EU funding cuts to OSS programs in the wake of popularity of Copyright-Unsafe Clippy field
they just really need those GPU hours more than you need to pay for developers or maintainers. I’m sure you understand.
Big brain tech dude got yet another clueless take over at HackerNews etc? Here's the place to vent. Orange site, VC foolishness, all welcome.
This is not debate club. Unless it’s amusing debate.
For actually-good tech, you want our NotAwfulTech community
EU funding cuts to OSS programs in the wake of popularity of Copyright-Unsafe Clippy field
they just really need those GPU hours more than you need to pay for developers or maintainers. I’m sure you understand.
New existential threat developed, we go all in on AGI economically, turns out to not be possible and then the world collapses due to infrastructure rot. I'll email Yud.
In the land down under, the ABC continues to feed us with golden tech takes: Australia might be snoozing through the AI 'gold rush'
"This is the largest gold rush in the history of capitalism and Australia is missing out," said Artificial Intelligence professor Toby Walsh, from the University of New South Wales.
It's even bigger than the actual gold rush! Buy your pans now folks!
One option Professor Van Den Hengel suggests is building our own Large Language Model like OpenAI's ChatGPT from the ground up, rather than being content to import the tech for decades to come.
lol, but also please god no
"The only way to have a say in what happens globally in this critical space is to be an active participant," he said.
mate, I think that ship might have already sailed
It's my impression that Australia has also produced a disproportionate share of best takes on the subject. How come they are so far ahead of the rest of the world when it comes to dodging this grift?
Wait so gold rushes have positive connotations again?
Surely this is bait from professor of the fishingrod
Artificial Intelligence professor
lol
professor Very Small Shell Script
You wouldn't download a professor
labor said the same shit about blockchains tho thankfully ignored it once they got in
Proton, who I use for mail and various other services, has gone against the wishes of the majority of their userbase as measured by their own survey and implemented an LLM writing assistant in protonmail, which is a real laugh given Proton’s main hook is its services are end-to-end encrypted
(supposedly this piece of shit will run locally if you meet these incredibly high system requirements including a high end GPU or recent, high end Apple M chipset and a privacy-violating Chromium-based browser. otherwise it breaks e2e by sending your emails unencrypted to Proton’s servers, and they do a lot to try to talk over that fact)
Not to downplay what proton mail is doing, but they're saying that you can run this locally with a 2 core, 4 thread CPU from 2017 (the i3 7100, which is a 7000 series processor), and a RTX 2060, a GPU that was never considered high end. Perhaps they changed the requirements while you weren't looking. Or Am I reading this wrong?
only one of the 8 computers I own (and I’m not being cheeky here and counting embedded or retro systems, just laptops and desktops) is physically capable of meeting the model’s minimum requirements, and that’s only if I install chromium on the Windows gaming VM my bigger GPU’s dedicated to and access protonmail from there. nothing else I do needs a GPU that big, professional or otherwise — that hardware exists for games and nothing else. compared with the integrated GPUs most people have, a 2060’s fucking massive.
do you see how these incredibly high system requirements (for a webmail client of all things), alongside them already treating the local model as strictly optional, can act as a funnel redirecting people towards the insecure cloud version of the feature? “this feature only works securely on one of the computers where you write mail, at best” feels like a dark pattern to me.
Unfortunately, "extremely expensive" and "high-end" aren't really synonyms, thanks to, y'know, bitcoin. Of course, I don't disagree with your argument that having to buy a GPU just to ensure your webmail does what it's advertised to do is, well, dumb.
What I don't know is what the LLM even is. Did they just tack on Llama to their webmail app and call it a day? Did they train a model? Was it trained on emails? If so, whose emails? What an advertisement that would be: "Use Protonmail to encrypt your emails so that companies like Protonmail can't use them to train an LLM."
David’s article has some details on what the LLM is. I don’t think it’s trained on emails, but that doesn’t make me feel much better.
Saw this in passing earlier and I just laughed
Until indicated otherwise I’m going to presume it was some bizbro PM/PO/whatever pushing it because they really think it should be there “to be able to compete” (because of some laughably idiotic misunderstanding of their own value proposition and pitch)
Tangent: while I mostly run my own servers and services I did a recent assay on who’s reasonable for service shit. Proton kept popping up massively recommended while some occasional critical mentions from folks in anarchist circles, etc - made me a bit 🤨 and want to dig in more, but also just their product offerings aren’t great. Others I poked into are fastmail and tuta - both seem a fair bit better. Might be worth a look
Proton kept popping up massively recommended while some occasional critical mentions from folks in anarchist circles, etc - made me a bit 🤨 and want to dig in more,
No surprise that folks in anarchist circles are skeptical of Proton ha. That said, I do know quite a few people in the email "industry" who are broadly skeptical of Proton's general philosophy/approach to email security, and the way they market their service/offerings.
Others I poked into are fastmail and tuta - both seem a fair bit better. Might be worth a look
Fastmail has a great interface and user experience imo, significantly better than any other web client I've tried. That said, they're not end-to-end encrypted, so they're not really trying to fill the same niche as Proton/Tuta.
From their website:
Fastmail customers looking for end-to-end encryption can use PGP or s/mime in many popular 3rd party apps. We don’t offer end-to-end encryption in our own apps, as we don’t believe it provides a meaningful increase in security for most users...
If you don’t trust the server, you can’t trust it to load uncompromised code, so you should be using a third party app to do end-to-end encryption, which we fully support. And if you really need end-to-end encryption, we highly recommend you don’t use email at all and use Signal, which was designed for this kind of use case.
I honestly don't know enough to separate the wheat from the chaff here (I can barely write functional python scripts lol - so please chime in if I'm completely off base), but this comes across to me as an understandable (and fairly honest) compromise, that is probably adequate for some threat models?
Last time I used Tuta the user experience was pretty clunky, but afaik it is E2EE, so it's probably a better direct alternative to Proton.
re fastmail, david mentioned a thing I wasn't aware of so they're off the list now, more or less just going to forget they exist except as a counter-recommendation
this comes across to me as an understandable (and fairly honest) compromise, that is probably adequate for some threat models?
they're sorta saying "yeah just use external GPG like before"
albeit I will say their reasoning is a bit fucked in the head imo: that "if you can't trust the server" shit applies equally for whether it's serving you up the page elements to do message cryptography, or whether it's serving you up a normal webmail client. I think I know/understand where they meant to go with it, but the wording they picked is quite shit
I set up a tuta domain for a thing about a month ago. it could've been a bit smoother (esp. domain/dns state checks) but I didn't find anything immediately jarringly bad - and I was even drunk at the time (which means my diy-able supergrump comes out about this sort of shit). will see how it goes over some longer use :)
Jesus fucking christ...
So where do I switch now? Is this the moment I build my own email server and handle this shit myself? I really don't wanna...
Setting up an email server is really straightforward with simple-nixos-mailserver, highly recommend. No idea how likely you are to be classified as spam though from a new domain
i host my mail services for the last twenty seven years, and yeah, you're talking shit. starting the smtp daemon is not the same as managing mail server.
eh, nix is experiencing a chudpocalypse at the moment, which might be why you're catching strays
Who is the target audience for this?
People who use Proton are privacy-conscious and mostly (I would argue) tech literate, and yet they shove spicy autocomplete that no one ever needed until two years ago and most people don’t want now because it produces complete horseshit, and spellchecking that every browser under then sun has built in by now.
And then they quietly say you need to use Chromium, so the people who use anything but (like, I don’t know, the majority of privacy-conscious folks who should be their main user base, lol) have their e2e broken?
I really hope they catch a raging firestorm for this.
(Also I’m really pissed right now because used to recommend them to people and now feel like a total jackass for doing that.)
(Also I’m really pissed right now because used to recommend them to people and now feel like a total jackass for doing that.)
don’t feel bad for making the best choice you could with the information of the past. until we get a workable, interoperable, federated, encrypted communication/online services platform, the choice was to recommend one of the centralized e2e providers. we both chose to recommend Proton and they did this shit, but it could have just as easily been tutanota.
now my brain’s going “e2e encrypted federated email but it preferably uses activitypub as a transport and classic email as a fallback, is that anything”
yep! that’s the game they’re playing. I really don’t give a fuck about Proton’s relatively tiny number of enterprise whales, but they make Proton a shitload of money in the short term.
the depressing part is, historically, online services that remain uncompromisingly user-focused tend to stick around roughly forever, while the ones that chase short-term gains and compromise everything else almost always enshittify and fizzle out pretty quick.
I’ve posted at Proton on Mastodon about this with some details on why it’s real bad; no reply yet
I linked to your masto post on twitter https://x.com/fasterandworse/status/1813994815991980204