This is the most objective description of LLMs (AI). I'll add that It IS fun to play with, but just play (don't steal!). It's not a business model (many reasons), it destroys insensitive to add any creative pieces to WWW, and it gives an excuse to not smart heads to fire people.
@john_zic@TonyNashNerd Always considered it decent at search. It’s not really a business though because it costs too much and kills incentives to create web content to index.
Don’t get me wrong it’s a dead idea. But if you ignore money and society, it’s neat.
@Holmyverse I doubt they actually believe it. But politicians and very rich didn't get there by being sincere or against ANYTHING just to make a buck. Still, a very sad life (that's being forced on us as well).
@tmaxftw@kimchipump What if we are talking about digital property? With the rise of AI, digital property went from its previous value to 0. How is this NOT the society collapse? People can't make money off of their property, while ai assisted widespread theft makes money off of these ppl property!
See the latest from the Institute on Taxation and Economic Policy:
At least 88 of the largest corporations in America paid $0 in federal income tax for 2025.
https://t.co/T3qIERMmg3
if your data is stored in a database that a company can freely read and access (i.e. not end-to-end encrypted), the company will eventually update their ToS so they can use your data for AI training — the incentives are too strong to resist
According to research published in PNAS Nexus, popular language models produce highly similar creative concepts. This suggests that heavily relying on artificial intelligence for brainstorming tends to lead to a massive loss of unique human thought. https://t.co/IUrY9kQGHm
To check if your Google Workspace has been compromised by the same tool that compromised Vercel:
1. Go to https://t.co/TpuIOW5Fwg
- This is Google Admin Console > Security > Access and Data Control > API Controls > Manage app access > Accessed Apps
2. Filter by ID = https://t.co/uqJnCqp5Ah
- This is the ID of the compromised OAuth app
If you see an app after filtering, you have potentially been compromised
The Vercel breach proves it: AI agents are the biggest security liability of 2026.
We are giving "experimental" AI startups full read/write access to our Google Workspaces just to save 10 minutes of manual work.
Hackers aren't breaking into your servers anymore; they’re just waiting for you to authorize a "cool new AI tool." 🚩
Here's my update to the broader community about the ongoing incident investigation. I want to give you the rundown of the situation directly.
A Vercel employee got compromised via the breach of an AI platform customer called https://t.co/7PY6gGtzgI that he was using. The details are being fully investigated.
Through a series of maneuvers that escalated from our colleague’s compromised Vercel Google Workspace account, the attacker got further access to Vercel environments.
Vercel stores all customer environment variables fully encrypted at rest. We have numerous defense-in-depth mechanisms to protect core systems and customer data. We do have a capability however to designate environment variables as “non-sensitive”. Unfortunately, the attacker got further access through their enumeration.
We believe the attacking group to be highly sophisticated and, I strongly suspect, significantly accelerated by AI. They moved with surprising velocity and in-depth understanding of Vercel.
At the moment, we believe the number of customers with security impact to be quite limited. We’ve reached out with utmost priority to the ones we have concerns about. All of our focus right now is on investigation, communication to customers, enhancement of security measures, and sanitization of our environments. We’ve deployed extensive protection measures and monitoring. We’ve analyzed our supply chain, ensuring Next.js, Turbopack, and our many open source projects remain safe for our community.
The recommendation for all Vercel customers is to follow the Security Bulletin closely (https://t.co/BLVnic9fJC). My advice to everyone is to follow the best practices of security response: secret rotation, monitoring access to your Vercel environments and linked services, and ensuring the proper use of the sensitive env variables feature.
In response to this, and to aid in the improvement of all of our customers’ security postures, we’ve already rolled out new capabilities in the dashboard, including an overview page of environment variables, and a better user interface for sensitive env var creation and management. As always, I’m totally open to your feedback.
We’re working with elite cybersecurity firms, industry peers, and law enforcement. We’ve reached out to Context to assist in understanding the full scale of the incident, in an effort to protect other organizations and the broader internet. I also want to thank the Google Mandiant team for their active engagement and assistance.
It’s my mission to turn this attack into the most formidable security response imaginable. It’s always been a top priority for me. Vercel employs some of the most dedicated security researchers and security-minded engineers in the world. I commit to keeping you updated and rolling out extensive improvements and defenses so you, our customers and community, can have the peace of mind that Vercel always has your back.
Not only Generative AI destroys origal creators and lets grifters take over their work, but it also destroys most apps security and privacy when apps use vibe coding for those functions, instead of good quality old school coding and protection. Disgusting and worrisome.
it gets worse. every conversation you have with lovable's AI is stored and readable through the same bug.
i read the full chat history of a project built for a real danish nonprofit. the developer discussed database schemas with the AI. tables with email, first_name, last_name, date_of_birth, company, job_title, linkedin_url, stripe_customer_id. the AI generated SQL migrations. supabase credentials appeared in the conversation. all of it is readable by any free account.
people tell the AI what they want to build. they paste error logs. they discuss their business logic. they share credentials. lovable stores all of it and exposes all of it.
Lovable has a mass data breach affecting every project created before november 2025.
I made a lovable account today and was able to access another users source code, database credentials, AI chat histories, and customer data are all readable by any free account.
nvidia, microsoft, uber, and spotify employees all have accounts. the bug was reported 48 days ago. its not fixed. They marked it as duplicate and left it open.
@Variety I guess she didn't learn that well. After playing with it extensively (and becoming quite an expert), by 2023, I realized how generic and low-quality it is. Probability machines they are, they can't create anything new and just recite the content they stole from the web. No Ty.