Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

Scheduled Pinned Locked Moved Uncategorized
21 Posts 14 Posters 39 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

    I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

    Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

    lemmus@social.vivaldi.netL This user is from outside of this forum
    lemmus@social.vivaldi.netL This user is from outside of this forum
    lemmus@social.vivaldi.net
    wrote last edited by
    #5

    @Cyberoutsider Out of morbid curiosity, especially in regards to the blast radius, which ISO?

    cyberoutsider@infosec.exchangeC 1 Reply Last reply
    0
    • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

      Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

      Apparently they never thought to purchase the actual standard and check themselves.

      Is there a German word for this?

      16af93@wetdry.world1 This user is from outside of this forum
      16af93@wetdry.world1 This user is from outside of this forum
      16af93@wetdry.world
      wrote last edited by
      #6

      @Cyberoutsider lol, airrtum

      1 Reply Last reply
      0
      • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

        I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

        Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

        jprjr@mastodon.socialJ This user is from outside of this forum
        jprjr@mastodon.socialJ This user is from outside of this forum
        jprjr@mastodon.social
        wrote last edited by
        #7

        @Cyberoutsider people just don't read anything anymore. It's kind of a problem.

        S 1 Reply Last reply
        0
        • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

          I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

          Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

          adamsteer@mapstodon.spaceA This user is from outside of this forum
          adamsteer@mapstodon.spaceA This user is from outside of this forum
          adamsteer@mapstodon.space
          wrote last edited by
          #8

          @Cyberoutsider welcome to bicycle mechanicry. Almost daily, "AI told me this was absolutely the right part / method!"

          My human in the big wheel, no...

          1 Reply Last reply
          0
          • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

            I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

            Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

            h3@chaos.socialH This user is from outside of this forum
            h3@chaos.socialH This user is from outside of this forum
            h3@chaos.social
            wrote last edited by
            #9

            @Cyberoutsider the fix would be making standards free to read

            S celesteh@hachyderm.ioC 2 Replies Last reply
            0
            • h3@chaos.socialH This user is from outside of this forum
              h3@chaos.socialH This user is from outside of this forum
              h3@chaos.social
              wrote last edited by
              #10

              @neoluddite @Cyberoutsider
              no. i think LLM use is often a symptom of some larger problem at hand. like standards not being available. or too much workload. genAI is a good tool to conceal what's wrong with a system, and the people at the short end of the stick are told it's actually good for them

              1 Reply Last reply
              0
              • h3@chaos.socialH This user is from outside of this forum
                h3@chaos.socialH This user is from outside of this forum
                h3@chaos.social
                wrote last edited by
                #11

                @neoluddite @Cyberoutsider

                using LLMs for therapy is obviously not good for the user, but just indicates how dysfunctional a medial system is for those who dont have lots of cash on hand.
                in the US, you get fucked financially, here in Germany, it's hard to get it through public health insurance, and in the UK ur going on multi-year waitlists for anything trans*-related.

                h3@chaos.socialH 1 Reply Last reply
                0
                • h3@chaos.socialH h3@chaos.social

                  @neoluddite @Cyberoutsider

                  using LLMs for therapy is obviously not good for the user, but just indicates how dysfunctional a medial system is for those who dont have lots of cash on hand.
                  in the US, you get fucked financially, here in Germany, it's hard to get it through public health insurance, and in the UK ur going on multi-year waitlists for anything trans*-related.

                  h3@chaos.socialH This user is from outside of this forum
                  h3@chaos.socialH This user is from outside of this forum
                  h3@chaos.social
                  wrote last edited by
                  #12

                  @neoluddite @Cyberoutsider

                  or "AI partners" which are at best an indicator for widespread lonelyness, but probably just a symptom of people desiring "a partner that obeys" (can have its memories edited and such) because all those fucked up patriarchical ideas still inger everywhere under a thin coat of paint

                  1 Reply Last reply
                  0
                  • jprjr@mastodon.socialJ jprjr@mastodon.social

                    @Cyberoutsider people just don't read anything anymore. It's kind of a problem.

                    S This user is from outside of this forum
                    S This user is from outside of this forum
                    shadur@mastodon.sandwich.net
                    wrote last edited by
                    #13

                    @jprjr @Cyberoutsider Hallucinating plagiarism machines are *designed* to feed their victims answers that reduce their ability to do their own critical thinking in favour of relying more with their overhyped Clippy instead.

                    They actively encourage addictive behavior because it increases shareholder value.

                    1 Reply Last reply
                    0
                    • lemmus@social.vivaldi.netL This user is from outside of this forum
                      lemmus@social.vivaldi.netL This user is from outside of this forum
                      lemmus@social.vivaldi.net
                      wrote last edited by
                      #14

                      @jpm @Cyberoutsider <Takei>Oh, my...</Takei>

                      1 Reply Last reply
                      0
                      • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                        Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                        Apparently they never thought to purchase the actual standard and check themselves.

                        Is there a German word for this?

                        rakowskibartosz@hachyderm.ioR This user is from outside of this forum
                        rakowskibartosz@hachyderm.ioR This user is from outside of this forum
                        rakowskibartosz@hachyderm.io
                        wrote last edited by
                        #15

                        @Cyberoutsider don't know for them, but for me it's schAIdenfreude

                        1 Reply Last reply
                        0
                        • h3@chaos.socialH h3@chaos.social

                          @Cyberoutsider the fix would be making standards free to read

                          S This user is from outside of this forum
                          S This user is from outside of this forum
                          shadur@mastodon.sandwich.net
                          wrote last edited by
                          #16

                          @h3 @Cyberoutsider Won't help when they go "Gemini, summarize this page" and it'll cheerfully hallucinate half the information.

                          1 Reply Last reply
                          0
                          • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                            Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                            Apparently they never thought to purchase the actual standard and check themselves.

                            Is there a German word for this?

                            funnymonkey@freeradical.zoneF This user is from outside of this forum
                            funnymonkey@freeradical.zoneF This user is from outside of this forum
                            funnymonkey@freeradical.zone
                            wrote last edited by
                            #17

                            @Cyberoutsider

                            AI efficiency and time savings in action!

                            1 Reply Last reply
                            0
                            • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                              Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                              Apparently they never thought to purchase the actual standard and check themselves.

                              Is there a German word for this?

                              lennybacon@infosec.exchangeL This user is from outside of this forum
                              lennybacon@infosec.exchangeL This user is from outside of this forum
                              lennybacon@infosec.exchange
                              wrote last edited by
                              #18

                              @Cyberoutsider Intelligenzkunstwerk

                              1 Reply Last reply
                              0
                              • h3@chaos.socialH h3@chaos.social

                                @Cyberoutsider the fix would be making standards free to read

                                celesteh@hachyderm.ioC This user is from outside of this forum
                                celesteh@hachyderm.ioC This user is from outside of this forum
                                celesteh@hachyderm.io
                                wrote last edited by
                                #19

                                @h3 @Cyberoutsider

                                Its extremely weird that things are meant to be both standards and paywalled. Like, is it international and for everyone or not?

                                1 Reply Last reply
                                0
                                • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                                  Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                                  Apparently they never thought to purchase the actual standard and check themselves.

                                  Is there a German word for this?

                                  dekkzz78@ruby.socialD This user is from outside of this forum
                                  dekkzz78@ruby.socialD This user is from outside of this forum
                                  dekkzz78@ruby.social
                                  wrote last edited by
                                  #20

                                  @Cyberoutsider

                                  schadenfreude

                                  1 Reply Last reply
                                  0
                                  • lemmus@social.vivaldi.netL lemmus@social.vivaldi.net

                                    @Cyberoutsider Out of morbid curiosity, especially in regards to the blast radius, which ISO?

                                    cyberoutsider@infosec.exchangeC This user is from outside of this forum
                                    cyberoutsider@infosec.exchangeC This user is from outside of this forum
                                    cyberoutsider@infosec.exchange
                                    wrote last edited by
                                    #21

                                    @Lemmus 27001 - for some added standards nerdery, what the AI tool provided back was a weird bastardisation of the 2013 version. It entirely ignores the 2022 update that organisations will now be routinely compared against.

                                    1 Reply Last reply
                                    0
                                    • R relay@relay.publicsquare.global shared this topic
                                    Reply
                                    • Reply as topic
                                    Log in to reply
                                    • Oldest to Newest
                                    • Newest to Oldest
                                    • Most Votes


                                    • Login

                                    • Login or register to search.
                                    • First post
                                      Last post
                                    0
                                    • Categories
                                    • Recent
                                    • Tags
                                    • Popular
                                    • World
                                    • Users
                                    • Groups