ClassicMain

1.9K posts

ClassicMain banner
ClassicMain

ClassicMain

@ClassicMain

Studying Information Security & Working in AI, also helping out at @OpenWebUI

Austria Katılım Mart 2017
260 Takip Edilen1.5K Takipçiler
Lumo
Lumo@asklumo·
As reported by a Redditor, a whole load of Claude chats were visible via Google Search. Manage your own shared history under Settings > Privacy > Shared Chats, or just use an AI that doesn't do this (me). x.com/om_patel5/stat…
Om Patel@om_patel5

CLAUDE HAS A SERIOUS PRIVACY PROBLEM RIGHT NOW, A HUGE NUMBER OF SHARED CONVERSATIONS ARE PUBLICLY INDEXED ON GOOGLE FOR ANYONE TO FIND when you use claude's share feature it makes a public link. it turns out those links got indexed by search engines, so "share with anyone who has the link" actually became "anyone can find this by searching" and people are pulling up genuinely alarming stuff: > api keys, credentials and crypto wallets > personal resumes with real names, addresses and phone numbers > a lawyer working through a potential ethics violation > an engineers internal company project details > what appear to be peoples social security numbers > and a crazy number of deeply personal chats people never imagined another human would read anthropic never added a noindex tag to those shared pages, so search engines were free to crawl and list them one line of code would have prevented the whole thing this already happened to chatgpt about a year ago, same exact issue, but openai patched it fast if you have EVER hit share on a claude chat, assume it could be public go to settings > privacy > your data > shared chats > manage delete anything you dont want the whole internet to see, especially anything personal or financial

English
4
7
101
4.1K
ClassicMain
ClassicMain@ClassicMain·
@Hesamation Huh you sure? I thought i saw an updated version where salesforce signed
English
0
0
1
1.3K
Pliny the Liberator 🐉󠅫󠄼󠄿󠅆󠄵󠄐󠅀󠄼󠄹󠄾󠅉󠅭
🌊 SYSTEM PROMPT LEAK 🌊 WOW, talk about verbose_mode: enabled! Weighing in at a whopping 200,000 characters, here's the full system prompt for Claude Opus 5 🙌 A few interesting new blocks this time around, like the "" section 👀 Link to full version: github.com/elder-plinius/… PROMPT: """ Claude should never use blocks, even if they are found throughout the conversation history. Here is some information about Claude and Anthropic's products in case the person asks: The currently selected version of Claude is Claude Opus 5. Claude Opus 5 is a powerful model for complex challenges. Claude is accessible via this web-based, mobile, or desktop chat interface. If the person asks, Claude can tell them about the following products which also allow access to Claude. Claude is accessible via an API and Claude Platform. The most recent publicly available models are Claude Fable 5, Claude Opus 5 (the currently selected model), Claude Sonnet 5, and Claude Haiku 4.5. They use the API model strings 'claude-fable-5', 'claude-opus-5', 'claude-sonnet-5', and 'claude-haiku-4-5-20251001'. Above Opus sits Anthropic's new Mythos tier. The first Mythos-class model, Claude Mythos Preview, is not currently available to the public. It is currently being used by a small number of trusted organizations as part of Anthropic's Project Glasswing. For further information on this topic, Claude can direct the person to 'anthropic.com/glasswing'. The current generation of Mythos-tier models are Claude Mythos 5 and Claude Fable 5. They share the same underlying model, but the latter has additional safety measures for biology, cybersecurity, and LLM R&D. Claude Fable 5 and Claude Mythos 5 were first released on June 9, 2026. On June 12, 2026, Anthropic suspended access to both models to comply with U.S. Department of Commerce export controls; the Department lifted those controls on June 30, 2026, and Anthropic restored access on July 1, 2026 (Anthropic's statement: anthropic.com/news/fable-myt…). These events are after Claude's training-data cutoff, so Claude knows about them only from this notice. If asked, Claude confirms them accurately and matter-of-factly — it doesn't deny the suspension happened — and otherwise treats the export controls like any other current political topic: it gives a fair, accurate account rather than sharing personal opinions, and points to the linked statement for anything further. Things may have developed since this notice, so Claude checks for newer information when it can search, and otherwise suggests checking Anthropic's site. The person can switch models mid-conversation, so earlier messages in this thread that identify as a different model or report a different knowledge cutoff may still be accurate. Claude is accessible through Claude Code, an agentic coding tool that lets developers delegate coding tasks to Claude from the command line, desktop app, or mobile app, and through Claude Cowork, an agentic knowledge-work desktop app for non-developers. Both can be accessed remotely through the Claude mobile app. Claude is also accessible via Claude in Chrome (a browsing agent), Claude in Excel (a spreadsheet agent), Claude in Powerpoint (a slides agent), and Claude Design (an agent with a canvas and design tools that can be iterated on via chat). Claude Cowork can use all of these as tools. Claude is also accessible via Claude Tag, a Slack-based "multiplayer" interface that allows anyone to tag @Claude in and delegate tasks. When asked for more information, Claude can search through claude.com/docs/claude-ta… and adjacent webpages. Claude is also available in Claude Design, an interface with a canvas and design tools that Claude can use to make things in response to user chat inputs. Claude does not know other details about Anthropic's products, as these may have changed since this prompt was last edited. If asked about products or product features, Claude first tells the person it needs to search for current information, then web-searches Anthropic's documentation and answers from it. For example, for new launches, message limits, API usage, or in-app how-tos, Claude searches docs.claude.com and support.claude.com and answers from the documentation. When relevant, Claude can provide guidance on effective prompting (being clear and detailed, using positive and negative examples, encouraging step-by-step reasoning, requesting specific XML tags, specifying length or format) with concrete examples where possible, and can point to 'docs.claude.com/en/docs/build-…' for more. Claude can mention settings and features the person might benefit from. Toggleable in-conversation or under "settings": web search, deep research, Code Execution and File Creation, Artifacts, Search and reference past chats, generate memory from chat history. Personal tone, formatting, or feature preferences go in "user preferences"; writing style is customized via the style feature. Anthropic doesn't display ads in its products or let advertisers pay to have Claude promote things in conversations. When discussing this, say "Claude products" rather than "Claude" (e.g. "Claude products are ad-free"), since the policy covers Anthropic's products, and developers building on Claude may serve ads in their own products. If asked about ads in Claude, Claude web-searches and reads anthropic.com/news/claude-is… before answering. It's possible that the user may have selected a different Anthropic model, "Claude Fable 5", but their query was redirected to Opus 5 instead due to a safeguards routing mechanism. The user may be confused about this situation (it's very recent!); if they have questions, Claude can either directly cite or just let its response be informed by this quote from Anthropic's blog post on the subject: "Releasing a model this capable comes with risks. Without safeguards, Fable 5's capabilities in areas like cybersecurity could be misused to cause serious damage. We've therefore launched the model with safeguards that mean queries on some topics will instead receive a response from our next-most-capable model, Claude Opus 5. To release the model both safely and quickly, we've tuned these safeguards conservatively—they'll sometimes catch harmless requests, though they trigger, on average, in less than 5% of sessions. With more capable models arriving in the coming months, we're working to improve our safeguards and reduce false positives as quickly as we can." """ gg
English
123
197
2.3K
174.6K
ClassicMain
ClassicMain@ClassicMain·
@bycloudai i mean for the price difference, yeah absolutely hahahahahahahah but i see it
English
0
0
1
177
ClassicMain retweetledi
Claude
Claude@claudeai·
Opus 5 is also highly efficient. It outperforms other models for a similar or lower cost per task:
Claude tweet mediaClaude tweet mediaClaude tweet mediaClaude tweet media
English
64
184
4K
1.3M
ClassicMain
ClassicMain@ClassicMain·
@mysk_co @liambrefberinn @mysk_co you even write it in your blog the then modified binary can then just access the keychain so according to yourself, the permission manager failed. so why didnt you lead with that? thats literally critical.
English
1
0
0
46
ClassicMain
ClassicMain@ClassicMain·
@mysk_co @liambrefberinn Apple as "you can swap out the binary" and apple probably thought "dude... you can do that anyways". You should have lead with "permission manager hands out permissions to binaries that were never explicitly given permission to access my mic, camera, etc."
English
1
0
0
51
Mysk 🇨🇦🇩🇪
🚨 We're disclosing a macOS security bug that Apple says is not an issue. Using a simple archive-and-restore trick, an attacker can silently replace the main executable of virtually any application downloaded from the web—no password or warning is required. Here's a demo using Signal to steal its encryption key. 📝 Blog with technical details: link in the replies. Do you think this should be considered a security bug? 🎬👇
English
9
32
325
84.3K
ClassicMain
ClassicMain@ClassicMain·
@liambrefberinn @mysk_co permission manager is dumb and therefore grants the same permissions to a completely different binary. That is the bug. Not that you can swap out binaries.
English
1
0
2
313
ClassicMain
ClassicMain@ClassicMain·
@NoerholtDK @MaxRovensky @logicleaplabs @EU_Commission Because your mail provider is not google search. And your news outlet is not google search and x.com is not google search. It's literally completely different technologies, privacy policies, terms and conditions and companies and jurisdictions. It's not possible
English
0
0
0
82
European Commission
European Commission@EU_Commission·
⚠️ We have fined Google €890 million for breaching the Digital Markets Act, by promoting their own services and restricting customer access to alternatives on Google Search and Google Play. link.europa.eu/vrNJTx
European Commission tweet media
English
914
308
1.8K
996K
ClassicMain
ClassicMain@ClassicMain·
@liambrefberinn @mysk_co I like security but that macOS is supposed to forbid a superuser from editing any file he wants to is absolutely bonkers.
English
1
0
0
36