upvote
I cannot fucking believe people are letting it remote start their cars and control their garage door. Nevermind ovens. All things people have done and posted about.

As someone that has worked in the automotive space, an enormous amount of regulation and effort is spent making sure you cannot do something like forgetfully remote start the car with your garage door closed and gas yourself. Nevermind securing it so that others cannot do this to you.

And these people are plugging it into ... this, which will happily go "oh, the car turned off after 15 minutes, let me turn it back on!"

There are realistic odds that someone is rotting in their house while their lobster pays the bills and writes blog posts for them.

reply
I like the idea of OpenClaw a lot, it's a technology that I would want in my life. But in it's current form it's kinda chilling and I cannot see it become safe to use anytime soon.

It seems to me many infosec best practices that have been built over decades have been forgot in the last few months like nothing happened. People really do give this kind of software full system access, plus access to their emails, their private chats, most likely their passwords too and who knows what else via plugins. I couldn't really imagine this happening one year ago.

I'm 100% confident that any state actor and cybercrime groups are currently heavily focusing their research on these tools. You compromise the right person and you can access all kind of critical information, it would basically be the same as having some remote control software on their system with full permissions.

And everyone on the hype train seems to be absolutely unaware of this. Maybe I'm missing something, but all of this feels so odd to me.

reply
This rings so true. Software Engineering should have stricter bar similar to med professionals. If we have leaked such lousy products and the public crowd thinks this is usable, it's a failure of the industry as a whole.
reply
>> Software Engineering should have stricter bar similar to med professionals.

This is a month-old project by someone how has been suckling at the YC teat of release as early as possible; #YOLO. There's no "engineering" here.

reply
> so long as hallucinations and prompt injection remain unsolved problems

Aren't hallucinations mathematically impossible to be _solved_? Cannot believe how so many people just willy nilly give everything they have to a lying parrot.

reply