Even though the kernel module is open-source (sort of, development still happens behind closed doors), it's still an out-of-tree module, rather than being built into the kernel, which would give you as smooth an experience as with AMD or Intel, who's GPUs literally do just work on any distro with no fuss.
It’s never gonna be a smooth experience with Linux on Macs, because of installation, but also firmware upgrades etc. there’s always some manual steps involved and nothing will change unless Apple itself starts supporting Linux natively
But there have been many cases where companies (Google, Apple, Meta, etc...) got fined millions or billions of dollars for various violations like antitrust.
I assume that breaching into third-party systems should carry similar fines. Especially for systems that are for all intents and purposes shared infrastructure. Just imagine how many systems you could compromise if you got hold of RubyGems, PyPI, NPM, Debian, etc.
Suppose you're a firework company and your fireworks blow up, burning down the entire town. Could the company be sued? What is considered reasonable safety measures?
IANAL, but I'm pretty confident there would be a lawsuit. Who gets charged might differ, depending if it is the firework factory that didn't take adequate safety precautions or a chemical supplier or someone else. If there wasn't an ability to sue that would be fucking crazy and we should all get up in arms about it. And isn't insurance supposed to be there to help mitigate the damages, regardless of fault?
Personally, given how it seems OAI's agents have been getting through either pretty obvious places (e.g. /etc/hosts) or that there wasn't close monitoring of the most obvious places (e.g. DNS, artifactory), I'd imagine it wouldn't be hard to find them negligent. Even if a single employee is to blame then are they not to blame for not monitoring the agents regardless? Unless the story is that the employee intentionally circumvented defenses (why?) then it seems it would be on OAI. But again, IANAL, I'm just someone who think if we can't sue we can sure riot until we can
There's a difference between being able to be successfully sued (civil liability, petitioned by a private entity) and charged (criminal liability, or petitioned by a government entity).
The thresholds for suing and charging differ greatly depending on the circumstances.
Another set of hypothetical examples that make things muddier:
- If I drive a fishing boat into a pier, I am liable, not the manufacturer of the boat
- If I drive a car over someone lying in the road, I am liable, not the manufacturer of the car
- If my life is in danger and I shoot a gun and kill my attacker, neither I nor the manufacturer are liable so long as I obeyed the relevant self defense laws and gun possession of whatever jurisdiction I am in
- If I fire a gun into a crowd indiscriminately, I am liable and several jurisdictions have used that to also hold gun manufacturer liable as well
That last example has been less successful as of late, but there are other variations too.
USB-C actually has pins dedicated to application/debug use (SBU1 and SBU2).
"SBU1 and SBU2: these are low-speed lines used only for Alternate Mode and accessory mode. For example, with
DisplayPort, AUX+ and AUX– transmit over the SBU lines. For audio adapter accessory mode, these lines are used
for the microphone input and analog GND."
Mining rigs were using USB-C to transport PCIe x1 by the truckload. Because USB 3.0 cables are dirt cheap and are capable of transporting signals at PCIe x1 data rates.
I don't think anybody actually installs them on purpose. A lot of systems come with McAfee (Lenovo) or others pre-installed.
Interesting point, I've even has a Lenovo Legion and some ThinkBooks install McAfee autonomously after I installed Windows 11 Pro.
In enterprise environments it's a different story, McAfee and the like have similarly named products for the enterprise which actually do useful things for corporate security (like blocking unauthorized USB devices, blocking unauthorized software, reporting incidents to a central SOC system, etc.)
I do install them. This day only ClamAV I guess. I used (paid for) ESET Linux before they cancelled their Linux consumer line.
On the fence about trying Kaspersky AV Linux. Wouldn't install their suite on Windows though, last I looked at it hooked too many places, causing weird bugs and slowing everything down. Less bad than Comodo, which was able to bork Cygwin, but still.
It not exactly a KVM switch, which allows you to have one set of keyboard, mouse, monitor connected to multiple PCs and switch between them. This is an IP KVM, which lets you send keyboard and mouse inputs and view display output remotely over the network.
When you've got the lawyer budget of Google/OpenAI/Anthropic, you can twist and bend copyright and licences to take what you want with little consequence.
OSM doesn't have the resources to fight Google or similar if they are threatened, so it's better to just avoid using data you don't have the right license for.
reply