Hacker Newsnew | past | comments | ask | show | jobs | submit | codexon's commentslogin

The problem is most of the botnet zombies are in places with very little rule of law like eastern europe/russia/south america/china. It is an exercise in futility and the richest customers just opt to just spend money on more protection than shutting down the zombies.

If the zombie is in the US, hosts like Google or Amazon will take 1+ month to respond.


Then IP-range block those places until they get their affairs in order.

Author here. This attack was extremely broad. I saw parts of this attack come from my own home ISP's ASN, though not my IP thankfully. If we just "blocked those places" there would be a lot of collateral damage. As it stood, we did temporarily bump up rate limiting for the biggest attack ASNs and we absolutely heard from real, regular users about it (Sorry to those affected).

The wafer only has space for 44 gb of sram. If they offload ram they lose the speedup of having everything on 1 chip (the whole point of cerebras).

They can host larger models by pipelining it on multiple wafers. Each wafer stores one layer and N layers can serve an N * 44 gb model with N concurrency. The limitation would of course be inter-wafer I/O, which my comment was getting at. That's probably how they can serve bigger models like GPT 5.6 Sol [1].

[1] https://www.cerebras.ai/blog/accelerating-gpt-5-6-sol-ultraf...


I never said offloading was impossible. It will result in a large slowdown.

It would look bad for cerebras if other people are hosting the 27b version and show a higher TPS than cerebras.


They are still offering full mythos to project glasswing companies and those that pay them enough.

It isn't just about money, it's about who. I don't think the companies using it are using it to create botnets.

The intention is for highly targeted pieces of software to use it to secure their code and be ahead of the game before the open market gets access to the same capabilities for offense.


They gave a few of the largest companies access to mythos.

Half a year later, it is still not available to everyone else.


I don't have any issues with the extra features they try to tack on. I just disable them.

I just wish they would fix the memory leaks and stuttering.


I want to be able to recommend firefox to everybody, but after 15 years of chrome and going back to firefox, it still feels jank.

Web apps like twitter youtube discord that is left open for a few hours take up >2gb ram and is jittery. I have to shift+esc and close them to make them run smoothly again. Why hasn't stuff like this been fixed yet?

Why do I need to open about:profiles just to launch a new profile?


I heard the only way you are going to get into the CVP program is if you have public CVEs. Doesn't seem to matter if you are in a company account or not according to people that are supposedly in the program.

Thank you, that's actually helpful. I thought it was only accessible through a b2b agreement with Anthropic.

Rumors are that if your company spends a lot, they will also remove safeguards.

I used to use firefox a long time ago but got tired of all the memory leaks and lag before I switched to chrome.

Now that mv2 is going away, I switch back to firefox, and it still has memory leak issues after all these years, it is really disappointing.


I'm not a biochemist and I have been blocked by fable and opus for "cyber" just for doing things like asking it to ssh into one of my servers, look at a CVE, or do work in assembly. Been rejected to their cyber verification program 3 times already.


There's very little incentive for people to advertise that their product was vibe coded. In fact there's many incentives to hide it. Many people hate AI and why would you invite more competition?

Bun gets a lot of hate for vibe coding.

I vibe coded to modernize one of my old hobby websites (so not even vibe coding from scratch) and I immediately got anti-AI comments, and I didn't even say I used AI.


Hope it keeps up, then. Social shaming is one of the last real hopes against this since government regulators are compromised.


There's nothing wrong with vibe coding as long as the quality is good.


>as long as the quality is good.

Well that's where we're seemingly at an impasse, no?

I don't even like the term "good vibecoding". The term was implied as a means to just let the computer type its own code and "go with the vibes". i.e. you have no deeper idea on how it works underneath.

Now, AI-assisted coding? It can be good. It can be a rush job. But the idea is that LLM's are in the passenger's seat, not the diver's. Much smaller chance where you have no idea where you're going since you're at the wheel.


The output is indistinguishable from manually written code.


"My vibecoded stuff is indistinguishable from handwritten stuff" and "I got anti-AI comments after vibecoding my website even though I didn't say anything about AI" are not very compatible with each other.


There was absolutely nothing showing that it was vibe coded other than the fact that a website that didn't get any updates for 5 years suddenly got a 20+ bullet point update. People just assumed it was vibed because of the sheer number of changes.

There was not 1 mention about anything being broken, they were simply complaining about AI.

Anti-AI psychosis is a very real thing that is happening https://x.com/Jediwolf/status/2054776716770320631


I hope on HN of all places I don't need to explain the difference between "writing correct code" and "Software Engineering". We both know what a 20 year old million line legacy software needs.


Not everything needs to be amazon/google scale backed with things like sharded dbs or kubernetes.


Nope, not at all. But a million line codebase isn't close to Google scale. That's typical boring non-tech legacy code system scale. And I don't think I'm at a point where I'd want to vibe code my way though that and take responsibility for it.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: