Hacker News new | past | comments | ask | show | jobs | submit login

Maybe because they are optimizing for response time, and the response is streamed back to the user. The backend isn't fully aware of the response until its too late. Still, you would think that they could run through the prefix and then redact text. I think Bing chat does this for a number of things.



It's like the era of SQL injection or input validation all over again


Except subtly different - because there are known, 100% effective fixes for SQL injection.


True




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: