TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

AI Hallucinations Are Fueling a New Class of Supply Chain Attacks

31 点作者 sksxihve大约 1 个月前

2 条评论

pera大约 1 个月前
I was talking about this issue with a friend a while ago: If an LLM often hallucinates the same package name for a common problem you could copy an existing library, adapt the API to fit the hallucination, use the same hallucinated name and finally include a backdoor.
jruohonen大约 1 个月前
"They found that 8.7% of hallucinated Python packages were actually valid npm (JavaScript) packages"
评论 #43665157 未加载