• 0 Posts
  • 88 Comments
Joined 3 years ago
cake
Cake day: June 20th, 2023

help-circle
  • LLMs are just a tool, just like airplanes or hammers. An airplane is very expensive, but better at going really far distances than humans can on foot. A hammer is cheaper than a human, but by itself is useless unless operated properly. Despite the tone of the outputs, LLMs should not be authoritative and human judgement shouldn’t be replaced with them.

    Just on the security side of coding, highly skilled security engineers at Mozilla were able to use Claude Mythos to identify and address many issues to make Firefox more secure. Some if these issues were introduced over 10 years ago, and a human could have identified and fixed them but human speed of reading and finding will always be a bottleneck. Having highly skilled humans offload the slow task to go through the codebase and raise issues, allowed them to find and understand the nuanced problem, and work on a fix. The key here is giving the people with the skills the ability be enhanced with LLMs, not replace them with one.















  • Not sure when the sale happened, but there was a recent video about the invention of the Blue LED from the past year which was really good, highly recommended. To me click bait implies the contents are not worth the headline / title / thumbnail, but old Veritasium and recent have kept up mostly the same level of quality IMO. I will say updating old video titles and thumbnails to juice the numbers was annoying, but the optimist in me figured that at least people who had not previously experienced old Veritasium got it recommended to them which is a positive.





  • The standard is called TOTP and Google became synonymous with it because they pushed it in the late 2000s for Gmail and have a large user base. Other sites did have systems beforehand, like Paypay which had a dedicated fob, but that was not widely used. Gmail was likely most people’s first experience with MFA and Google pushed their own Authenticator app (and didn’t really advertise that others could be used). As other sites got on board, it was easier to tell people to use the app they use for google to get their code, since you could assume people had the app.

    Basically that made a situation where people who had a different TOTP app knew their app would work with “Google Authenticator” but for those without an app or using Google Authenticator, they were likely unaware of the interoperability and standards behind the mechanisms.