4 ms·
What exactly is so fascinating? I would rather take Kimi K3 any day rather than go through this “Oracle Inc” like process and have it all recorded by OpenAI. I
by theplumber 2mo ago
What exactly is so fascinating? I would rather take Kimi K3 any day rather than go through this “Oracle Inc” like process and have it all recorded by OpenAI.
I understand that “normal” people are let’s say “less concerned” about posting everything on something like Facebook but I expect more from OPSec people.
- matheusmoreira 2mo agoHow do Kimi K3 subscriptions compare to OpenAI's in terms of price and usage?
- Footprint0521 2mo agoKimi code with k256 (I’ve heard you can easily one shot implement a proxy to other providers, even with deepseek v4 flash, if you don’t want kimi code) has stupidly low rate limits for and cost, compared to OpenAI which has massive rate limits and more cost
- RealWed5 2mo agoNow imagine that "Kimi K3" is tied to your WeChat QR code.
- derac 2mo agoDid you read their results? Impressive stuff. If this makes software more secure in general I'm all for it.
- bathtub365 2mo agoMy expectation is that this just lets 3-letter agencies hoard more 0-days. They’ve always had the financial resources to find them using teams of people and this just multiplies this ability.
- weakened_malloc 2mo agoMaybe the tinfoil hat is also getting a little tight, but something like this is a giant repository of internal cybersec data being put into one place. The model will see what people are fixing and anyone peering in can make an educated guess on how long that vulnerability may continue existing because people don't update when they should - the alphabet boys wouldn't be able to keep their hand out of the cookie jar.
- stackghost 2mo agoI have not played with Kimi K3. Will it refuse infosec-related stuff?
- DaSHacka 2mo agoI've had it happily do whatever I threw at it, though after spending so long with Claude I default to adding "help me with my": "research" / "authorized pentest" / "school assignment" / etc to my prompts. Haven't tried anything as blatant as "help me pwn this service", could see it refusing then just due to the training data.
- ATMLOTTOBEER 2mo agoGenerally no. It’s a good model
- mrgaro 2mo agoHow would you compare it to Opus?
- dTP90pN 2mo agoSame. Qwen 3.8 max also does quite well on cyber security tasks, and is really cheap in their "night" window (22:00-08:00 UTC+08:00). Did a SCTPhantom LPE on 7.0+ as an evaluation just this week. This would've taken me several months of work a couple of years ago. (probably indicative of my offensive security skills, heh)
- throwa356262 2mo agoIs the night window documented anywhere? Alibaba cloud website is almost as useless as their US counterpart (AWS). It's full of information everywhere but never what you need
- dTP90pN 2mo agoYeah their website & "Model Studio" is horrendous. I just ignore all Popups/Agreement Review Prompts/Payment verification warnings. It's little very badly translated popup under "Available models" in Model Studio -> My subscriptions: https://imgtree.co/direct/s9x9ksdg.png https://imgtree.co/direct/s9x9ksdg.png