Posted by zdw 4 hours ago
> offers easy access to the LLM’s weights
not really. the weights are encrypted in-memory. through the use of TEE's.Or maybe the author means that a prompt could potentially mess up the inference. But I find it hard to see how that could take control over the host.
I don't think it's any more probable than other AGI nonsense basilisks included, but it's technically a possibility.