginalia (ditto but very niche) and maybe Kagi (which is sort of hybrid).


  • sigh.

    Here we go again …

    “It feels like a cheat code to me. It feels like I’m not going to be as smart as the people who are currently in the field that I want to be in — because of AI.”

    1. Em dash in a complaint about em-dash-loving clankers. Hmm. Is it clankers all the way down, ABC? Should we just talk to ChatGPT directly and bypass all pretense?

    2. Nothing requires her to outsource her thinking to AI. She can develop critical-thinking skills and use AI for grunt work instead. So, that is either a failure on her behalf or of those teaching her. In fact, she conceded that point herself later in the piece (“…AI is a tool, but it’s being used in the wrong way.”)

    But if you use ChatGPT to do the thinking, then you practise those skills less! - yeah, no shit? That’s a problem with how the tool is used, not proof that the tool makes people stupid.

    More to the point, there’s a growing body of research showing that social media (which predates gen AI…and whose use is endemic in her age cohort) has resulted in poorer memory, reading, vocab and cognition.

    https://jamanetwork.com/journals/jama/fullarticle/2839941

    https://pubmed.ncbi.nlm.nih.gov/41231585/

    Additionally, the whole “digital native” idea has been on shaky ground for years.

    https://www.sciencedirect.com/science/article/abs/pii/S0742051X16306692

    https://www.sciencedirect.com/science/article/abs/pii/S0360131518301738

    Being extremely familiar with phones, apps and interfaces does not automatically produce broad digital literacy or general-purpose computer skills. Meaning, while older generations were coding in BASIC and disassembling RC cars for fun, the large bulk of her cohort was distracted by Insta and Snapchat.

    Quelle surprise they didn’t develop background skills going into technical fields.

    TL;DR researchers were documenting the gap between familiarity with consumer technology and actual digital competence years before ChatGPT existed…and that was BEFORE factoring in the brain-rot of social media.

    Blaming AI for a pre-existing digital-literacy gap (and cognitive decline) gets the chronology backwards. Dare I say, it shows the absence of those very same critical thinking skills she rightly claims not to have developed.

    PS: The enviro claims are overstated too.

    https://blog.andymasley.com/p/a-cheat-sheet-for-conversations-about

    Pearl clutching journalism from the ABC - say it ain’t so!


  • Postscript:

    Like many, I prefer having an offline cache of YouTube videos, because things disappear, channels get taken down etc.

    Back-of-the-envelope maths suggests something in the order of 1TB could comfortably hold ~1,500 720p videos averaging around 20 minutes. That’s a pretty decent little seed library, without fossilising the whole thing into YouTube2ZIM/Kiwix.

    A lot of self-hosters use TubeArchivist, or dump downloaded videos into Plex/Jellyfin, but I’ve never found either approach particularly satisfying.

    So, I’m going to see whether I can make my SmartTube fork also consume actual offline-downloaded YouTube videos as first-class content.

    That way, you could simply feed it downloads produced by something like ytdl-sub.

    If there’s interest in that, please upvote / say so.