<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<div class="moz-cite-prefix">Ahh.... invasive spambots, running on
OpenStack ... "the telephone bell is tolling... "<br>
<br>
Miles<br>
<br>
<a class="moz-txt-link-abbreviated" href="mailto:adamv0025@netconsultings.com">adamv0025@netconsultings.com</a> wrote:<br>
</div>
<blockquote type="cite"
cite="mid:0a3d01d6cf0b$e8603f60$b920be20$@netconsultings.com">
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<meta name="Generator" content="Microsoft Word 15 (filtered
medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
{font-family:Consolas;
panose-1:2 11 6 9 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
pre
{mso-style-priority:99;
mso-style-link:"HTML Preformatted Char";
margin:0in;
margin-bottom:.0001pt;
font-size:10.0pt;
font-family:"Courier New";
color:black;}
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph
{mso-style-priority:34;
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;}
p.msonormal0, li.msonormal0, div.msonormal0
{mso-style-name:msonormal;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;}
span.HTMLPreformattedChar
{mso-style-name:"HTML Preformatted Char";
mso-style-priority:99;
mso-style-link:"HTML Preformatted";
font-family:Consolas;
color:black;}
span.EmailStyle20
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle21
{mso-style-type:personal-reply;
font-family:"Calibri",sans-serif;
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
<div class="WordSection1">
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">> </span>Automated
resource discovery + automated resource allocation = recipe
for disaster<o:p></o:p></p>
<p class="MsoNormal">That is literally how OpenStack works. <o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">For now, don’t worry about AI taking away
your freedom on its own, rather worry about how people using
it might…<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">adam<span
style="color:windowtext;mso-fareast-language:EN-US"><o:p></o:p></span></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US"><o:p> </o:p></span></p>
<div style="border:none;border-left:solid blue 1.5pt;padding:0in
0in 0in 4.0pt">
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0in 0in 0in">
<p class="MsoNormal"><b><span style="color:windowtext"
lang="EN-US">From:</span></b><span
style="color:windowtext" lang="EN-US"> NANOG
<a class="moz-txt-link-rfc2396E" href="mailto:nanog-bounces+adamv0025=netconsultings.com@nanog.org"><nanog-bounces+adamv0025=netconsultings.com@nanog.org></a>
<b>On Behalf Of </b>Miles Fidelman<br>
<b>Sent:</b> Thursday, December 10, 2020 2:44 PM<br>
<b>To:</b> 'NANOG' <a class="moz-txt-link-rfc2396E" href="mailto:nanog@nanog.org"><nanog@nanog.org></a><br>
<b>Subject:</b> Re: The Real AI Threat?<o:p></o:p></span></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<div>
<p class="MsoNormal"><a
href="mailto:adamv0025@netconsultings.com"
moz-do-not-send="true">adamv0025@netconsultings.com</a>
wrote:<o:p></o:p></p>
</div>
<blockquote style="margin-top:5.0pt;margin-bottom:5.0pt">
<pre>> Put them together, and the nightmare scenario is:<o:p></o:p></pre>
<pre>> - machine learning algorithm detects need for more resources<o:p></o:p></pre>
<pre><span style="font-size:11.0pt;font-family:"Calibri",sans-serif">All good so far</span><o:p></o:p></pre>
<pre> <o:p></o:p></pre>
<pre>> - machine learning algorithm makes use of vulnerability analysis library <o:p></o:p></pre>
<pre>> to find other systems with resources to spare, and starts attaching<o:p></o:p></pre>
<pre>> those resources<o:p></o:p></pre>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">Right
so a company would built, trained and fine-tuned an AI,
or would have bought such a product and implemented it
as part of its NMS/DDoS mitigation suite, to do the
above? </span><o:p></o:p></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">What
is the probability of anyone thinking that to be a good
idea?</span><o:p></o:p></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">To
me that does sound like an AI based virus rather than a
tool one would want to develop or buy from a third party
and then integrate into the day to day operations.</span><o:p></o:p></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">You
can’t take for instance alpha-0 or GPT-3 and make it do
the above. You’d have to train it to do so over millions
of examples and trials. </span><o:p></o:p></p>
<p class="MsoNormal"><span
style="color:windowtext;mso-fareast-language:EN-US">Oh
and also these won’t “wake up” one day and “think” to
themselves oh I’m fed up with Atari games I’m going to
learn myself some chess and then do some reading on wiki
about the chess rules. </span><o:p></o:p></p>
</blockquote>
<p class="MsoNormal"><br>
Jeez... some guys seem to take a joke literally - while
ignoring a real and present danger - which was the point.<br>
<br>
Meanwhile, yes, I think that a poorly ENGINEERED DDoS
mitigation suite might well have failure modes that just
keep eating up resources until systems start crashing all
over the place. Heck, spinning off processes until all
available resources have been exhausted has been a failure
mode of systems for years. Automated resource discovery +
automated resource allocation = recipe for disaster. (No
need for AIs eating the world.)<br>
<br>
Miles<br>
<br>
<br>
<br>
<br>
<br>
<o:p></o:p></p>
<pre>-- <o:p></o:p></pre>
<pre>In theory, there is no difference between theory and practice.<o:p></o:p></pre>
<pre>In practice, there is. .... Yogi Berra<o:p></o:p></pre>
<pre><o:p> </o:p></pre>
<pre>Theory is when you know everything but nothing works. <o:p></o:p></pre>
<pre>Practice is when everything works but no one knows why. <o:p></o:p></pre>
<pre>In our lab, theory and practice are combined: <o:p></o:p></pre>
<pre>nothing works and no one knows why. ... unknown<o:p></o:p></pre>
</div>
</div>
</blockquote>
<br>
<br>
<pre class="moz-signature" cols="72">--
In theory, there is no difference between theory and practice.
In practice, there is. .... Yogi Berra
Theory is when you know everything but nothing works.
Practice is when everything works but no one knows why.
In our lab, theory and practice are combined:
nothing works and no one knows why. ... unknown</pre>
</body>
</html>