Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

Scheduled Pinned Locked Moved Uncategorized
21 Posts 14 Posters 39 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

    Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

    Apparently they never thought to purchase the actual standard and check themselves.

    Is there a German word for this?

    16af93@wetdry.world1 This user is from outside of this forum
    16af93@wetdry.world1 This user is from outside of this forum
    16af93@wetdry.world
    wrote last edited by
    #6

    @Cyberoutsider lol, airrtum

    1 Reply Last reply
    0
    • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

      I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

      Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

      jprjr@mastodon.socialJ This user is from outside of this forum
      jprjr@mastodon.socialJ This user is from outside of this forum
      jprjr@mastodon.social
      wrote last edited by
      #7

      @Cyberoutsider people just don't read anything anymore. It's kind of a problem.

      S 1 Reply Last reply
      0
      • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

        I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

        Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

        adamsteer@mapstodon.spaceA This user is from outside of this forum
        adamsteer@mapstodon.spaceA This user is from outside of this forum
        adamsteer@mapstodon.space
        wrote last edited by
        #8

        @Cyberoutsider welcome to bicycle mechanicry. Almost daily, "AI told me this was absolutely the right part / method!"

        My human in the big wheel, no...

        1 Reply Last reply
        0
        • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

          I honestly don't think I've seen such a clear example of time & effort being wasted as a result of blind reliance on AI before.

          Let's be clear, it probably won't take that long to fix as a lot of the work will still be applicable (as long as the implementation wasn't AI-drivel too)... but, seriously, all for the sake of not spending the time to read the actual standard?

          h3@chaos.socialH This user is from outside of this forum
          h3@chaos.socialH This user is from outside of this forum
          h3@chaos.social
          wrote last edited by
          #9

          @Cyberoutsider the fix would be making standards free to read

          S celesteh@hachyderm.ioC 2 Replies Last reply
          0
          • h3@chaos.socialH This user is from outside of this forum
            h3@chaos.socialH This user is from outside of this forum
            h3@chaos.social
            wrote last edited by
            #10

            @neoluddite @Cyberoutsider
            no. i think LLM use is often a symptom of some larger problem at hand. like standards not being available. or too much workload. genAI is a good tool to conceal what's wrong with a system, and the people at the short end of the stick are told it's actually good for them

            1 Reply Last reply
            0
            • h3@chaos.socialH This user is from outside of this forum
              h3@chaos.socialH This user is from outside of this forum
              h3@chaos.social
              wrote last edited by
              #11

              @neoluddite @Cyberoutsider

              using LLMs for therapy is obviously not good for the user, but just indicates how dysfunctional a medial system is for those who dont have lots of cash on hand.
              in the US, you get fucked financially, here in Germany, it's hard to get it through public health insurance, and in the UK ur going on multi-year waitlists for anything trans*-related.

              h3@chaos.socialH 1 Reply Last reply
              0
              • h3@chaos.socialH h3@chaos.social

                @neoluddite @Cyberoutsider

                using LLMs for therapy is obviously not good for the user, but just indicates how dysfunctional a medial system is for those who dont have lots of cash on hand.
                in the US, you get fucked financially, here in Germany, it's hard to get it through public health insurance, and in the UK ur going on multi-year waitlists for anything trans*-related.

                h3@chaos.socialH This user is from outside of this forum
                h3@chaos.socialH This user is from outside of this forum
                h3@chaos.social
                wrote last edited by
                #12

                @neoluddite @Cyberoutsider

                or "AI partners" which are at best an indicator for widespread lonelyness, but probably just a symptom of people desiring "a partner that obeys" (can have its memories edited and such) because all those fucked up patriarchical ideas still inger everywhere under a thin coat of paint

                1 Reply Last reply
                0
                • jprjr@mastodon.socialJ jprjr@mastodon.social

                  @Cyberoutsider people just don't read anything anymore. It's kind of a problem.

                  S This user is from outside of this forum
                  S This user is from outside of this forum
                  shadur@mastodon.sandwich.net
                  wrote last edited by
                  #13

                  @jprjr @Cyberoutsider Hallucinating plagiarism machines are *designed* to feed their victims answers that reduce their ability to do their own critical thinking in favour of relying more with their overhyped Clippy instead.

                  They actively encourage addictive behavior because it increases shareholder value.

                  1 Reply Last reply
                  0
                  • lemmus@social.vivaldi.netL This user is from outside of this forum
                    lemmus@social.vivaldi.netL This user is from outside of this forum
                    lemmus@social.vivaldi.net
                    wrote last edited by
                    #14

                    @jpm @Cyberoutsider <Takei>Oh, my...</Takei>

                    1 Reply Last reply
                    0
                    • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                      Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                      Apparently they never thought to purchase the actual standard and check themselves.

                      Is there a German word for this?

                      rakowskibartosz@hachyderm.ioR This user is from outside of this forum
                      rakowskibartosz@hachyderm.ioR This user is from outside of this forum
                      rakowskibartosz@hachyderm.io
                      wrote last edited by
                      #15

                      @Cyberoutsider don't know for them, but for me it's schAIdenfreude

                      1 Reply Last reply
                      0
                      • h3@chaos.socialH h3@chaos.social

                        @Cyberoutsider the fix would be making standards free to read

                        S This user is from outside of this forum
                        S This user is from outside of this forum
                        shadur@mastodon.sandwich.net
                        wrote last edited by
                        #16

                        @h3 @Cyberoutsider Won't help when they go "Gemini, summarize this page" and it'll cheerfully hallucinate half the information.

                        1 Reply Last reply
                        0
                        • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                          Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                          Apparently they never thought to purchase the actual standard and check themselves.

                          Is there a German word for this?

                          funnymonkey@freeradical.zoneF This user is from outside of this forum
                          funnymonkey@freeradical.zoneF This user is from outside of this forum
                          funnymonkey@freeradical.zone
                          wrote last edited by
                          #17

                          @Cyberoutsider

                          AI efficiency and time savings in action!

                          1 Reply Last reply
                          0
                          • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                            Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                            Apparently they never thought to purchase the actual standard and check themselves.

                            Is there a German word for this?

                            lennybacon@infosec.exchangeL This user is from outside of this forum
                            lennybacon@infosec.exchangeL This user is from outside of this forum
                            lennybacon@infosec.exchange
                            wrote last edited by
                            #18

                            @Cyberoutsider Intelligenzkunstwerk

                            1 Reply Last reply
                            0
                            • h3@chaos.socialH h3@chaos.social

                              @Cyberoutsider the fix would be making standards free to read

                              celesteh@hachyderm.ioC This user is from outside of this forum
                              celesteh@hachyderm.ioC This user is from outside of this forum
                              celesteh@hachyderm.io
                              wrote last edited by
                              #19

                              @h3 @Cyberoutsider

                              Its extremely weird that things are meant to be both standards and paywalled. Like, is it international and for everyone or not?

                              1 Reply Last reply
                              0
                              • cyberoutsider@infosec.exchangeC cyberoutsider@infosec.exchange

                                Sat in a call where someone has just realised that their whole ISO framework that they've spent months creating is based on an incorrect list of controls that an AI tool gave them.

                                Apparently they never thought to purchase the actual standard and check themselves.

                                Is there a German word for this?

                                dekkzz78@ruby.socialD This user is from outside of this forum
                                dekkzz78@ruby.socialD This user is from outside of this forum
                                dekkzz78@ruby.social
                                wrote last edited by
                                #20

                                @Cyberoutsider

                                schadenfreude

                                1 Reply Last reply
                                0
                                • lemmus@social.vivaldi.netL lemmus@social.vivaldi.net

                                  @Cyberoutsider Out of morbid curiosity, especially in regards to the blast radius, which ISO?

                                  cyberoutsider@infosec.exchangeC This user is from outside of this forum
                                  cyberoutsider@infosec.exchangeC This user is from outside of this forum
                                  cyberoutsider@infosec.exchange
                                  wrote last edited by
                                  #21

                                  @Lemmus 27001 - for some added standards nerdery, what the AI tool provided back was a weird bastardisation of the 2013 version. It entirely ignores the 2022 update that organisations will now be routinely compared against.

                                  1 Reply Last reply
                                  0
                                  • R relay@relay.publicsquare.global shared this topic
                                  Reply
                                  • Reply as topic
                                  Log in to reply
                                  • Oldest to Newest
                                  • Newest to Oldest
                                  • Most Votes


                                  • Login

                                  • Login or register to search.
                                  • First post
                                    Last post
                                  0
                                  • Categories
                                  • Recent
                                  • Tags
                                  • Popular
                                  • World
                                  • Users
                                  • Groups