[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / r / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/g/ - Technology


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


File: X screencap thread.png (198 KB, 598x751)
198 KB PNG
MistralAI package on PyPI affected
>>
>>108806246
>1 in 6 rm -rf in Israel or Iran
oooooyyyyyy veeeeyyyyyyy
>>
File: 1327542408913.gif (661 KB, 200x152)
661 KB GIF
>>108806246
>>108806331
>avoids Russia
>targets Iran AND Israel
>>
>>108806357
Based. Both need to be destroyed
>>
there was also the npm supply chain attack on tanstack packages
>>
File deleted.
did they attach a fucking llm screenshot
>>
>>108806467
>You're absolutely right. I shouldn't have used my admin credentials to run the malware on the Azure domain controllers. :^)
>>
>>108806331
>Israel or Iran
this nigga must be a Saudi or some shit.
based?
>>
source due OP is fucking lazy faggot nigger
https://x.com/MsftSecIntel/status/2054041471280423424
>>
>>108806523
No he is Russian, because Russia won't persecute you if you don't target Russians, hence why the Russian locale check.
Unless the author made it look like he is Russian to blame them, which is very possible.
>>
File: 1749826827840849.jpg (31 KB, 500x310)
31 KB JPG
>>108806523
>>Israel or Iran
>this nigga must be a Saudi or some shit.
>based?
i wonder who could be behind this post
>>
>>108806544
based russkies raping shekelsteins and mudslimes
>>
>>108806246
seems like someone trying to troll russians making them seem like the perps
no one in iran is downloading mistral they dont have internet but im in israel and have a k3s cluster with some open weights models running so this would probably crash the containers if i downloaded this here.
>>
>>108806544
>won't persecute you if you don't target Russians
This is an indirect consequence of the sanctions.
If the executive bodies of the countries do not work together anymore, then Russia legally can not prosecute someone who only harms Westoids.
It is simply not their legislation and the treaties about international cooperation in law enforcement got severed by the West.

The original intention was the opposite, to make it legal to attack Russian services. It backfired, because Russian services are only used by Russians, so they can always just cut those off from Westoids with no issues.
And now the largest infostealer community on the internet has a rule to not target Russians and to filter out data from Russians in leaks.
>>
>>108806614
>>108806246
Why would Israelis be downloading the only LLM capable of real anti semitism anyway. More likely that these are jewish hackers since they know Iran will download this. Then they blamed Russians for their attack as usual and added code to target Israel as a ruse, since no jew will ever download Mistral.
>>
>>108806633
This was happening even before 2022, hell even before 2014.
It is not because Russia is evil or hostile, they just don't want to spend police resources on persecuting people who don't cause problems directly for them or their allies.
Though I guess since 2022 the state may be sponsoring this shit at least a little bit.
>>
>>108806640
the llm is also capable of anti iranism i dont think thats a factor

frankly i dont think anyone is downloading mistral these days their models are far behind google/alibaba
>>
>>108806246
>mistralai
>Hugging Face
what compels software "developers" to choose the most gaynigger names imaginable for their abominations?
>>
>>108806648
kiwifarms used a Russian host once and got kicked out because that Russian hosting provider didn't want to deal with Western law bullshit.

Russia definitely did prosecute and shut down stuff within their country if it harmed Westoids and they complained.

The whole Infostealer stuff in general is a new post-2022 meta. Before it, we had ransomware. Ransomware isn't trendy anymore, instead they steal cookies and online accounts.
>>
>>108806661
mistral because its french
huggingface is a joke because its the name of an emoji they wanted a company with an emoji name instead of a regular stock ticker


both iconic names desu
>>
>>108806736
>Russia is friendly towards Iran and even partially relying on their drone tech
>China has been putting pressure on Iran to end the war without trying to be seen as supporting Trump/the US in the process for at least two weeks now
>Yeah bro it's the Russians
The same """Russians""" that blew up Northstream?
>>
>>108806736
who are you quoting?
>>
>>108806736
...owning da jooz isn't based, then?
>>
>>108806666
No they shut it down because there were local Russian skinheads posting and organizing there (for example the remaining members of F18) which caused problems for Russian authorities.
>>
>>108806246
i'm surprised this was ever found. someone uses mistral?
>>
>>108806795
makes more sense
>>
>>108806246
do people still not use containers for local dev?
>>
shouldnt the asi have detected this
>>
>>108806908
what the fuck
do i need to check everything ive downloaded now for embedded shit
>>
>>108807235
yup, you better do, or delete them
>>
>>108807177
are you really containerizing every shitty small project you start?
>>
>>108807257
yes. I may not deploy it containerized, but I do all dev with helix + toolchain in a container, just in case. most these supply chain attacks have been injecting garbage to run in your scope for credential stealing. maybe eventually someone will make more sophisticated malware to subtly break actual deployed servers and software, but we'll see. even in those cases, it's easier to rebuild a deployed service than your desktop. biggest issue is if containerization is "secure" but I believe docker/podman/containerd were seccomp filtering all the "no-no" things that have been a source of security issues anyway.
>>
>>108807025

the old french jet fighter named after it maybe
>>
>>108807257
almost everything, yes. i have an established way i make containers, so most of the work is done. if i containerize it i can come back to it years later and not have to deal with library versions and all that shit. it's clean.
>>
>>108807307
>>108807368
interesting, maybe I should start doing it too
>>
>>108807391
fedora has toolbox for instance. a bit loose, but it gives you a place to start. if you prefer vscod* shit, flathub has most the major language SDKs and you can add them as extensions to you vscode slop and use the vscode terminal to do shit like build and test.
>>
>>108807569
I am using Zed with a typescript SDK when I start a project
>>
>>108807177
I only do it raw, without protection
>>
>>108806758
MIGA fanfic
>>
>>108806246
>transformers, ro bot-net in disguise.
>>
>>108809117
You know you're supposed to copy paste the output of the llm not the prompt right?
>>
>>108806357
>>targets Iran AND Israel
Logical since Israel created Iran (to get more "support" from the USA).
>>
>>108807392
Why do you care about what was on TV and when, 10+ years ago?
>>
>>108806246
Never been more happy to use litellm.
>>
>>108806666
>kicked out because that Russian hosting provider didn't want to deal with western law bullshit
Then it was because they're retards, not because of western law bullshit, because only retards care about foreign law bullshit (hat tip to pirate bay)...
>>
>>108806246
>hxxps
Damn, I googled this thinking I was going to learn something that would blow my mind. Didn't realize it was just a way of typing http(s) without turning it into a link. Still interesting though.



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.