Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. I said I *didn't* think Taylor Lorenz was an industry shill but... wow... now I'm starting to rethink that.

I said I *didn't* think Taylor Lorenz was an industry shill but... wow... now I'm starting to rethink that.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
67 Indlæg 43 Posters 17 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • futurebird@sauropods.winF futurebird@sauropods.win

    The companies that run LLMs can also use this for PR to calm concerns from the public about the proliferation of such content.

    From a CS perspective I can't think of any way to have a watermark that couldn't be easily defeated through additional processing. LLM dependent people currently take pains to remove em dashes so this new wrinkle has some of them in a panic.

    But, why not just be honest and say you used and LLM? Why so bashful?

    david_chisnall@infosec.exchangeD This user is from outside of this forum
    david_chisnall@infosec.exchangeD This user is from outside of this forum
    david_chisnall@infosec.exchange
    wrote sidst redigeret af
    #36

    @futurebird

    From a CS perspective I can't think of any way to have a watermark that couldn't be easily defeated through additional processing

    The way that the current ones work is that they tweak the probabilities to generate specific patterns in the output. Where there's an equal probability of two words following another in the raw weights, they'll tune it so that there's a higher probability of one than the other.

    If you know the weights and know the biassing factor, you can look at each word pair and see what the probability would be of the model generating that.

    This means that the watermark is smeared all over the output. And it's not a binary thing though, each pair of word contributes something to the probability of matching the watermark and looking at the whole thing will give you a probability at the end.

    Changing every other word should give you close to a 0% of matching the watermark but, at that point, why bother using the LLM at all? If you're going to change half of the words, you may as well just write them yourself. And that's a problem for people who want to share low-effort slop and pretend to be creative.

    ajn142@infosec.exchangeA rysiek@mstdn.socialR 2 Replies Last reply
    0
    • venya@musicians.todayV venya@musicians.today

      @mensrea

      @futurebird

      Same. I have an instinctive "meh" response to her but I do not remember why.

      drukac@mementomori.socialD This user is from outside of this forum
      drukac@mementomori.socialD This user is from outside of this forum
      drukac@mementomori.social
      wrote sidst redigeret af
      #37

      @venya @mensrea @futurebird

      She platformed Chaya Raichik with an interview that really didn't challenge the bigot. I also saw a personal story about Lorenz using dodgy practices at the NYT to build her portfolio by stealing from the sources and beat of others.

      1 Reply Last reply
      0
      • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

        @futurebird

        From a CS perspective I can't think of any way to have a watermark that couldn't be easily defeated through additional processing

        The way that the current ones work is that they tweak the probabilities to generate specific patterns in the output. Where there's an equal probability of two words following another in the raw weights, they'll tune it so that there's a higher probability of one than the other.

        If you know the weights and know the biassing factor, you can look at each word pair and see what the probability would be of the model generating that.

        This means that the watermark is smeared all over the output. And it's not a binary thing though, each pair of word contributes something to the probability of matching the watermark and looking at the whole thing will give you a probability at the end.

        Changing every other word should give you close to a 0% of matching the watermark but, at that point, why bother using the LLM at all? If you're going to change half of the words, you may as well just write them yourself. And that's a problem for people who want to share low-effort slop and pretend to be creative.

        ajn142@infosec.exchangeA This user is from outside of this forum
        ajn142@infosec.exchangeA This user is from outside of this forum
        ajn142@infosec.exchange
        wrote sidst redigeret af
        #38

        @david_chisnall @futurebird @404mediaco has a pretty good article OpEd on it as well.

        https://www.404media.co/anthropics-text-watermarking-proves-ai-companies-do-not-care-at-all-about-writing/

        1 Reply Last reply
        0
        • futurebird@sauropods.winF futurebird@sauropods.win

          @becomethewaifu

          This is the song/creator

          I even thought about taking this post down because I don't really know. But, I decided not to and to simply wait to see what was really going on.

          I still don't know. But, due to generated content there is a cloud hanging over many creative ventures, fairly or not.

          https://sauropods.win/@futurebird/116587364549479132

          fandasin@social.linux.pizzaF This user is from outside of this forum
          fandasin@social.linux.pizzaF This user is from outside of this forum
          fandasin@social.linux.pizza
          wrote sidst redigeret af
          #39

          @futurebird

          I would say it's "too crazy" to be an "AI" generated.

          @becomethewaifu

          1 Reply Last reply
          0
          • jwcph@helvede.netJ jwcph@helvede.net

            @pbloem @futurebird Yeah, none of that. If datasets were curated we wouldn't get glue on pizza & vendors are already fretting about possible model collapse. Also, "watermarking", which is really fingerprinting, can't possibly work as advertised & even if it did it's trivial to defeat & per OpenAI is only correct a measly 99.9% of the time, which would mean thousands upon thousands of errors every day...

            pbloem@mathstodon.xyzP This user is from outside of this forum
            pbloem@mathstodon.xyzP This user is from outside of this forum
            pbloem@mathstodon.xyz
            wrote sidst redigeret af
            #40

            @jwcph @futurebird

            Let me go point by point here.
            - Curation doesn't mean manual selection. It just means that you don't blindly ingest everything from the internet. This has been done since GPT2, when they used social media upvotes as a proxy for article quality. In GPT3, they included sources proportional to the quality of the source which gives you the best of both worlds.
            - All sorts of junk sneaks into the data, but so long as the majority is high quality, it won't lead to model collapse.
            - "Glue on Pizza" came from the Google AI summary which is a poor proxy for current AI capability.
            - Watermarking can and does 100% work as advertised. For a simple insight to the idea, consider the bitstream used to feed the PRNG. If you have the complete model output of one session and the model, you can reconstruct that. Save it, use the same stream each session and you have your watermark with no changes to the model (some extra tricks are necessary to watermark subsets of the conversation).
            - It is indeed relatively easy to circumvent, although the precise method they use seems to be somewhat robust to basic rephrasing. Still, it's going to catch out a lot of lazy people.

            jwcph@helvede.netJ 1 Reply Last reply
            0
            • becomethewaifu@tech.lgbtB becomethewaifu@tech.lgbt

              @futurebird

              But, why not just be honest and say you used and LLM? Why so bashful?

              In my experience, it's because they know most people absolutely hate having slop sprayed at their face, so they'll go to great lengths to disguise it in an attempt to "get one over" on them.

              It resembles the same type of shit with people who "test" someone else's allergies by sneaking stuff into their food: They're trying to "catch them in a lie" with the false assumption that they'll be fine with it if they don't know it's there.

              And even just that type of behavior is extremely concerning for me, even if it doesn't involve allergens that can Actually Kill People. It shows a clear lack of respect for others, and deserves a swift football kick to the unmentionables and immediate expulsion.

              abstract_mage_annastasia@tech.lgbtA This user is from outside of this forum
              abstract_mage_annastasia@tech.lgbtA This user is from outside of this forum
              abstract_mage_annastasia@tech.lgbt
              wrote sidst redigeret af
              #41

              @becomethewaifu @futurebird the annoying thing is that people who "sneak ai into your food" can get away with it more easily, if i dont notice then i wont have an allergic reaction (ngl it would be cool if i could detect it that way) so they think they have proven you wrong when that is not the point

              1 Reply Last reply
              0
              • futurebird@sauropods.winF futurebird@sauropods.win

                @becomethewaifu

                This is the song/creator

                I even thought about taking this post down because I don't really know. But, I decided not to and to simply wait to see what was really going on.

                I still don't know. But, due to generated content there is a cloud hanging over many creative ventures, fairly or not.

                https://sauropods.win/@futurebird/116587364549479132

                michaeltbacon@social.coopM This user is from outside of this forum
                michaeltbacon@social.coopM This user is from outside of this forum
                michaeltbacon@social.coop
                wrote sidst redigeret af
                #42

                @futurebird @becomethewaifu It’s funny, there’s so much accusation of AI around that video and to me it has none of the hallmarks and in fact looks far more likely to be human created (there’s several animated sequences that are exact repeats, which is unlike AI) but I think “simply styled animation” reads as AI.

                There’s a comic on here that keeps getting accusations of being AI generated when it’s likely the artist’s work has been used as primary training material, and he’s really unhappy about it.

                futurebird@sauropods.winF 1 Reply Last reply
                0
                • michaeltbacon@social.coopM michaeltbacon@social.coop

                  @futurebird @becomethewaifu It’s funny, there’s so much accusation of AI around that video and to me it has none of the hallmarks and in fact looks far more likely to be human created (there’s several animated sequences that are exact repeats, which is unlike AI) but I think “simply styled animation” reads as AI.

                  There’s a comic on here that keeps getting accusations of being AI generated when it’s likely the artist’s work has been used as primary training material, and he’s really unhappy about it.

                  futurebird@sauropods.winF This user is from outside of this forum
                  futurebird@sauropods.winF This user is from outside of this forum
                  futurebird@sauropods.win
                  wrote sidst redigeret af
                  #43

                  @MichaelTBacon @becomethewaifu

                  I don't think the animation is generated, it's the music that I have questions about. But I've done animation, and I've never really done any music. So I feel more out of my depth and there is something about the vocals and the very good but predictable use of breaks that IDK...

                  No that's the main point. I Don't Know.

                  michaeltbacon@social.coopM 1 Reply Last reply
                  0
                  • futurebird@sauropods.winF futurebird@sauropods.win

                    The companies that run LLMs can also use this for PR to calm concerns from the public about the proliferation of such content.

                    From a CS perspective I can't think of any way to have a watermark that couldn't be easily defeated through additional processing. LLM dependent people currently take pains to remove em dashes so this new wrinkle has some of them in a panic.

                    But, why not just be honest and say you used and LLM? Why so bashful?

                    gareth@tenforward.socialG This user is from outside of this forum
                    gareth@tenforward.socialG This user is from outside of this forum
                    gareth@tenforward.social
                    wrote sidst redigeret af
                    #44

                    @futurebird
                    On the one hand, this seems like a good idea. It should cut down on academic (and non-academic) cheating among other benefits.

                    But if this really was a benefit to us regular folks, the AI companies would be screaming bloody murder. So they must be getting something out of it. Unless the value of not ingesting their own slop for re-training (and the ensuing model collapse) is worth it all on its own...

                    1 Reply Last reply
                    0
                    • futurebird@sauropods.winF futurebird@sauropods.win

                      I said I *didn't* think Taylor Lorenz was an industry shill but... wow... now I'm starting to rethink that.

                      You know I might be wrong, but what is wrong with watermarks?

                      glecharles@gardenstate.socialG This user is from outside of this forum
                      glecharles@gardenstate.socialG This user is from outside of this forum
                      glecharles@gardenstate.social
                      wrote sidst redigeret af
                      #45

                      @futurebird She's not so much a willing shill (like Newton), but she's addicted to attention, esp once she went independent and it literally pays her bills now. I wrote her off when she expanded from internet culture into deeper waters she doesn't have the chops for.

                      1 Reply Last reply
                      0
                      • futurebird@sauropods.winF futurebird@sauropods.win

                        ** I think Peter is more correct. The primary driver making this happen is the EU. As an American I forget that this chaos COULD be regulated a little.

                        https://mathstodon.xyz/@pbloem/117133380532237199

                        ericlawton@kolektiva.socialE This user is from outside of this forum
                        ericlawton@kolektiva.socialE This user is from outside of this forum
                        ericlawton@kolektiva.social
                        wrote sidst redigeret af
                        #46

                        @futurebird

                        I'd like a clear humanly visible one as well.

                        Like requiring every period (full stop) to be replaced by a middle dot ·.

                        Still easy to read.

                        Q 1 Reply Last reply
                        0
                        • H hypolite@friendica.mrpetovan.com
                          @futurebird What’s really wrong with AI watermarks for text is that AI companies believe words are interchangeable for a given meaning. And that only them can theoretically verify the watermark, which feels like a conflict of interest?
                          Q This user is from outside of this forum
                          Q This user is from outside of this forum
                          quizzicus@mastodon.online
                          wrote sidst redigeret af
                          #47

                          @hypolite @futurebird It seems to me that reviewing a text before passing it to others would reveal whether or not it conveys the precise meaning that you intended.

                          1 Reply Last reply
                          0
                          • ericlawton@kolektiva.socialE ericlawton@kolektiva.social

                            @futurebird

                            I'd like a clear humanly visible one as well.

                            Like requiring every period (full stop) to be replaced by a middle dot ·.

                            Still easy to read.

                            Q This user is from outside of this forum
                            Q This user is from outside of this forum
                            quizzicus@mastodon.online
                            wrote sidst redigeret af
                            #48

                            @EricLawton @futurebird Even easier to remove, though.

                            1 Reply Last reply
                            0
                            • pbloem@mathstodon.xyzP pbloem@mathstodon.xyz

                              @jwcph @futurebird

                              Let me go point by point here.
                              - Curation doesn't mean manual selection. It just means that you don't blindly ingest everything from the internet. This has been done since GPT2, when they used social media upvotes as a proxy for article quality. In GPT3, they included sources proportional to the quality of the source which gives you the best of both worlds.
                              - All sorts of junk sneaks into the data, but so long as the majority is high quality, it won't lead to model collapse.
                              - "Glue on Pizza" came from the Google AI summary which is a poor proxy for current AI capability.
                              - Watermarking can and does 100% work as advertised. For a simple insight to the idea, consider the bitstream used to feed the PRNG. If you have the complete model output of one session and the model, you can reconstruct that. Save it, use the same stream each session and you have your watermark with no changes to the model (some extra tricks are necessary to watermark subsets of the conversation).
                              - It is indeed relatively easy to circumvent, although the precise method they use seems to be somewhat robust to basic rephrasing. Still, it's going to catch out a lot of lazy people.

                              jwcph@helvede.netJ This user is from outside of this forum
                              jwcph@helvede.netJ This user is from outside of this forum
                              jwcph@helvede.net
                              wrote sidst redigeret af
                              #49

                              @pbloem @futurebird all I hear is "Praise Sam & Dario" on repeat.

                              pbloem@mathstodon.xyzP 1 Reply Last reply
                              0
                              • becomethewaifu@tech.lgbtB becomethewaifu@tech.lgbt

                                @futurebird

                                But, why not just be honest and say you used and LLM? Why so bashful?

                                In my experience, it's because they know most people absolutely hate having slop sprayed at their face, so they'll go to great lengths to disguise it in an attempt to "get one over" on them.

                                It resembles the same type of shit with people who "test" someone else's allergies by sneaking stuff into their food: They're trying to "catch them in a lie" with the false assumption that they'll be fine with it if they don't know it's there.

                                And even just that type of behavior is extremely concerning for me, even if it doesn't involve allergens that can Actually Kill People. It shows a clear lack of respect for others, and deserves a swift football kick to the unmentionables and immediate expulsion.

                                stumpythemutt@social.linux.pizzaS This user is from outside of this forum
                                stumpythemutt@social.linux.pizzaS This user is from outside of this forum
                                stumpythemutt@social.linux.pizza
                                wrote sidst redigeret af
                                #50

                                @becomethewaifu @futurebird I saw a "is this AI?" comment on an old "How it's Made" video. Everything is suspect these days.

                                1 Reply Last reply
                                0
                                • mensrea@freeradical.zoneM mensrea@freeradical.zone

                                  @futurebird there's been more discourse around her before but i forget the context at the moment

                                  gryphonmyers@mastodon.socialG This user is from outside of this forum
                                  gryphonmyers@mastodon.socialG This user is from outside of this forum
                                  gryphonmyers@mastodon.social
                                  wrote sidst redigeret af
                                  #51

                                  @mensrea @futurebird specific to AI, all of the following are recent Lorenz controversies:

                                  - She said she uses ChatGPT for recipes
                                  - She said she spends roughly $300 per month on AI
                                  - She said she enjoys reading some AI generated articles

                                  aisling@critters.gayA 1 Reply Last reply
                                  0
                                  • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

                                    @futurebird

                                    From a CS perspective I can't think of any way to have a watermark that couldn't be easily defeated through additional processing

                                    The way that the current ones work is that they tweak the probabilities to generate specific patterns in the output. Where there's an equal probability of two words following another in the raw weights, they'll tune it so that there's a higher probability of one than the other.

                                    If you know the weights and know the biassing factor, you can look at each word pair and see what the probability would be of the model generating that.

                                    This means that the watermark is smeared all over the output. And it's not a binary thing though, each pair of word contributes something to the probability of matching the watermark and looking at the whole thing will give you a probability at the end.

                                    Changing every other word should give you close to a 0% of matching the watermark but, at that point, why bother using the LLM at all? If you're going to change half of the words, you may as well just write them yourself. And that's a problem for people who want to share low-effort slop and pretend to be creative.

                                    rysiek@mstdn.socialR This user is from outside of this forum
                                    rysiek@mstdn.socialR This user is from outside of this forum
                                    rysiek@mstdn.social
                                    wrote sidst redigeret af
                                    #52

                                    @david_chisnall @futurebird this also means that you have know the weights and know the biassing factor to be able read that watermark reliably.

                                    And I am going to bet that Anthropic is not going to release those.

                                    In other words, Anthropic will be the only company offering the slop generator, and the service to tell that something got generated by it.

                                    That's real power right there. Would they not "tweak" the results if it was useful for them, say, to create a plagiarism scandal around someone?

                                    david_chisnall@infosec.exchangeD 1 Reply Last reply
                                    1
                                    0
                                    • futurebird@sauropods.winF futurebird@sauropods.win

                                      @becomethewaifu

                                      Isn't that amazing? Even people who really love boosting AI feel hurt when someone feeds them AI generated content.

                                      It's embarrassing to admit to liking or not noticing AI generated content. There was a music video I really enjoyed a few months back and I think it might have AI generated music or AI assisted animation. The creator hasn't been very transparent and everyone who liked it is kind of worried and unhappy.

                                      When the same account posted something new I ignored it.

                                      brett_e_carlock@mastodon.onlineB This user is from outside of this forum
                                      brett_e_carlock@mastodon.onlineB This user is from outside of this forum
                                      brett_e_carlock@mastodon.online
                                      wrote sidst redigeret af
                                      #53

                                      @futurebird
                                      Frugit 😭

                                      Can't share until I know.

                                      1 Reply Last reply
                                      0
                                      • gryphonmyers@mastodon.socialG gryphonmyers@mastodon.social

                                        @mensrea @futurebird specific to AI, all of the following are recent Lorenz controversies:

                                        - She said she uses ChatGPT for recipes
                                        - She said she spends roughly $300 per month on AI
                                        - She said she enjoys reading some AI generated articles

                                        aisling@critters.gayA This user is from outside of this forum
                                        aisling@critters.gayA This user is from outside of this forum
                                        aisling@critters.gay
                                        wrote sidst redigeret af
                                        #54

                                        @gryphonmyers@mastodon.social @futurebird@sauropods.win @mensrea@freeradical.zone had to look up the $300 a month figure and yup (sorry it's a substack link) https://on.substack.com/p/model-behavior-taylor-lorenz

                                        1 Reply Last reply
                                        0
                                        • rysiek@mstdn.socialR rysiek@mstdn.social

                                          @david_chisnall @futurebird this also means that you have know the weights and know the biassing factor to be able read that watermark reliably.

                                          And I am going to bet that Anthropic is not going to release those.

                                          In other words, Anthropic will be the only company offering the slop generator, and the service to tell that something got generated by it.

                                          That's real power right there. Would they not "tweak" the results if it was useful for them, say, to create a plagiarism scandal around someone?

                                          david_chisnall@infosec.exchangeD This user is from outside of this forum
                                          david_chisnall@infosec.exchangeD This user is from outside of this forum
                                          david_chisnall@infosec.exchange
                                          wrote sidst redigeret af
                                          #55

                                          @rysiek @futurebird

                                          Yup, that's a legitimate concern. I wouldn't be surprised if they've been doing this for a while anyway to avoid training on their own output, but releasing an API to query gives them a lot of control.

                                          And, of course, you can't detect slop, you can detect slop generated by a specific tool.

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper