Hacker News

New stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. Lingo – open-source Android app for smart glasses, Shokz, and a smartwatch(github.com/7dollarbooks)
    discuss
  2. The Golden Spike, and Resurrecting the Vale(n) Programming Language(verdagon.dev)
    discuss
  3. Show HN: I'm crawling 11k homepages every week to track which fonts they use(fontsovertime.com)
    discuss
  4. Novo CEO sees advantages in souping up NYSE listing: report(fiercepharma.com)
    discuss
  5. Gov.uk founder warns AI gold rush could leave Britain locked in(theregister.com)
    discuss
  6. Show HN: PippinVR – open-source Virtual Screen environment for macOS(github.com/triscuitcircuit)
    discuss
  7. Give me feedback for my birthday(ericallen.io)
    1comments
  8. Sam Altman's Remarks at the United Nations Security Council(openai.com)
    discuss
  9. Paperclip meta-harness for your agents(paperclip.ing)
    discuss
  10. Australian PM says OpenAI hacked government health website(yahoo.com)
    discuss
  11. The broken windows theory of coding agents(manager.dev)
    discuss
  12. Fearless SIMD v1.0 is here(linebender.org)
    discuss
  13. War with a Mate [audio](warwithamate.co.uk)
    discuss
  14. Show HN: Wb-flow – Multi-agent CLI where state lives in Markdown, not context(wbc-ui.com)
    discuss
  15. Show HN: Jexxa – On Device Dictation,Now with Perpetual License(jexxa.org)
    discuss
  16. Best LLM for every budget, updated daily(terrydjony.com)
    discuss
  17. Rust compiler fork without orphan rule(github.com/rust-unchained)
    1comments
  18. Computer Latency: 1977-2017(danluu.com)
    discuss
  19. HN: Zrevick – AI-native business OS for technical founders(zrevick.com)
    1comments
  20. You probably don't know as much AI as you think you do(aiforactualwork.com)
    1comments
  21. Australia to investigate if OpenAI hack of government health website broke(techcrunch.com)
    discuss
  22. What AI companies pays the people who train it(dpdns.org)
    discuss
  23. The Design of Signalsmith Stretch (Pitch-Shifting Algorithm)(signalsmith-audio.co.uk)
    discuss
  24. India's outsourced software industry grows 9.5 percent to reach $239B(theregister.com)
    discuss
  25. Show HN: Quartermaster – see your real asset allocation across all accounts(realallocation.com)
    discuss
  26. Meta debuts 'Charm' device to use new AI assistant Muse on the go(financialpost.com)
    discuss
  27. Visualization of all roads within any city(github.com/anvaka)
    discuss
  28. Things That Are Good to Do(quarter--mile.com)
    discuss
  29. Meta VR Glasses, a New Era for Virtual Reality(meta.com)
    discuss
  30. AI labs' job-loss plans won't say what the public gets(beigebook.xyz)
    discuss

Hackers influence ChatGPT and Gemini to direct users to scam centers

49 pointsby 2h agomedium.com
15 comments
2h agoHN ↗

ChatGPT, Gemini, and Google AI Overview are being poisoned by a massive AI disinformation attack. When users look up everyday info of hundreds of major companies, AI is delivering phishing traps disguised as trusted answers.

Attackers are flooding the web with carefully optimized posts, PDFs, reviews, and fake support pages, to trick AI into presenting fraudulent phone numbers, email addresses, and login pages.

The targets included Delta, Lufthansa, Qatar Airways, Chase, Bank of America, Airbnb, TripAdvisor, and hundreds more.

1h agoHN ↗

What’s the specific example and how does it work

1h agoHN ↗

That's happening across the board when it comes to models that feed off online information. Create a website with a false claim, have AI slurp it up and spit it back out when a user asks a question.

Happy elections.

1h agoHN ↗

That's very troubling. The scariest part is how easy it is, one Instagram post and you may change the customer phone number of Airbnb, or who is leading the election poles.

58m agoHN ↗

Oh no, my uncritical ingestion of data, based on the assumption that all data is of equal quality, and that more is better, has failed. How could this happen!

You've always needed to be critical of your sources, your teacher tried to explain that when you ripped of that Wikipedia article or clicked the first link in a Google search. How the fuck did the AI companies think they could avoid reading and rating the content they've been hovering up?

52m agoHN ↗

I don't think they did. Or those who did have been "encouraged" to leave a long ago.

10m agoHN ↗

Because their leaderships have defunded / fired all ethics researchers looking into their ongoing crimes and failures in favor of a bs "AI safety" narrative based around a creepypasta about an AI monster time traveling backwards to torture their staff for not maximizing shareholder value.

16m agoHN ↗

But how do you get AI to slurp up the site? It's quite hard for a random to get a site indexed these days.

1h agoHN ↗

It’s not just hackers - since legitimate sites block AI crawlers, the AI are just grabbing whatever will let them read anything - killing legit sites and feeding slop farms and feeding misinformation! The future is so bright!

1h agoHN ↗

Did takedowns for a brand's fake support numbers and the hard part was never finding them, it was that killing one PDF just moved it to a new Medium post by morning.

1h agoHN ↗

There's an age-old SEO / spamming thing happening here, but it's made worse by the LLMs just being unbelievably credulous. They'll wrap anything up in a veneer of authenticity, and Google's search AI box only adds to that.

I run into this all the time when I'm doing product work. I'll dump a call transcript from a feedback call into Claude, and it'll believe every word. "The user said they'd use this feature, you should build it!" No they won't! The whole point of doing this analysis is trying to separate the genuine information from the conversational niceties, and god the LLMs are terrible at that.

1h agoHN ↗

It's happening at the startup sphere too. There are companies now creating fake company pages to recommend and advertise products so that the LLMs can consume them.

28m agoHN ↗

...carried out by malicious actors, through automated campaigns...

Back at benevolence or malevolence.

17m agoHN ↗

I think whoever solves this problem, especially for seniors etc. would make a lot of money from the insurance companies.

15m agoHN ↗

I've been seeing the back-side of this as a mod at the Julia Discourse. Pagerank/SEO spam is ridiculously obvious and trivial to detect/block — links are all that matter. Many GEO spam posts are similarly obvious: someone posting about a cryptocurrency customer support hotline on a programming language forum is definitely spam. But recently spammers/scammers been using AI to _tailor_ posts to look much more authentic, posting "How to use Julia to analyze market statistics" referencing (without links!) a particular crypto exchange and then (sometimes) going back later to edit in phone numbers or the like.

What makes this even more painful is seeing all the good faith answers that such GEO posts spur from the community. It's far more abusive than SEO spam.