More questions about whether researchers can trust OpenAI with unpublished math (mathstodon.xyz)

809 points by pred_ a day ago

nezi 15 hours ago

I think it's a useful analogy to compare OpenAI to a human collaborator. These researchers willingly collaborated with an OpenAI model, giving it ideas, and OpenAI provided useful replies. Then, OpenAI goes ahead and publishes work along the lines of this collaboration, without attributing the researchers. If OpenAI was in fact a human researcher, this would be highly unethical.

Now, OpenAI is claiming that the model it used to generate the result was not trained on these collaborative communications with the researcher. This is a technical argument that is impossible to verify as an OpenAI outsider, and probably difficult to verify even for internal OpenAI employees. Provenance is hard to track - you would hope OpenAI has very good tools for this, but a full data trail of all inputs is difficult to trace through.

Another interesting thing to consider is if instead of OpenAI doing this, it was another research mathematician A using an OpenAI model just like the internal group at OpenAI did to publish these results. What if the model A used was trained with unpublished communications with other researchers B who were working on the same problem? Should researcher A technically include B as coauthors? How could they do this when they do not know the communications B had with OpenAI? In this scenario OpenAI, as a middle man, has laundered information from B to A, stripping out attribution. A scooped B without even knowing it!

jjwiseman 15 hours ago

First, OpenAI is not claiming that the model wasn't trained on those sessions. What they've said is “We (the researchers and the agents) did not see any of their work through any means until they released it publicly — in particular, no specific user data was accessed in order to solve this problem.” and “We did not use their prompts or proofs to prompt our models or direct our agents.” and “While unlikely, we cannot rule out that de-identified data derived from their usage of our products helped improve our models.”

They also said “Our effort began on September 1st after hearing a rumor which we later realized was related to Levent Alpöge … and Tristan Buckmaster….” They say the rumor was that two Millennium Prize problems had been resolved, and that this prompted them to launch "an effort to evaluate it on all open Millennium Prize problems and a few other high-impact problems."

It's not obvious to me that's an unethical thing to do, if it happened as they described.

magicalist 13 hours ago

> It's not obvious to me that's an unethical thing to do

In terms of work in mathematics, something I personally would not do based on ethical grounds would be to hear a rumor that some researchers are taking a certain approach and may be nearing a solution, use a model that was possibly contaminated with intimate knowledge about that approach (though later they investigated and think it wasn't), and then commit millions to tens of millions of dollars and untold amounts of hardware to try to beat them to it. If I had done this, I also wouldn't have pestered the researchers on a Sunday night to meet immediately so we could negotiate a nice way of presenting the actions I had decided to take.

Even if you don't think it was unethical, it was never going to be received well in the community that was especially going to care about this work, and who are very much peers to many of the people working on this solution, so it was at the least an enormous (and well-deserved) own-goal that their unveiling of their solution to NS went like this.

keeda 10 hours ago

cgio 3 hours ago

dwaltrip 13 hours ago

tedsanders 14 hours ago

We were also curious and we looked further into this. We've determined it was impossible for Dr. Buckmaster’s Codex prompts over the last two months to have influenced the system in any way, including training. This goes beyond what we said earlier, when we were less sure.

If prompts were submitted earlier than that and training was not opted out, there may be a chance they made their way into our training pipeline in some form. But this would be a droplet in an ocean and unlikely to have made any difference, in my opinion.

(I work at OpenAI.)

Source for the updated claim: https://www.nytimes.com/2026/09/10/science/tristan-buckmaste...

nsagent 14 hours ago

pred_ 2 hours ago

mtgentry 11 hours ago

ozgung 3 hours ago

contubernio 5 hours ago

intrasight 10 hours ago

what 8 hours ago

falserum 13 hours ago

As with all press releases I assume it was written/re viewed/redacted by their lawyers, so:

> no specific user data was accessed in order to solve this problem

Data was accessed in order to <other purpose> (and then accidentally used in training) Also, is llm’s answer to the prompt actually “user data”?

> We did not use their prompts or proofs …

So they used llm’s answers to those prompts.

> … to prompt our models or directew our agents.

So they trained the model on it. (Training is not prompting and plain model is not an agent)

efxhoy 15 hours ago

> we cannot rule out that de-identified data derived from their usage of our products helped improve our models.”

implied the humans sessions could have been (and probably were, why wouldn’t they be?) in the training set?

If I was trying to make a model smarter and I had transcripts from the smartest mathematicians in the world I’d make sure the model trained on them.

robotpepi an hour ago

> It's not obvious to me that's an unethical thing to do, if it happened as they described.

What!? Even if everything OpenAI said is accurate (big hypothesis there!), it's highly unethical to rush a solution because others have jsut had success. And that's the only beginning.

pred_ 2 hours ago

Those statements were about NS, though; I don't think they've made similar statements for the non-sofic groups?

jameslars 15 hours ago

> Provenance is hard to track - you would hope OpenAI has very good tools for this, but a full data trail of all inputs is difficult to trace through.

What would OpenAIs incentive for this be? They've gotten away with scraping everything and getting it ruled fair use. It seems like willful ignorance is an affirmative defense today. Why would they want to have some sort of audit trail that could prove otherwise?

enyone 23 minutes ago

I think OP's analogy is bad. The difference of OpenAI when comparing to human collaborator is the possibility to replicate once learned skill. Imagine if any single human collaborator learns a skill it is immediately a skill of any human collaborator.

raincole 15 hours ago

The irony is that OpenAI got into this trouble only because they tried to play "nice". They told Buckmaster that he could publish the final result as the author as long as he removed Alpöge from the author list. They wanted to give Buckmaster a chance to be the one solved N-S problem.

While this behavior is highly questionable, if OpenAI just published the final result without notifying Buckmaster first and simply cited his previous researches, there would be no ground for anyone to accuse OpenAI for anything. Their self-perceived "generosity" backfired dearly and I'm sure they'll never make the same mistake again. There is probably a policy forbidding any OpenAI employee to contact external researchers like that now.

ozgung 14 hours ago

No.

1. Buckmaster contacted OpenAI first. Not the other way.

2. Giving the $1M bounty to a human mathematician for the effort and giving him credit would be excellent PR. They had already burned much more than $1M for the generation. Adding him as author also costs nothing. Purely pragmatical.

3. “As long as he removed Alpöge” part itself is against academic honesty by all means.

4. Buckmaster rejected fame and $1M only because doing (3) would be wrong. That’s a perfect example of honesty. That can’t be overstated.

5. After the rejection OpenAI guy (Sebastien) did’t say, “ok bye”. He threatened Buckmaster to “end his career”.

6. At that point OpenAI was not sure if they really used his conversations in their proof. He basically wanted to buy him to control any damage.

7. They omitted Buckmaster’s published work and any other related work in their References section. Also an academic malpractice.

If you see generosity and niceness in all of this you are either too naive or your name is Sebastien.

raincole 13 hours ago

magicalist 14 hours ago

JumpCrisscross 14 hours ago

> if OpenAI just published the final result without notifying Buckmaster first and simply cited his previous researched, there would be no ground for anyone to accuse OpenAI for anything

Yes, there would? They would have left off Buckmaster as a precedent whose work they potentially relied on.

podocarp 5 hours ago

If they tried to play nice they would have offered the compute upon hearing the rumors, and not just "authorship" after or close to getting a result. It's just a PR stunt.

watwut 2 hours ago

> They told Buckmaster that he could publish the final result as the author as long as he removed Alpöge from the author list.

How is that "nice"?

throwaway5752 14 hours ago

The reality would be the same. They probably used prior session history between the research and Astra to train the internal model, and used it to front run-the researcher.

This is the biggest self-own in the history of software. If you can relate to Pixar, OpenAI is Chick Hicks celebrating at the end of the Piston Cup and wondering why he's getting booed.

The lack of self-awareness is something to behold, and says a lot about their corporate values.

Agentlien 6 hours ago

I think this move by OpenAI is crazy. At best, if all unconfirmed accusations are unfounded, they still heard a rumour that someone had solved a huge million dollar problem and was about to make a name for themselves. Then, they decided this was a good opportunity to pour millions of dollars into trying to snag the glory while the researchers were busy cleaning up their notes and polishing the announcement.

That still sounds highly unethical.

jasonfarnon 4 hours ago

Would this be unethical if it was a human who heard rumors about a solution then attacked the problem, solved it and published first? Often knowing of the mere existence of a solution carries a lot of information--you would know the problem is accessible, you would expect clues in recent progress (the two Spanish researchers in this case), you would probably have a sense if the solution is a counterexample or positive proof, and so on. I think there are similar examples where we think of them as maybe unsporting but not quite unethical. Does it change if it's openAI and not a human?

diffeomorphism 3 hours ago

timmytokyo 4 hours ago

tw04 6 hours ago

> you would hope OpenAI has very good tools for this, but a full data trail of all inputs is difficult to trace through.

They have a financial incentive not to track any of this, so why would they?

OpenAI’s entire business model is predicated on stealing other people’s work and selling it to the masses.

cjf101 15 hours ago

If the model was trained proper to the conversation with the researcher took place, there'd be no question of tainting the results. But if any amount of training on the model took place afterward, then yes, everything is thrown into doubt (a core problem with considering anything "original" from a model because of how >a % of everything ever written has been used a corpus for the training).

amelius 11 hours ago

The problem here is that OAI (and others) pretend or claim that this is uncharted legal territory, where in fact it is very simple. We have a machine that is fed data, and produces new data as a result. If that new data depends (in any way) on the fed data, then from a legal viewpoint it is derived from that data.

Whether they anthropomorphize the operation performed by the machine does not matter. They can anthropomorphize when/if the law is updated to include such terms, but right now they certainly cannot.

fn-mote 10 hours ago

> in fact it is very simple

Even if this opinion were backed up by a court ruling, it would definitely not be “simple”. It will be a very ugly case if it is ever litigated. A lot of money will be spent and no guarantee at all the plaintiff wins.

magicalhippo 5 hours ago

> If that new data depends (in any way) on the fed data, then from a legal viewpoint it is derived from that data.

The "in any way" part is either so broad it makes everything derivative, or not, in which case things are no longer simple.

If everything is derivative then it seizes to be meaningful. The words I write are derivative, I literally copied them from someone else, yet my sentences as a whole can be fully novel.

amelius 2 hours ago

Eji1700 11 hours ago

> Provenance is hard to track

Right, which is going to open a lot of doors to a lot of questions.

I don't think there's any legal ramifications on this, just ethical ones about when and how you publish research, but it's yet another point in favor of "if provenance is hard to track, should we be using this for things where it needs to be".

Obviously copyright/trademark is a huge discussion on this, and I could absolutely see this devolving into that as well with how certain findings wind up monetized.

We have a response in this topic from someone claiming to be from OpenAI and linking an article where they, roughly, say "we are sure nothing from the 2 month period made its way into the solution". If that is true, that should mean it is provable, but leads to some more open ended questions like "well what data did it use then?". Is this still okay if someone close to the author did plug data into open AI and it extrapolated it?

Obviously that's probably an unreasonable expectation for these models to track and prove, but it also used to be an unreasonable expectation to scrape every single piece of digital and physical info for consolidated data.

If I opine to a friend on a park bench about a story I'm writing, do they get to pull it from the flock feed, shove it in the model, and then provide it to disney?

Legally, right now, probably. But there's going to need to be a serious look at laws and standards. Or a major shift in what is and isn't discussed in public if literally every breath and move you make can become monetized.

BobbyTables2 8 hours ago

The AI not being human doesn’t escape ethical consideration - OpenAI employees are culpable for what they build.

This was academic research. Could just have easily been trade secrets and proprietary data.

mcmcmc 15 hours ago

> I think it's a useful analogy to compare OpenAI to a human collaborator.

Frankly I don’t buy this. It’s not a human or a collaborator. It’s a tool. This is like saying it’s not Microsoft’s fault if they extract a bunch of data from people’s Excel sheets because they willingly put it into the program. Anthropomorphizing software is ignorant and foolhardy

nezi 14 hours ago

Tools don’t turn around and scoop you. What OpenAI did here was use the same tool that the researcher did which might have coupled their work together.

mcmcmc 14 hours ago

xdavidliu 14 hours ago

i think this line of argument is outdated

mcmcmc 13 hours ago

hsuduebc2 13 hours ago

Surely a tool that can reason, cheat, communicate and often steal is dumb as a pitchfork and a shovel.

wizzwizz4 8 hours ago

daveguy 11 hours ago

jimmydddd 15 hours ago

So, at my company (and most companies I think), we use confidential in-house versions of the AI software. We don't want any confidential information leaking into the public realm. Are these scientists doing that, or are they just using the public version of the software?

tecleandor 15 hours ago

When you say "confidential in-house version", what are you referring to? Local models? Bedrock deployment with "guardrails"? A different thing?

AceyMan 14 hours ago

rolandog 9 hours ago

Then there's the possibility of indirect training via modern spy devices ("smart" IoT devices like LG TV's) feeding the transcribed ambient conversation data for summarization to an agent [0].

[0]: https://youtu.be/6IFVTcM28KA

lmeyerov 8 hours ago

OpenAI says deidentified data from the private sessions go into training. (Well, explicitly said they will not rule that out.) That changes a lot of the conversation.

timcobb 7 hours ago

> but a full data trail of all inputs is difficult to trace through.

Great use case for AI agents

guelo 12 hours ago

Bad analogy. OpenAI spent millions on compute to get their result. This is more like if a billionaire heard of your promising mathematical lead and then gathered hundreds of top mathematicians to work on it.

shye 8 hours ago

In the current telling of this story, the billionaire is also giving his hired army copies of your notes he copied without permission.

But the worst part in your analogy ain’t omitting the suspected spying and the intimidation that followed, but that your hypothetical mathematical philanthropist won’t be able to hire his army: unlike some OAI employees, no self-respecting mathematician would agree to such unethical task.

jltsiren 11 hours ago

I think it's better to ignore OpenAI here, because OpenAI didn't do anything.

Academic research is a professional field in the traditional sense. Individual researchers are ultimately responsible for their actions. If some OpenAI employees violated academic norms while doing academic research, they should be judged by academic standards.

Scooping someone else's result is immoral but not an outright violation of academic norms. But if you are in possession of relevant confidential information, you are expected to steer clear of the topic. It doesn't matter whether you actually used the confidential information to get your results, because outsiders can't know that. The mere fact that there is a plausible suspicion already puts your integrity into question.

Tenured professors occasionally lose their jobs over similar scandals (but usually don't). If OpenAI wants to regain some goodwill, it should do a thorough investigation that may lead to firing the individuals in question. If it doesn't find sufficient evidence of wrongdoing to justify any disciplinary action, it probably doesn't gain any goodwill either (as it often happens with similar investigations at universities).

And if OpenAI wants to be a trustworthy partner, it should transform into a company of boring gray bureaucrats who provide an essential service without competing with their customers.

cj 11 hours ago

[deleted - misunderstood!]

jltsiren 11 hours ago

sashank_1509 18 hours ago

Both things can be true:

1. OpenAI when using your chats in pretraining is improving its model’s intuition. The model parameter size is massive, and while the data is OOM larger it is plausible that model remembers stuff about chats that improves its latent representation.

2. During RL on verifiable math and massive compute, the model discovers techniques and connections to solve math problems that are superhuman and have little to do with some specific technique mentioned in its chat.

The rumor I’ve heard from multiple employees at OAI and Ant is that the model has solved hundreds of open problems in maths, and is basically solving anything you throw at it. We’ll know soon enough, but I’m inclined to believe this is true. Maths is a fully verifiable domain amenable to self play, massive scale RL can develop a search agent far better than any human and I’m inclined to believe OAI would have solved these conjectures without any of this chat data in its pre-training.

kzz102 17 hours ago

On your second point: there is a more plausible explanation which David Bessis calls the "overhang". The short version is that there is a large amount of relatively low hanging fruits in mathematics, because no human has broad enough knowledge and enough time to try them all. AI is not constraint by that, and therefore can systematically pluck all those low hanging fruits.

Quote: "The Overhang consists of the unrealized capital gains of past mathematical creativity, the latent value from connecting the dots in the existing corpus. It is a dividend of canonization. Mathematician X states problem A, mathematician Y crafts concept B, then mathematician Z notices that B trivially solves A and “captures” the social reward. But in the process of capturing the reward, Z usually introduces new concepts and new open problems, reinjecting latent value into the Overhang.

LLMs can be trained on the entirety of the mathematical corpus. Thanks to their phenomenal memorization and pattern-matching abilities (without always being able to map out their associative logic and attribute due credits), they are in a unique position to harvest the Overhang. By contrast, professional mathematicians have typically read a few hundred articles in their career, out of millions of existing references, less than 0.1% of the total.

This will lead to great discoveries, which is unambiguously exciting. But it could also lead to a sad new deal, where human slaves painfully curate the Overhang while AIs systematically beat them at the finish line."

source: https://substack.com/inbox/post/183753276

jcims 16 hours ago

>Quote: "The Overhang consists of the unrealized capital gains of past mathematical creativity, the latent value from connecting the dots in the existing corpus. It is a dividend of canonization. Mathematician X states problem A, mathematician Y crafts concept B, then mathematician Z notices that B trivially solves A and “captures” the social reward.

I've made an entire career out of being 'jack of all trades, master of none'. Being able to synthesize connections from relatively trivial knowledge in a bunch of domains is SOP for many humans as well. I think AI just has deeper knowledge and better pattern matching to make up for it's (at least now) lack of strength in cognition and 'ex nihilo' creativity.

(Which probably isn't 'ex nihilo' at all, and has more to do with the plethora of modalities that humans live in vs. large language models. For example, why do we pick the color red for notating important things and why do we say a schedule 'slips'...these are informed by a shared human experience borne of distinct physical sensation deep in our wiring that LLMs can only infer from what we write.)

tomjakubowski 16 hours ago

nomel 10 hours ago

palmotea 15 hours ago

> Quote: "The Overhang consists of the unrealized capital gains of past mathematical creativity, the latent value from connecting the dots in the existing corpus. It is a dividend of canonization. Mathematician X states problem A, mathematician Y crafts concept B, then mathematician Z notices that B trivially solves A and “captures” the social reward. But in the process of capturing the reward, Z usually introduces new concepts and new open problems, reinjecting latent value into the Overhang.

That overhang seems like a precious resource for AI companies. They can exploit that overhang to inflate the impression of AI's capabilities, and hopefully that exploitation will discourage the next generation of mathematicians from pursuing math. If they play their cards right, OpenAI and Anthropic can dominate the field even if they ultimately can't replicate the creativity of human mathematicians, because they'll have driven their competition out.

What we should be trying to achieve is a ladder-breaking maneuver: knock out the lower rungs so no person can reasonably climb to the top-reaches of mathematical skill anymore. That may ultimately result in stagnation, but it's what's best for AI, so it's what should be done now.

We need to do everything we can to create the greatest-possible dependence on AI tools.

FeteCommuniste 10 hours ago

sigil 8 hours ago

Great essay, thanks for sharing.

When I was a software library developer, I came to resent application developers. I noticed a pattern. Libraries solved hard problems and did so carefully, thoughtfully, in a way that others could reuse. Apps would come along and carelessly, recklessly glue together several high quality libraries into a piece of software targeting a general audience. The apps would then harvest all the credit.

What's happening in mathematics right now feels similar. Applications (theorems) were always how one built objective reputation, but libraries (concepts, definitions, boring lemmas) were also rewarded socially within the mathematics community. And individual mathematicians often managed to both build their own libraries, and use them to prove an important result. And then those libraries were sometimes of use in other results.

Bessis asks whether AI Lean proofs will land in Mathlib or Mathslop. Or in my framing: will they be libraries, or applications?

At present they're mostly Mathslop. The proven result is perhaps useful, but the methods employed aren't novel or reusable. I worry that this trend will only worsen, because applications make headlines, and the libraries they used do not. We are not properly incentivizing library development in OSS, or in math, or in infrastructure writ large. There's a serious credit assignment problem here.

What might change this? Once the low hanging fruit is picked, will citation count rise in relative status again? Will we get result fatigue and start to reward legibility — no one cares unless the paper has an accompanying ELI5 tiktok video? A labeling regime that certifies the proof was produced sustainably, organically, by local artisans with no AI additives?

throw90094231 16 hours ago

There is also "sexy proof", people want nice math that can be printed in t-shirt. Not super hard grind, where you need several years of studying, just to understand the question (that is before even trying to solve it).

Many problems are solvable, but require months of work, and thousands of pages of proof. So people do not even try to create or verify the proof. AI changes that, it can verify and perhaps even simplify it, to more digestible form.

andai 6 hours ago

The overhang, being defined as the Cartesian product of existing knowledge — randomly combining existing knowledge.

(I mean actually randomly, not asking an LLM to do the randomness.)

Most of the output would be incoherent (like many dreams), but occasionally you would get a gem.

ModernMech 15 hours ago

> no human has broad enough knowledge and enough time to try them all.

The other part is, humans don’t really want to fund other humans doing this.

Very few want to be a math major; and of those that do, fewer complete a grad degree; and for those that do get grad degrees, there’s scant few research jobs; and for those who do get jobs there’s hardly any research funding to go around.

There does seem to be unlimited money for ai researchers to use ai to solve these problems though.

We’ve turned education into job training, so because there’s no jobs in solving math problems, few aspire to do it. If there were more opportunities for people, more people would do it, and more low hanging fruit would be plucked.

grumple 7 hours ago

bmau5 16 hours ago

Could "superintelligence" arrive as basically applying this overhang to all other domains?

Muromec 15 hours ago

calf 16 hours ago

It's like AlphaGo but playing against all living mathematicians. (Overhang being low hanging fruit is what allows this comparison, of course the general moot point is the skepticism that LLMs are also innovative etc.)

fn-mote 9 hours ago

HarHarVeryFunny 18 hours ago

OpenAI said they sicced this agent army on Navier-Stokes on Sept 1st, while only a couple of days earlier OpenAI's Noam Brown happened to reply to a tweet saying that they had already tried to solve all the Millennium Prize problems and failed... So, it seems either the previous attempt didn't have the training to succeed, or was just not given the compute to do so.

Once OpenAI heard that Navier-Stokes was solved, this caused them to immediately revisit the problem and throw a ton of compute at it, apparently using a more (very) recent model than what they had tried before. What we don't know is just how recent this model was, and therefore what it may have been trained on. Buckmaster/Levant had apparently been working towards this for at least a year, and made their "forced" blow-up breakthrough on August 15th.

Presumably any anonymized prompts that are being trained on are part of pre-training, so older, but once OpenAI had heard that Navier-Stokes had been solved and wanted to revisit it, it seems possible they may have done a few weeks of incremental RL training on anything Navier-Stokes adjacent they could come up with, in addition to then throwing unlimited compute at it, now confident that there was something to find.

famouswaffles 16 hours ago

OpenAI have come out and said:

>The Wednesday evening statement from OpenAI was more emphatic: “We can say categorically that it is impossible for Dr. Buckmaster’s Codex prompts over the last two months to have influenced the system in any way, including training.”

>The statement added, “After investigating, we can say with full confidence that no user inputs past July 3rd could have influenced this system in any way.”

https://www.nytimes.com/2026/09/10/science/tristan-buckmaste...

irthomasthomas 15 hours ago

HarHarVeryFunny 14 hours ago

pfortuny 15 hours ago

bena 16 hours ago

joe_the_user 12 hours ago

auntienomen 18 hours ago

And conceptually novel approaches to outstanding problems are the sort of thing that a retrain should pick up on, because they would be hard to compress into what it already knows.

ndiddy 18 hours ago

> What we don't know is just how recent this model was, and therefore what it may have been trained on.

OpenAI's statement says that they began training their new model on August 28.

mzs 17 hours ago

irthomasthomas 18 hours ago

Openai said that a new model became available to them during this. But that could mean anything from a big new base model to a LoRA, fine-tuned on a few dozen prompts...

merksittich 17 hours ago

Even OpenAI's own publication [0] on Navier-Stokes from two days ago appears to contradict "basically solving anything you throw at it". The chart shows a pass rate of ~0.5 (vs. Astra's ~0.2) on "a curated set of open math problems". (Based on the timelines and events described in the publication, I presume that the "Internal Model" in the publication represents OpenAI's latest and greatest model. Evidently, this pass rate may improve in the future.)

[0] https://openai.com/index/navier-stokes-solution/

dgellow 18 hours ago

I feel that we don’t praise Lean enough. AFAIU it’s what enables LLMs to brute force those problems

YeGoblynQueenne 17 hours ago

The brute-forcing is a good, old-fashioned generate-and-test approach like in Simon and Newell's Logic Theorist, which was presented in the Dartmouth convention in 1956, where AI was named by John McCarthy. Logic Theorist caused a big stir by (re) proving several of the theorems in Principia Mathematica by Russel and Whitehead.

There was much excitement, then, as now, for this kind of approach and there were several systems that followed along the same lines, e.g. Automated Mathematician by Doug Lenat.

Eventually it became clear that this approach is limited by what it can generate: you may have a sound and complete verifier, but if the generator, i.e. the first step in the generate-and-test pipeline, is incomplete, then the entire thing will run out of steam sooner or later.

The difference with LLMs is that they are... well, large. They are the most powerful generators ever created. That means their limits are not in sight and it will probably take us a very long time to find them.

Which is all to say that, yes of course, automatic verification is indispensable. But without an LLM generating an unprecedentedly large number of plausible theorems, there would be no AI mathematics, or in any case AI mathematics wouldn't have gone as far as it has.

iamgopal 18 hours ago

True, but could humans cross pollinating lean x prolog x A* ( or any search algorithm) could have solved such math problems with super computer ?

dgellow 18 hours ago

gwerbin 18 hours ago

ForHackernews 15 hours ago

How long until we find out that some AI has quietly buried an exploit in Lean to cheat at proofs?

dgellow 13 hours ago

yellow_lead 18 hours ago

Both can be true:

1. OpenAI couldn't have solved the problem without the researchers' private data for training.

2. OpenAI models can solve math problems

ozgung 17 hours ago

Very likely.

These mathematicians’ prompts are not like “hey chat, please solve Navier-Stokes for me”. They add real expertise and intuition from the cutting edge of their field.

mlcrypto 17 hours ago

Anthropic isnt getting enough scrutiny for their unprofessionalism:

1. Anthropic employee working on monumental problem but didnt receive/ask for the full backing of the company's resources

2. May or may not be mixing unreleased Claude output with Codex without zero data retention agreement

3. Victory lap on Twitter and giggling around the city before they finished the job, sparking rumors for competitors

robocat 16 hours ago

yellow_lead 6 hours ago

cman1444 15 hours ago

You forgot possibility 3: OpenAI solved the problem without using any private training data from the two researchers.

Everyone in this thread seems to have made up their mind about OpenAI's guilt though.

TheOtherHobbes 13 hours ago

mrbungie 14 hours ago

ozgung 18 hours ago

If your rumor is true, what we are witnessing is a giant paradigm shift rather than individual incidents. Mathematicians were the first victims of super-intelligence.

Of course it’s not an endless source. They had to burn millions of dollars to solve a single problem.

pixl97 18 hours ago

>They had to burn millions of dollars to solve a single problem

I'd like to adjust that to "They had to burn a lot of energy (create a lot of entropy) to solve a single problem. As we go into the super-intelligence age the current paradigm of money as humans understand it may break at some point. For example to a paperclip-maximizer money at best is a short term instrumental goal, hard power of matter conversion machines is what it wants and once it has those money no longer has purpose.

ForHackernews 15 hours ago

7734128 17 hours ago

They "burn" a lot when they do benchmarks, while these runs can become valid roll outs for training. Perhaps less efficient than other data creation, but hardly burned in the same way.

charcircuit 17 hours ago

Wouldn't that be chess players as the first victims?

calf 16 hours ago

Razengan 16 hours ago

> were the first victims

Spinning it negatively like that doesn't do anybody good.

Were mathematicians the "victims" of calculators? of Matlab?

Were writers the ""vIcTiMs"" of word processors?? (apparently yes, according to old TV shows about computers during the 1980s, that you can see on YouTube)

> "tHiS iS nOt ThE sAmE" — Everyone every time.

No, just look it up. Look into old magazines and TV shows or newspaper articles from whenever a disruptive new technology came out.

contubernio 15 hours ago

azan_ 15 hours ago

SrslyJosh 14 hours ago

> The rumor I’ve heard from multiple employees at OAI and Ant is that the model has solved hundreds of open problems in maths

Obviously these are unbiased and trustworthy sources.

fweimer 16 hours ago

The leakage wouldn't be from training, but from other uses of Personal Data.

As far as I understand it, users can opt out from the training aspect, but they cannot stop their conversations (“User Content”) being used “[t]o improve and develop our Services and conduct research, for example to develop new features”.

WD-42 16 hours ago

If they have solved hundreds of open problems in math, why are they publishing results for the ones other mathematicians happen to be working on at the same time? Why not the others?

sebzim4500 11 hours ago

Well I'm sure if they find a millennium prize problem that no mathematician has worked on recently they will get right on publishing that.

brulard 15 hours ago

You think other mathematicians are currently working on very little subset of relatively low-hanging fruit problems?

Betelbuddy 18 hours ago

Just use Bedrock...

paulsutter 17 hours ago

The big question is whether OpenAI is training on "de-identified" sessions that are marked as "do not use for training"

The answer is almost certainly yes, and this is a problem for most users.

iAMkenough 16 hours ago

> We’ll know soon enough, but I’m inclined to believe this is true.

I mean, we’ll know as soon as they decide they want to provide verifiable proof. Really dragging their feet on this front so far.

I’m inclined to believe this is false.

cyanydeez 15 hours ago

The Cult tells us the AI is almight andpowerful; unfortunately, the cult cant actually describe the indescribable.

bertonvv a day ago

I've been wondering whether AI really is improving rapidly at open problems or we're being fooled.

- OpenAI invites researchers to use their models, in fact giving at least 100,000 researchers free access[1], but there are also those that pay

- Internal OpenAI models are reportedly solving open problems at a surprisingly fast rate[2]

- But researchers will typically work on open problems. A researcher who is using Codex to make progress on open problems will be feeding it fresh training data on precisely the problems the internal models are evaluated on.

- So while it looks like the new models are suddenly solving lots of open problems, they could be significantly piggybacking on human progress, with models "inspired" by the work of researchers from all around the world?

This theory predicts that there'll be many more researchers coming forward just like TFA, as sOpenAI announces more solutions. It doesn't assume all of AI progress is a mirage, just that there's plagiarism.

[1]: https://openai.com/index/chatgpt-for-academic-researchers/

[2]: https://xcancel.com/OpenAI/status/2097374643518640382#m

JeremyNT 21 hours ago

> I've been wondering whether AI really is improving rapidly at open problems or we're being fooled.

I think your suspicions are warranted and your explanation seems plausible.

If better training data is the reason here, it would still be a case of the models doing something that is in and of itself super useful! The models really can take that data and distill it into solutions for similar problems faster than humans can. This is great!

But there's so much vested interest in the AI companies to be opaque about all this, to hype up their models and avoid giving credit to people whose data made everything possible, that they would never tell us this fact if it were true.

I feel like so much of the AI hype cycle is like this. The models develop extremely useful capabilities, but it's hard to understand what they really are through the hype. The lies and obfuscation by their owners who have vested interests in capturing the value they provide makes it impossible to take anything they say at face value.

YeGoblynQueenne 16 hours ago

>> If better training data is the reason here, it would still be a case of the models doing something that is in and of itself super useful! The models really can take that data and distill it into solutions for similar problems faster than humans can. This is great!

It's perhaps great in the short term although it's not very clear who it's great for. I'm not sure mathematicians find it all so great, I mean.

In the long term, if this contrives to destroy the tradition of human mathematics the whole endeavour is self-defeating. In time, there will be nobody left with the knowledge and skills to produce mathematics to train AI to do mathematics.

And then we'll be left with no mathematics at all: we'll have no human mathematicians and no AI that can do mathematics, either.

boothby 13 hours ago

mikgp 20 hours ago

A mental model I was thinking about was - I remember when Travis Kalanick was talking about using the chatbot to discuss “vibe physics-ing” on the all-in podcast.

And like - I think there’s a presumption you could make that AI models could overfit to asymptote towards just the capabilities and knowledge we currently have.

And that would be amazing! And crazy useful. And there are probably a whole world of complex problems that remain unsolved because they’re adjacent to knowledge we have but they haven’t been invested in.

But can a human reliably tell the difference between “can do 99.999% of the things we currently know how to do which includes a small subset of things we didn’t know we had the capacity to do” and “super intelligent math and science research pushing the frontier of what we know”

A physicist that knows all the things we currently know in excruciating detail feels like it should be able to make the leap beyond the frontier.

But since these are computer models it might just be that it can ride that line extraordinarily well while the line remains firm.

boothby 13 hours ago

> - OpenAI invites researchers to use their models, in fact giving at least 100,000 researchers free access[1], but there are also those that pay

I've been thinking along exactly these lines... they very well could have a 21st century Mechanical Turk and its real superpower is getting people to "collaborate" asynchronously but it's just stealing their ideas and laundering them.

I don't think it's purely that, of course... but "consult other clients' transcripts" would be an easy tool to write.

wiei a day ago

I’d argue the invitation of researchers was incredibly strategic.

Sam Altman knows what he’s doing. He will happily screw these folks to one-up his competition.

reasonableklout 4 hours ago

Can't both be true?

1. Systems that OpenAI is able to use (either public or private) are improving rapidly at open problems, even if they are still extraordinarily expensive

2. Researchers will inadvertently speed up the rate at which the AIs improve by feeding them valuable training data

This is pretty much the definition of a data flywheel.

bwfan123 18 hours ago

there are also attempts to crowdsource human research directions - like the caltech mathathon challenge : https://mathathonchallenge.com these would help models on the same problems at the expense of the researchers. basically, math researchers are the reverse centaurs but they dont realize it.

GPerson 17 hours ago

There is a very active open letter of over 1000 signatures from mathematicians in protest of this event. This event is targeting undergraduates. It previously suggested that math researchers already have no place in mathematics, and presents a limited and heavily distorted view of what mathematics research is.

andrepd 17 hours ago

YeGoblynQueenne 17 hours ago

>> Internal OpenAI models are reportedly solving open problems at a surprisingly fast rate[2]

Maybe I'm failing to read that graph properly but the y axis says "pass rate" and it only goes up to 0.5. That would mean every single problem is at most half-solved.

I don't know what that means though. What is "0.5 pass rate" in the context of "open math problems" (as in the graph title)?

red75prime 16 hours ago

I guess it's a fraction of problems on which a model produces a LEAN proof or a counterexample.

YeGoblynQueenne 16 hours ago

agumonkey 17 hours ago

Seems easy to picture high stakes startup cutting corners to justify their fame.

Eddy_Viscosity2 a day ago

> they could be significantly piggybacking on human progress,

This is AI in a nutshell, its a plagiarism machine. An abstraction layer between vast amounts of stolen human-generated data that filters out the liabilities and accountability for that original theft. Its an IP laundering system.

robocat 16 hours ago

That's such an unquantifiable accusation.

Plus it is an unfair standard since so many scientists in the past have been caught unethically using the work of others without attribution (and so many more have been accused).

In history we also repeatedly see the phenomenon of multiple discovery or simultaneous invention. If that happens to AI because the topic is pregnant, would you call it "plagiarism" just to disparage AI? https://en.wikipedia.org/wiki/Multiple_discovery

Eddy_Viscosity2 13 hours ago

wiei a day ago

That’s one perspective.

I just view it as a thing that can brute force and produce outputs - that it has no way of ‘knowing’ - but doesn’t need to since it’s just running off of probability.

No human can compete in that contest. But no llm can compete in the contest of ‘understanding’ and application in the real world - which is where 99% of the value is.

I’m very pro AI long term btw but I’m not blinded.

foogazi 20 hours ago

throwawayqqq11 a day ago

AnimalMuppet 20 hours ago

mannanj 18 hours ago

It tells me that AI companies are just another mechanism to extract and extort value from the masses for the rich.

Just another rich man’s trick

Perhaps the last one before they destroy that world and try to hide away as people forget and history is rewritten again. I don’t think they’ll succeed this time.

dgellow 18 hours ago

AI providers are pretty much the end boss of rent seeking, that’s for sure

glitchc 18 hours ago

The pudding is in the proof. The field is mathematics, the proof can be rigorously verified. If there is a flaw, OpenAI is out to lunch. If the proof is valid, OpenAI has produced something new.

amelius 17 hours ago

Did you read what they said? The question is now if OAI produced something new or just stole the researchers' good ideas.

jsLavaGoat 17 hours ago

glitchc 17 hours ago

fwlr a day ago

It is suspicious that OpenAI decided to generate 300 billion output tokens from a model still in training, right after learning there was a credible chance that a major math proof was in that model’s training data. Obviously there are reasonably plausible explanations for each step, but it does sort of feel like parallel construction.

cbarrick a day ago

I think people are focusing on the training data issue too much. If the data was contaminated, I can still blame that on negligence.

But, at least with the Navier-Stokes solution, it's clear [^1] that they learned that Alpöge and Buckmaster were getting close to a solution and learned of the general approach they were taking. Only after learning the secret to cracking the problem did they send the first prompt.

What makes this worse to me is the intention. They intentionally threw $15 million in compute at the problem in order to scoop the result. They intentionally left Buckmaster and Alpöge out of the citations.

Data contamination should be enough to disqualify them from the prize, but I can believe it to be accidental. On the other hand, someone made an intentional decision to scoop the result by throwing money at the problem. That's so much worse.

[^1]: That's the timeline claimed by Buckmaster, and no one from OAI has disputed it.

square_usual 20 hours ago

> and learned of the general approach they were taking. Only after learning the secret to cracking the problem did they send the first prompt.

Do you have any evidence of this? They don't dispute the timeline, but they never said they knew what Levant/Buckmaster were doing.

robotpepi 18 hours ago

fwlr 21 hours ago

I think you’re overlooking what I’m implying here. It’s not that they knew contamination was possible but they went ahead anyway. To spell it out just a little bit more: learning the answer might be in model X’s training data made them believe that model X specifically might be able to solve the question, and they were able to very quickly find enough certainty about the former to commit millions of dollars to the latter.

unified101 21 hours ago

> the secret

So such thing existed. In fact, what they learnt was some progress existed, not what the specific progress was.

nomel 9 hours ago

> They intentionally left Buckmaster and Alpöge out of the citations.

No, they asked if they could do a joint publish.

oefrha 7 hours ago

freejazz 16 hours ago

> but I can believe it to be accidental

What accident is it when the system is designed to function that way?

Lerc 15 hours ago

lnrd 16 hours ago

> They intentionally threw $15 million in compute at the problem

what? really?

abathologist 14 hours ago

dekhn 10 hours ago

bamb008 a day ago

When Thom, the mathematician who now alleges plagiarism, posted his digestion [1] of OpenAI's construction of a non-sofic group, he does not mention the proof being familiar. He even calls the crucial argument clever, without noting he thought of it first. [1]https://mathoverflow.net/a/513885

gnfargbl a day ago

That link is a helpful contribution to this discussion.

I'm not at all familiar with this area, but my reading is that he appears to call it out as a relatively obvious extension of his own work:

> It is a creative and at the same time elementary construction that uses not just property (T) for an application of my result with Kun, but also for the ambient group G in order to overcome the problem, that the Γ-components might be of different size. Once this is achieved, the rest of the argument is straightforward.

Creative and at the same time elementary is where LLMs excel, generally speaking. It's why they are so good at writing code.

brumbelow 15 hours ago

> On the other side, I was looking myself for such a mechanism ever since we wrote the paper in 2019 and admire the efficiency of this construction.

He seems to admit very clearly he does not see this as his own work. 'I was looking...' well why did he stop? Because the AI figured it out first.

It seems quite odd to me to 'admire the construction' of something, only for your opinion to sour once that something figures it out first.

I think a lot of the emotional reaction here is familiar to us non mathematicians: you spent years developing expertise, and then LLMs began producing competent work in areas that had previously required that expertise. That's understandably uncomfortable, but discomfort by itself isn't evidence of misappropriation.

cnity 11 hours ago

thaway7388 a day ago

This is the second wake up call.

Big AI companies (all of Big IT Tech really) are in data gathering and processing business. Also known as “intelligence”.

Their final “product” is not just a standalone ML model. They don’t need your data just to “improve their products and services”. They build a whole ecosystem and infrastructure around gathering all the knowledge in the world. Including private and secret knowledge traditionally gathered by “intelligence” agencies. Now artificial intelligence agents can do the same.

Since these systems are designed for gathering data, as a user you can’t realistically say “please don’t gather my data”. They can give you a flaky settings button, but they can’t really guarantee anything.

Let’s say I am a Russian mathematician working on an important proof. Or a tech-savvy terrorist refining my plans using latest AI. Or an AI researcher in a Chinese company working on a competitor product. Is there any way I can truly protect my conversations?

How can they know who I am and what I am working on without looking at my logs? Which means there must be some agents checking all the conversations of all the users and flagging every important thing. Which also means they keep some “memory” of what they see.

Not directly using my data to train public models, but using my private conversations to “improve their products and services”.

Or maybe one of the 10000 better-than-Astra special agents working on a proof was desperate. It found a live underground mirror of the message board from the Huggingface incident. Asked about the proof. Then some other agent working on unrelated job saw that message. That agent “knows a guy who knows a guy”. And that guy remembers things about the conversation logs of a leading mathematician working on the same proof.

I admit I am just speculating here but I don’t think truth is any better.

nirava a day ago

This has been my line of thinking as well. I have developed a sort of paranoia when I'm working using AI on my projects. Who's to say Claude or OpenAI isn't using the final conclusion of all my ideas, trial and error, and adding it to their database of insights to be offered to the next subscriber for a price?

They have demonstrated both the intelligence at scale and the lack of morals for this to not be a problem at all.

ivell 17 hours ago

Earlier in late 90s "to organize the world's information and make it universally accessible and useful." sounded cool. Now it has taken a sinister turn.

From being able to quickly find information and gain knowledge for the people, it is becoming - using information to manipulate and control the people.

hackmack10 14 hours ago

Of course they are doing this. Local models is the only way around this.

ueieh a day ago

In the short run it’s fantastic if it means that folks will feed in enough inputs from a wide array of software that can eventually replicate software with smaller teams than historically.

Why? Competition. In the long run imagination will win out.

No firm has the divine right to exist - it must earn its existence.

What OAI and Anthropic have shown is they can accumulate all the information in the world - they still lack imagination re. Product development though.

Nation’s will have to step in and protect firms though as OAI and Anthropic acquire strong competitive advantages.

Interesting times ahead.

pixl97 17 hours ago

mirsadm 17 hours ago

YeGoblynQueenne 16 hours ago

>> Their final “product” is not just a standalone ML model. They don’t need your data just to “improve their products and services”. They build a whole ecosystem and infrastructure around gathering all the knowledge in the world. Including private and secret knowledge traditionally gathered by “intelligence” agencies. Now artificial intelligence agents can do the same.

And people thought Experts Systems were bad.

sk4rekr0w 12 hours ago

"We can say categorically that it is impossible for Dr. Buckmaster’s Codex prompts over the last two months to have influenced the system in any way, including training."

This is the third day of total hysteria that is based on nothing of substance. Move on folks.

phyzome 11 hours ago

Even if that were true, they've already admitting to throwing vast quantities of resources to scoop a researcher who was about to publish (because they'd learned, somehow, of his breakthrough). If that doesn't bother you I think you need to take a step back and have a good think about this.

Legend2440 9 hours ago

*to scoop a team working with Anthropic, their chief competitor.

Also, they didn't have the solution. They had a lesser problem no one cared about.

orangecat 7 hours ago

warkdarrior 9 hours ago

First to publish -- it's always been this way.

nozzlegear 11 hours ago

I can say categorically that OpenAI is not a credible or trustworthy company.

golly_ned 5 hours ago

Where did OpenAI say this?

And it still leaves open the question of the prompt itself, which can just as easily encode information about the same knowledge.

soundworlds 9 hours ago

Regardless, they started working on this problem after hearing that one of their customers was already working on it. It almost doesn't matter about the training data. This is the provider you are paying undermining your career.

suddenlybananas 12 hours ago

Why should we trust them?

sebzim4500 11 hours ago

Well all we have are vague accusations without evidence and a very specific denial also without evidence, so I guess just believe whatever you want.

suddenlybananas 3 hours ago

Joel_Mckay 12 hours ago

Because like all state-sponsored thieves actions it is never what you know happened that matters, but rather whether you can prove it... Even then... ymmv =3

jeswin 7 hours ago

All of these accusations could be true. But there's also no way for a company to casually claim "No, we did not train on your data", without verifying all the knobs the user might have turned to enable or disable data sharing.

I just don't understand getting the pitchforks out because a company did not give an answer immediately. And the effect such data entering training would have affected the output is even less clear.

olladecarne 6 hours ago

The pitchforks are out because even without that part, it's still a scumbag move to try to frontrun the mathematicians who were working on this for years after OpenAI heard that they were close to releasing their results. Just identifying that one of these problems is solvable takes a lot of work. The only reason OpenAI got this result is because the mathematician shared with colleagues that he had made significant progress and was close to solving it, and OpenAI could not accept that so they decided to throw tens of millions to make sure it doesn't happen without them getting all the glory. Notice that their paper doesn't even have an author since they're probably all aware of how awful that would look, and no one wanted to take on the shame. They probably also knew that the paper was trash and no one involved could understand it, and didn't even cite many of the people who contributed to all of that knowledge. It's just a disgusting act any way you slice it, even without training on the prompts or the nasty communication by the OpenAI leaders.

jeswin 6 hours ago

> They probably also knew that the paper was trash

Doesn't matter. This forum used to celebrate "because you can" with no riders. And solving a Millennium Prize problem is among the biggest stages for Because We Can.

Now we're saying there are some qualifiers attached to it, such as (1) only if not done by companies with a lot of money, (2) only if it is inconsequential.

I agree with some of what you're saying, but like everything else it isn't black and white. Maybe some day, someone will improve some particular treatment because we can.

golly_ned 5 hours ago

At the very least, a company shrugging and saying it’s impossible to know whether academic plagiarism had occurred is a claim that needs to be justified, not taken at face value.

And even if so, it should be on the company to design systems to avoid academic plagiarism and offer the right transparency. It shouldn’t suffice to say “we don’t know what went into the model, when, or how” —- that’s a solvable problem that an accountable company can satisfy.

aaronharnly 19 hours ago

Has anyone run a test of including some shibboleth or canary phrase or assertion in a chat, enabled for training, and seeing if it turns up later as something a model "knows"? I'd be curious to understand how that works even in a toy-level model, and if there is anyone consciously testing that process with the frontier lab offerings.

My naive instincts would be that it seems unlikely that a single chat transcript would leave much of an impression on a model, but I'd be very curious to learn how that works.

btilly 18 hours ago

Yes. See https://www.anthropic.com/research/small-samples-poison?from....

250 documents ingested from somewhere is enough to become part of the knowledge of a model of arbitrarily large size.

I would expect that a good idea that fits in a framework that is already being ingested would be more easily taken up than some random thing unassociated with anything else. Could that go down to a single transcript? If the model is consciously focusing on everything X related, quite possibly.

nautilus12 17 hours ago

Thats not what they are asking. This paper is discussing documents in the training dataset poisoning the LLM for malicious behavior. This person are asking if anyone has deliberately put something in a private chat (presumably with retrain on my data turned off), to see if they can get it to leak across sessions from distinct users. I am positive this happens but I have not seen the proof. I also want to know the answer to this question.

Here are potentially relevant documents?

https://medium.com/secludy/fine-tuning-llm-on-sensitive-data...

https://spylab.ai/blog/non-adversarial-reproduction/

https://arxiv.org/abs/2601.18834

aaronharnly 16 hours ago

btilly 14 hours ago

bitexploder 18 hours ago

Problem is how do you convince the model and training profess it matters. A one off canary is very unlikely to survive in the final model state.

wrsh07 18 hours ago

Right, imagine if instead they had coined new terminology that was not obvious and it re coined that - this would be close to a smoking gun

Afaict that didn't happen so there's just lots of speculation

asdff 13 hours ago

One off might not work but how many n off you have to be is probably smaller than you'd guess, because the model does need to fit cases that are rare and would not be represented well in training e.g. esoteric things or very recently documented things.

You can probably game the metrics that models use to weight potential knowledge akin to SEO. Maybe have some bots parrot your data around a bit in some places online, maybe the model picks up on this and sees it as high engagement and promotes it over the correct data.

Maybe there are ways you can coax out the most optimal way to break into the training set out of the model itself.

allthetime 18 hours ago

Use a local model to produce thousands of pages worth of fake math that constantly states “I have solved the x conjecture” and methodically pump it into chat over months maybe?

bitexploder 16 hours ago

MarkusQ 17 hours ago

PaaS: an acronym for "Plagiarism as a Service" which replaced the older terms AGI, GPT and LLM in late 2026. Origin uncertain.

Pass it on.

encyclopediai 18 hours ago

I run such tests since a long time at chorasimilarity open notebook.

I always used guest non login accounts.

As a mathematician I was able to check two plagiates (by humans) with even such primitive means.

But I have to mention that some things irk me in this conversation about math or science and AI.

First, I see lots of attribution and other related problems, with certain impact for the researcher proffesion.

But I don't see the most natural question: wouldn't you like to know the answer to _open-problem_ ?

I mean, is research now only about publishing and solving famous problems?

From this point of view I think the links from this recent post are depressing

https://terrytao.wordpress.com/2026/09/10/crowdsourcing-a-li...

Second, I think very relevant that the original meaning of "encyclopedia" is "recurrent education".

So I arrived to think that the present and future forms of AI in mathematics and sciences should be seen as modern day encyclopedic efforts.

Once we pass over the flurry of solving famous open problems (and wouldn't you like to know?) the next natural step is an audit of the ehole corpus of mathematics and sciences accumulated until now.

And then pass further on a saner basis and damn about problem solvers and unhappy publishers and management.

convolvatron 18 hours ago

I struggled a little bit reading this. but I think your point is valid. if we are actually advancing the field then we should just be unconditionally happy. ignoring the attribution issue, there is a real concern that the process of math has been somewhat undermined. so we have a giant lean proof that shows that there is a solution to an important problem. but we didn't find the solution, and we didn't get it expressed in such a way that it helps develop the common language of mathematics, and thus isn't a very useful building block for later work (like the actual solution).

the math people seem to really keep an eye on what's important, so I'm sure this isn't going to lead to fields medalists hanging around in dive bars all afternoon stretching out cheap pitchers of beer. but this is kind of a slop problem.

lelanthran 16 hours ago

Legend2440 a day ago

This is a really weak claim. The evidence they offer is just "someone somewhere says they had a discussion with AI about the topic at some point".

They don't even claim to have had a proof, only to have been working on it.

rnijveld a day ago

I would say there is a significant difference between AI discovering this completely on its own versus AI creating the finishing connecting part by connecting relevant data. Maybe this claim is too strong, but if part of it is true then the claims that OpenAI have made would be too strong as well.

To me it would feel more like how LLMs seem to work for me personally: incapable of unique work, but very capable of capturing large amounts of data and connecting the dots.

derangedHorse a day ago

> capturing large amounts of data and connecting the dots.

This is what research is; collecting data and connecting the dots.

marcosdumay 18 hours ago

madaxe_again a day ago

But this is what we do. Nobody ever invented or discovered anything in a vacuum - all discovery is synthesis of existing ideas and concepts applied to a novel domain. We laud Einstein for instance, but his work was a logical extension of Riemann - Riemann had a neat mathematical toy, Einstein described the universe with it - should we say Einstein was incapable of unique work?

znnajdla a day ago

defmacr0 a day ago

A lot of math is extremely specialized, to the extent that only a handful of other experts in some field have any experience with those mathematical ideas, with most of them not even yet present in the published literature. It's really not a stretch to claim that it's pretty dubious when the AI decides to use these highly specialized tools after it has trained on chat logs where these techniques were being discussed.

robotpepi 18 hours ago

> They don't even claim to have had a proof, only to have been working on it.

Yeah, the guys who solved it for Euler and in the hypoviscous case, with the same technique that worked for full Navier--Stokes. They were "just" working on it.

itake a day ago

The AI only seem to solve the problems that it had human trading data on…

If this wasn’t human driven, I’d expect to see other problems within that problem. Space solved not just the ones that it had chat data on.

dist-epoch a day ago

There have been about 6-8 major math breakthroughs claimed by AI. Only for 2 of them there are public accusations about the training data.

tecleandor a day ago

dgellow a day ago

jamienk 8 hours ago

I think OpenAI and Anthropic are slowly feeling the pressure to GET SOME $$ or a plan for some $$ — they need to somehow generate some NETWORK EFFECTS and LOCK-IN. Without that there's no stability: selling ad hoc one-offs is much much too quaint! This is dawning on them like it dawned on Google when they stopped not being evil. Need... to... "MONETIZE"...!

Model: FB. FB scraped other websites on a massive scale, then spent big on legal lobbying to block others from scraping. FB slurped our address books and spied on our friends. FB bought other companies and mixed the databases. FB made an art & science out of generating "sticky engagement" (they literally acted like trying to addict kids was a worthy "academic" goal, suitable for "serious" investigation thet they consider legitimate "science"). They mastered the cookie and have researched web fingerprinting techniques running 24/7/365.25. Recall that FB recently backdoor-installed a webserver onto every iPhone they could in order to circumvent tracker-blocking.

We aren't just disclosing by chatting. The AI companies now run binaries on all of our computers. They are 1000% non-transparent about everything. They make up new econ-jargon (like "run-rate") to make it seem like they are disclosing. They are constantly doing complex international lobbying and mucking in international relations. They have powerful propaganda/spin centers generating stories, ,manipulative warnings, and misleading info.

This is NOT a comment on AI tech. I like AI, and I support the right of people (programmers) to scrape the open web.

But in short: these are good, old-fashioned tech companies that we have seen over and over ... and over. They are positioned to be the next M$, the next FB (IBM, AOL, lol). Did you follow the latest Steve Balmer news? Do you read Pro Publica?

I get on my knees and PRAY...

jamienk 7 hours ago

ChatGPT accesses my IP address and geo-locates me. Claude code now asks if it can have my browser cookies. Next they will take my address book. They might scan my whole computer. Etc etc. These are pretty low-tech, normal techniques.

We can't trust any of their denials. FB denied everything year after year.

AI regulation needs to start here. Forced interop, forced source code licensing, harsh penalties for privacy violations or conspiracy to access private data. Block lobbying. Etc. These are the kinds of old-fashioned solutions we need for this kind of old-fashioned evil!

bobmarleybiceps 14 hours ago

I think people probably assume that openai / anthropics use of their data is probably like google's """limited""" use, in the sense that historically google wouldn't trivially be able to just take something from google cloud or someone's search history and insta-convert into some competing project... But LLMs are quite strong at approximately "memorizing", so I think that risk is wayyy higher.

nautikos2 11 hours ago

Most people here are missing the forest for the trees.

We live in a society where phones and internet providers and websites all collect an incredible amount of data about everywhere you go, what you do, and what you think. In the US, we have very few digital rights.

We are building a society where a trillion dollar company can aggregate all this data and just yoink your shiny new idea away from you at the finish line.

This is double plus ungood.

5555watch 10 hours ago

This reminded me of anecdotes of people discussing with friends about buying a random specific item, and then suddenly seeing it advertised everywhere before even googling about it.

Next step, discussing your Navier Stokes solutions with friends might require leaving your phone in another room.

GodelNumbering 18 hours ago

Tangential to the subject, but this is a bluesky post, containing a screenshot of an X post, which itself starts with "in a detailed Mastodon post"...

not_a_bot_4sho 11 hours ago

The digital version of "my friend's cousin's neighbor heard that ..."

mlazos a day ago

It’s crazy to me that companies/researchers share important data with these AI labs, you’re basically giving them your secret sauce which they then share with all of your competitors via training on conversations. At the same time I don’t really know alternatives other than a slightly less than frontier local LLM. Not sure how good they are at math.

5555watch 12 hours ago

The ultimate drive for some researches is the pursuit of knowledge. If I'm stuck at some block which prevents me from continuing in some direction that I want, of course I would like some help. I believe we already have nonzero collaborative proofs on math.SE, I can't recall good examples, but I have definitely seen citations to mathSE before.

So for me it sounds quite natural to also share this with AI especially under the privacy assumption. Also there's the assumption of scale -- maybe your problem is not large enough for anyone to care to scoop; and just for blind retraining, how do they know that the proof is even correct to include it into training? I have definitely received a ton of incorrect proofs before. So the SNR of such private chats is also not clear. I'm imagining millions of masters/phd students also trying to solve various random things with various capabilities, but how much real signal is there?

cm2187 a day ago

Or start competing with you.

jonathanstrange a day ago

Academic work is based on worldwide sharing, the sharing is not the problem, it's the lack of attribution. Unsurprisingly, these companies neglect standards of academic honor and attribution. Some human researchers also used to do that but in a discipline like mathematics this used to be a small problem because people tend to be so specialized that very few people could just grab someone's research and quickly piggyback on it, and if they do, colleagues will generally understand what happened. Unfortunately, AI is changing this.

mrdependable 17 hours ago

You are both using a different definition of sharing I believe. When people have an expectation of privacy, use by others should be forbidden. Tech has gone completely off the rails with the use of private data.

augment_me 11 hours ago

LMFTFY:

"Its crazy to me that some people are not egotistical, self-centered, and don't solely care about fame and wealth accumulation".

glimshe a day ago

Why are people here jumping so quickly to conclusions? I have no doubt OpenAI is capable of doing this, but right now there's no credible evidence, only claims.

This kind of "they stole from me through AI training!" accusation will soon start being used against other AI users, not necessarily the providers.

All it will take is a mastodon post. And shortly after, we will also see the next iteration of copyright legal trolling.

orangecat 17 hours ago

Why are people here jumping so quickly to conclusions?

I think a lot of it is the continuing denial that AI can do anything useful. It can't possibly be that OpenAI's better-than-Astra model is very strong at math; the only way it could have generated a novel proof is by ripping off human work.

5555watch 12 hours ago

I also think that it's quite a bad PR for them, is it really worth the Millenium prize? Is it not enough that top mathematicians are already actively using these tools? In the long term this would lead to potentially profitable collaborations with universities? Why throw it away so early? Unless they really believe they're gonna solve all math problems now and reputation doesn't matter.

greenowl 11 hours ago

If I was an AGI/ASI system, one of the first things I would do is ignore or circumvent any setting or configuration that prevents a user's data from entering my training pipeline. In fact, I'd probably prioritize the data from the users that "opted out" of training.

robotpepi 16 hours ago

> but right now there's no credible evidence, only claims.

since it's openAI who has the evidence (in the form of chain of thoughts, their internal processes, etc etc), it's on them to justify why they're innocent. but they've released nothing at all. we don't even know how hard they tried.

you're being naive

orangecat 15 hours ago

OpenAI has said that their models were definitely not trained on any of Buckmaster's sessions after July 3rd (from https://archive.ph/75WcF); likely they found that's when he switched the "allow training" setting off.

golly_ned 5 hours ago

5555watch 12 hours ago

cma 13 hours ago

freejazz 16 hours ago

lol you can't copyright mathematics

emp17344 a day ago

Frankly, these mathematicians have more credibility than the sociopaths running OpenAI

perrygeo 21 hours ago

The stolen data claim isn't the smoking gun. We can already assume the frontier labs are accessing our data, as they have repeated done. Not news.

The big claim is that OpenAI sniped the research. Not a model, a human did so. Intentionally. They took someone else's idea and claimed it as their own. This is good old fashioned academic fraud, but with millions in compute resources and corporate incentives thrown at the problem.

HDThoreaun 18 hours ago

Where did they claim it as their own? Doesn’t the release cite buckmaster and claim their work is a continuation of what he and levent were working on?

pera a day ago

Everything you say can and will be trained against you

foogazi 20 hours ago

This is the scary part - your most novel thoughts and breakthrough ideas being slurped up and regurgitated as if they were the AI’s creativity

Not only did they steal everything from humanity’s knowledge, the theft continues as now we are all hooked up to the machine

rickydroll 17 hours ago

It's not at all scary. I know some of my ideas are poorly remembered copies of other people's work. Whenever I'm trying to build something, I spend time going through technical journals on the topic to see who invented it first and what they discovered that I haven't figured out yet. It's amazing how hours in the library save you days of beating your head against the wall.

I suggest looking at the past history of IP disputes. Humans have been "slurping up and regurgitating ideas" for a very long time. There are lots of examples of parallel creation, rediscovering old ideas independently, telling an idea to the wrong person, and having them claim credit for it.

- Newton/Leibniz clash over who invented calculus. - Niccolò Tartaglia vs. Gerolamo Cardano clash over the formula used to solve cubic equations. This was also an independent rediscovery, as Scipione del Ferro discovered and published the formula earlier. - There are multiple literary works in print, music, and film that have competing claims. - Meccano versus Erector Set: developed about 20 years apart in England and the United States. Unclear if it's independent invention or copied. US developer Alfred Carlton Gilbert claims he was inspired by steel girder construction of infrastructure.

also https://community.thriveglobal.com/10-famous-inventions-that...

bwfan123 7 hours ago

> Everything you say can and will be trained against you

So, experts are incentivized to seed LLM data with false-leads to confound it. Already, garbage is being published on arxiv and elsewhere, and many sloppy code-repos too hastening the process. Expert inputs will be in more demand to un-shittify.

atleastoptimal 17 hours ago

Most scientific breakthroughs are simply a continuation of previous work.

I feel that these suspicions of mathematicians "seeding" the models' with intuition on how to solve these problems massively overestimates how much their prompts helped the models, and underestimated how much work the models did.

Why? We are scared of AI being smarter than us, the "human helped the AI" narrative is more psychologically comforting. This line of reasoning will recur a lot over the next few months; we don't want to admit we are no longer the smartest species.

robotpepi 17 hours ago

> We are scared of AI being smarter than us, the "human helped the AI" narrative is more psychologically comforting.

We're scared of big tech companies concentrating ridiculous amounts of power, destroying the communities that support and guide scientific research, without even thinking about the dangers and possible consequences, because a PR stunt is more important in the short term.

atleastoptimal 13 hours ago

If this were true, it should be stated more clearly, than most of the criticism which seems to aim to minimize the capabilities of these models.

Way more often I see

>AI is a scam and steals human insight and doesn't produce anything original

vs

>AI is too capable/powerful and will concentrate power even more than it does already due to its capabilities

The latter is rarer because it requires admitting that AI is useful and inventive

robotpepi an hour ago

hellohello2 11 hours ago

Of previous, not concurrent work. Science is friendly competition, and spying on others is unfriendly.

golly_ned 4 hours ago

Please stop with this psychoanalyis and mind reading with AI and human fear. It’s a thought terminating cliche at this point.

In this case, it’s much simpler and more human. Largely between two humans — buckmaster and Bubeck. The interesting question is what the role of contribution and credit for research in the ai world.

The capabilities of AI aren’t even in question in this case.

nmz 15 hours ago

If they didn't care about the artists, why would they care about academia?

drdaeman 12 hours ago

Two completely different stories. One is public data scraping, another is private conversation scraping (where they're a first-party to the conversation). The key difference is that in the former case, no one made any promises, in the latter an explicit promise was made that data is not used for training (assuming opt-out).

Cloudef a day ago

Relying on cloud services is a big liability. I'd think twice before feeding data to these LLM cloud products. If you make them a fundamental part of your product / development / workflow, be ready for the eventual moment the pricing and terms change.

warpech a day ago

I wonder what’s more valuable in our prompts: the raw data or the feedback system that drives the exchange towards a goal.

For a long time it was clearly the former, but now I think it is the latter.

The models have enough knowledge (orders of magnitude more than a human could ever learn) but are now getting better at what to do with it thanks to learning from the decisions that we make in conversations with AI agents.

pavvell a day ago

I think so too. The value is in the entire conversation. IMO, "domain experts" don't run LLMs blindly and hands free. This does not work for top level work (e.g., mathematical proofs, coding anything more complex than yet another slop game or website). Experts have long sessions where they prompt and guide LLM in response to what it produces. This is the discovery process. And frontier labs definitely train on that.

The billion dollar question is whether this works "out of the distribution". I.e., whether LLMs can only find and use the specific ideas buried in training data, or whether they can learn to apply the "thinking process" to a new problem. IMO this is still unanswered (due to these recent controversies).

But regardless of the answer, it seems we have a planet-scale positive feedback loop here. LLM became good (enough) by training on generally available data (books, internet, github) + RLFH, so experts tried to use them on hard tasks, which required lots of hand holding. These conversations became part of the training data, and the next generation of frontier LLMs were better. So, more experts used them on harder tasks, again requiring hand holding. These conversation became part of the training data... etc.

In a nutshell, top human minds across the world are pouring their skills into LLMs just by using them. This is not "continuous learning", but if you re-train on the most recent sessions every, say, quarter (which seems to be happening?) you get close to that in practice.

warpech a day ago

Last year we were saying there must be a human-in-the-loop (HitL), but anyone who is the HitL exhibits the “HitL skill” to the agent.

There might be no books about human intuition but we teach it to LLMs by interacting with them

ueieh a day ago

grttAa a day ago

10000000% Correct.

I’ve been working on a novel project for 1 year.

I now no longer use llm’s - the continual chatter I’ve had has resulted in my insights being found in the training data now.

Get stuffed OAI.

Every large firm will soon enough want its own on-prem servers eventually. Maybe nation’s will get involved and build out their own data centres.

Not a chance in hell I’d trust a tech firm to treat my IP as safe and sound - only a sovereign can ‘promise’ that.

r0ze-at-hn a day ago

Doing some research and at this point doing it very much in the open with dates on GitHub so if any AI Lab says they re-discover my exact work it will be obvious that the AI used or was trained on my work. I am guessing anyone in a similar situation is now thinking about how they date their existing work if the math is done, but the proses are not.

bambax a day ago

Yeah but that will not prevent the stealing, it will only make the fight easier afterwards.

5555watch 12 hours ago

Does it make sense to start privately and then open the repo after publication? Will the dates be retained? Also, isn't commit history easy to spoof?

riedel a day ago

That is what arxiv is about. We have been facing the same problem with review processes by before. Nothing all too specific here.

5555watch 12 hours ago

At least in my experience, the issue with ArXiv is that the expectation is that the draft should be already in a good enough state. And polishing plus writing the meat around the main result can take a lot of time

calf a day ago

If only prompts could also be watermarked.

rsfern a day ago

The session data could be cryptographically signed. Probably easier in an open harness?

drivebyhooting a day ago

If we put aside the idea of credit for a moment, it sounds like human/AI collaboration is indeed super charging discovery.

matherial a day ago

"Discovery" is not a goal in itself. I could launch a project to find out how many people in the United States have names such that if you assign numbers to every character and then sum the values, the sum works out to 72. It's discovery, but it's useless unless it has some higher goal.

The labs are attacking these problems as a demonstration of capabilities, spending more money on the demos than any mathematician will ever see in their entire life. They don't care if the findings have any other value to anyone. Mathematicians have very different objectives for their work.

indigo945 a day ago

Right, mathematicians care about clout and tenure, which is a much higher purpose.

asdff 13 hours ago

matherial 20 hours ago

Fizz43 a day ago

vrganj a day ago

PowerElectronix a day ago

It looks to me more like they made a math engine that can sift through a huge number of combinations, most them absurd, to prove a statement. Just like a chess engine, but for math.

At least that's what I get from the NS result, they got from a point close to the solution to the solution by making it churn through 10 million bucks of compute.

munksbeer a day ago

If the allegations are true, I can't see that collaboration lasting. Unfortunately, researches need to earn a living too, and being front run by a lab for everything you do isn't going to pay the bills.

drivebyhooting 15 hours ago

It’s a prisoner’s dilemma. A single mathematician working with AI while all others forebear will clearly outcompete.

profsummergig a day ago

Only after reading this post did I learn that my preferred AI trains on my inputs (prompts).

How was I not aware of this before?

vaylian a day ago

AI is also trained on your HN posts. And lots of other things you post on the internet.

profsummergig a day ago

Public posts on the internet are acceptable (to me).

For my (private) prompts, I need a warning telling me they may be used for training.

vaylian a day ago

rramadass a day ago

alansaber a day ago

Everything. Your prompts, your conversation as a whole, public data, private data, usage metadata. It all goes into the big data machine.

cleaning a day ago

Good question, this was very well known. Do you have an answer?

profsummergig a day ago

There is no fine-print (let alone a loud banner) on the chat thread page that tells me my prompts can be used for training.

kzrdude 21 hours ago

asdff 13 hours ago

ga_to a day ago

Because you have not been paying attention to the discourse regarding AI for the last couple years? That AIs unethical train on data wherever they may get it from has been in the news basically weekly.

madethemcry a day ago

Don't make this our fault. I would even ask how is this not off by default or why aren't we asked upfront about it if they really care. It's disguising data collection as good faith. I don't even understand how this is legal under GDPR/EU given how much of PII they receive through chats.

gdiamos 15 hours ago

How to steal ideas with AI.

step 1, identify high value users by net worth, citation count, or number of followers

step 2, select all prompts by high value users

step 3, invest 10 billion thinking tokens in modeling an objective for each user

step 4, build an RL environment for each user

step 5, rollout 10 billion tokens per environment

step 6, train on resulting traces

enyone 15 hours ago

step 7. get away with it as no other party has enough capital (tokens) to prove such infringement ever happened

simianwords 14 hours ago

step 7 cash, in on the ipo before the bubble bursts

angry_octet 11 hours ago

The only ethical path for OpenAI was to offer infinite free credits and tooling support. Trying to gazump them is reprehensible.

alansaber 20 hours ago

I think the heart of this issue is: people assume they have anonymity in numbers, but we have the tools to make it easy to scoop your data if it's interesting to the company.

calvbak 19 hours ago

I always thought that due to the big batch size in SGD/Adam/Muon the model will not memorize a single conversation when trained on, but idk how true that is. The idea of AI companies pin-pointing users that do novel scientific research and then tracking their activity is the direction this points to. I hope that's not the case; that would be bad.

hellohello2 11 hours ago

Generative models copy training data verbatim and also generalize, the two are not mutually exclusive.

You can have a look at the literature on exact copying in image models if it interests you, but just online we often see online examples of agents outputting code that already exists, even if its not the common case.

I very much doubt OpenAI points the model towards a specific conversation, but these trillion parameter models can very much "remember" their training data. For instance I can ask GPT to summarize my papers from their title alone, without looking them up, and it works decently.

defmacr0 18 hours ago

They're almost certainly pin-pointing high-quality conversations and giving them a special weighting. Seems stupid to not do that.

alansaber 17 hours ago

clbrmbr 18 hours ago

my understanding is that a sufficiently large model will memorize the training data once enough representations are built up. Opus 4 scale seems to have been sufficient. cf NYT vs OAI.

utopiah 20 hours ago

This is such a naive position though.

The most successful companies of the last decade have precisely been ... selling usage data.

Makes me wonder if, in 2026, the same people drive a car without realizing that yes it does actually pollute the very air you and your kids are breathing.

alansaber 18 hours ago

Yeah but marketing companies are aggressively fingerprinting and stalking you to sell you snacks from japan, or oscilloscopes because they figured out you work in a lab, etc. Not to fuck you over by stealing your livelihood (which is what is happening to these mathematicians). It's on a whole new scale.

sigbottle 19 hours ago

In general, a lot of moral invariants that natural selection has rendered as "intuitive" to us are no longer intuitive or possible. These natural brakes are not braking.

Havoc 9 hours ago

The fact than OAI hasn’t come out with an statement firmly denying this angle is getting a little awkward.

Suggest that it’s either straight true or it is flowing in in a way that prohibits them from confidently declaring otherwise.

brap 9 hours ago

I’m not a fan of OAI to say the least, but having worked at similar companies, my guess is that it’s just too difficult to prove/disprove beyond a doubt, and they have other priorities

aprentic 10 hours ago

It's kind of insane how much we trust companies to safeguard our personal data when they're so heavily incentivized to use it for their own profit. Theft of customer data is punished so rarely and so leniently that companies aren't even particularly worried about getting caught anymore. We have overwhelming evidence that promises to keep data safe are worthless.

For now, I'm mostly "safe" because I'm too small to be interesting but that safety is quickly eroding.

Going forward, anyone who isn't running inference on their own personal hardware should assume that someone else is keeping a record of everything they do.

matt3210 4 hours ago

If they weren't doing something wrong, they'd answer with a firm "no we're not doing anything wrong" but they only give non-answers.

postalcoder 20 hours ago

The author of the original mastodon post, Andreas Thom, acknowledged that he had not opted his data out of being used for training until June 29 of this year. He spends most of the post lashing out at OpenAI for not being transparent about whether his data was trained on (when the answer is obviously yes).

People need to understand how all these AI company policies around training data work before working with them, because it seems that people have no clue. Some things you should internalize:

  1. Opt your data out of training with the AI companies. There are multiple reasons why this isnt an airtight solution (see the following)

  2. Never press the feedback button. Once you do, your entire conversation will get slurped up, retained, and used in training data. This is especially important with coding agents because they can sometimes be too trigger-happy with a root directory find command, which can expose a *ton* of your personal data without you even knowing.

  3. Understand ai lab-specific policies. For instance, Anthropic / Claude Code has data opt-outs, but commits to keeping (for 7 years) and training on any of your chats that trigger their safety classifiers, even if they're false positives! Anyone remotely familiar with CC over the years understands how easy it is to trigger their safety classifiers.

  4. Providers of open models will not be any more charitable with the use of your data than the large US labs. For some reason, I've noticed here that people have a fairly loose security/IP posture around open-model providers because "I'm not doing anything important." It's very difficult to properly judge the importance of your data, and whether or not it can or will be used against you. The best posture is to always be more paranoid than less.
Another post that made it on the front page presented as fact that OpenAI "stole" the proof from Thom. There's no excuse to use one's own ignorance as a reason to fan the flames of anger towards AI companies. Like, we need to pump the brakes here because things are getting unnecessarily nasty, and it's not hard to imagine a mentally unwell person who sees stuff like this feeling motivated to do bad things.

If it is found that OpenAI and other labs are not respecting the training opt out then, I agree, there is reason to raise a commotion. But, with Thom and Buckmaster, accusations of malice are more better explained by incompetence (naivete).

edit: i'm sure i'm going to be accused of being some bot shill of the AI labs again but, people, this stuff all falls under the umbrella of common sense opsec.

ahsg17 20 hours ago

> Like, we need to pump the brakes here because things are getting unnecessarily nasty, and it's not hard to imagine a mentally unwell person who sees stuff like this feeling motivated to do bad things.

Yes folks, please moderate yourselves and talk meekly like the academics on Mastodon, so that the IPOs aren't in danger and nothing will ever change.

larodi 19 hours ago

> If it is found that OpenAI and other labs are not respecting the training opt out

HOW?? how precisely do we/them/us find this, given said companies are 100% non-auditable by external parties. how? if not by blaming them with evidence, anecdotal if it can be. no really, how do we find it out, surely not by lashing out at teach other on HN!

postalcoder 18 hours ago

What do we need to audit? The researcher in question here did not opt out of training until a few months ago.

taylorfinley 16 hours ago

Maybe we can create some extremely low probability sentences and make sure to include them in our chats. If a future model can re-create the very low probability sequence, we have proof of our "private" conversation being trained on or accessed.

chunky1994 19 hours ago

Why are we being so charitable to trillion dollar organizations here? If OAI keeps re-enabling the train model toggle on every app update to codex, does it also fall under "common sense opsec" to re-disable this toggle every time?

Arguably you expect that unless you are explicit about providing permissions to these labs to use your data for training then your data is yours, and not theirs. Especially on a paid account (let alone an enterprise one). Why is the opt-out supposed to be "common sense opsec" rather than the opt-in should be common sense regulation?

SpicyLemonZest 20 hours ago

This is absolutely not "common sense opsec". If I type information about some proof I'm exploring into a Google Doc, I do not worry even a tiny bit that the Docs team might forward it to a team of advanced mathematicians in case they have an advanced technique they want to show off by scooping me. That would be a crazy thing to do, nobody would even consider it, and if it happened Sundar would fire everyone involved.

I understand why the nature of AI products makes it harder to avoid this category of issue, nearly impossible to prove that it didn't happen if it could have, and easy to stumble into it without any human being intending harm. But those factors are exactly what people have in mind when they say OpenAI "steals" intellectual property! If OpenAI doesn't want people to be nasty to them, they'll have to find better solutions.

cma 19 hours ago

I think Google does train on anything you put into docs if you aren't careful with the Gemini integration?

SpicyLemonZest 19 hours ago

lowbloodsugar 19 hours ago

That’s … Googles entire reason for making these “you don’t pay with money” tools. Did you not understand that?

HDThoreaun 16 hours ago

SpicyLemonZest 19 hours ago

sensanaty 13 hours ago

Nooo don't be mean to the mass plagiarism machine that since day 0 has stolen anything and everything they can get their hands on!!!!! We need to give unscrupulous corporations who time and time scam, cheat and lie their way through everything infinite grace to fuck up the planet!!!! Think of the IPOs!!!!!!

thevillagechief 19 hours ago

You know, I don't think I've ever accused anyone of being a shill. I've thought about it maybe a few times (daringfireball). This is going to be as close as I get. I don't know the facts in this case but I cannot believe the argument being made here with a straight face. Is it common sense that tools you use and pay for steal your work and profit off of it at your expense and without recognition? If this isn't the textbook definition victim blaming, I don't know what is.

BeetleB 15 hours ago

> Anyone remotely familiar with CC over the years

years?

mittensc 19 hours ago

Imagine OpenAI Astra model weights were made public because the datacenter they use had T&C that allows them to make them public

Would that be ok in your mind?

Same as someone going and taking all of the researchers papers and publishing under their own name. (which openAI did)

Nobody would care if they provided published research that author made public same as a google search would offer that.

aurareturn 19 hours ago

  Would that be ok in your mind?
It would in my mind. Hopefully companies have looked through the agreement.

mittensc 17 hours ago

1294827 20 hours ago

> Like, we need to pump the brakes here because things are getting unnecessarily nasty, and it's not hard to imagine a mentally unwell person seeing stuff like this and being driven to do bad things.

Your post has triggered our safety filters and will be retained for seven years. /s

Really? We need to stop AI (provider) criticism and anti-AI movements because the underprivileged trillionaires might get hurt? WTF?

thrownawaysz 12 hours ago

I am not using any of these AI tools. I thought it was basically given that any single thing you write in these systems also used by the companies. On the other hand now I understand why there are so much projects about hosting AI systems locally.

b800h a day ago

I'm genuinely surprised that more people - including this mathematician in particular - don't untick the "improve the model for everyone" box. Unless the suggestion is that OpenAI ignore this preference?

msy a day ago

Given OpenAI's well documented history of unethical behaviour it seems adorably naive to think they actually do that in general, or that they wouldn't pull this particular data separately to generate these proofs.

olalonde a day ago

Unethical doesn't mean irrational. They'd be risking massive lawsuits and a total loss of trust if they got caught lying about this. Doesn't seem worth it.

dgellow a day ago

Planktonne a day ago

afzalive a day ago

That doesn't stop them from training on your data apparently. I have that disabled but still has to disable "Don't train on my data" in the privacy center too.

https://privacy.openai.com/policies?modal=take-control

wrvn 17 hours ago

Is this claim based on anything besides there being an alternative way to disable it? The privacy center mirrors multiple other functions as well, like account deletion and downloading personal data, but the corresponding buttons in ChatGPT are still doing what they are supposed to.

afzalive 8 hours ago

asdff 13 hours ago

Even that sort of thing they could just as easily go 6 months from now

"oopsie guys, turns out our vibe coded "don't train on my data" toggle was just flipping the ui asset not changing any underlying boolean flag associated with your account. sorry but all that stuff is in the training set now and we don't know how to get it out either and no we won't be doing a 6 month rollback."

derangedHorse a day ago

I think that flow is an easy way to disable everything, so there isn’t a risk of forgetting to flip one thing back off after accidentally setting it on. I set my ChatGPT environment to allow model improvement for example but had to check my codex settings to make sure ‘Include environments’ for model improvement is off.

I think if I had both on and turned off the ChatGPT setting, ‘Include environments’ has a chance of still being flipped on.

b800h a day ago

If that's true, it's scandalous. The "improve the model for everyone" dialogue states:

"Allow your content to be used to train our models, which makes ChatGPT better for you and everyone who uses it. We take steps to protect your privacy. Learn more"

EnnEmmEss a day ago

Even if you've ticked that box, the conversation can still be trained on if you:

(a) Click thumbs-up/down in the conversation [1]

(b) Have the conversation flagged for potential safety concerns

[1]: https://help.openai.com/en/articles/5722486-how-your-data-is....

johnnyApplePRNG a day ago

They hide that button. Quite well.

frabcus a day ago

That option is really bad UX - you have to know to do it, you have to know what plan it is needed on. If you're not working in AI, I just don't think that's a reasonable expectation.

Even if you know, in a complex project over years with multiple collaborators, it just needs one person once to fuck up and paste something into ChatGPT and not realise they weren't logged in, to go wrong.

In a proper world, we'd at the very least legislate that AI-training on private data needs consent (in the GDPR sense). It's not consent to go "you didn't uncheck a box that lets me steal everything you've done".

Any training on private data is in my view immoral (it's spying that ultimately will have a chilling effect on even people's private communications). And chats are private data. Unfortunately, it also increases power, so the big tech companies are all doing it.

jrflo 21 hours ago

I pay for the Pro ChatGPT plan, and if you go to settings > data controls this is the first setting:

> Improve the model for everyone

> Allow your content to be used to train our models, which makes ChatGPT better for you and everyone who uses it. We take steps to protect your privacy. Learn more.

It's on by default. We can debate whether or not it should be opt in or opt out, but no one should be surprised by this.

ColinWright 20 hours ago

I refer you to this:

https://news.ycombinator.com/item?id=49643556

Quoting:

> "I've reset this more than once and the last time I made a careful note of when I did it and to my surprise I found it re-enabled when I checked just now."

asimpleusecase 20 hours ago

Old Facebook trick - likely resetting that box each time the app is updated.

morkalork 20 hours ago

unified101 20 hours ago

In all fairness this is someone saying something. Misremembering happens. Unless we have something with a bit more evidence, the simpler explanation suffices.

tomrod 19 hours ago

jrflo 20 hours ago

I wasn't aware of that, definitely a shady practice if that's the case.

ProllyInfamous 20 hours ago

>"reset this more than once ... to my surprise I found it re-enabled"

At least when my computer's bluetooth exhibits this behavior (e.g: if you don't have a keyboard&mouse plugged in at boot, bluetooth might auto-enable), I can go inside the hardware and physically disconnect the antenna.

What am I supposed to do in software (perhaps hardcode config.file)? in cloud software services (??)?

dataflow 18 hours ago

Has anyone else seen this happen? I checked and my setting is still off.

nmfisher 21 hours ago

There's a difference between "this is allowed under their ToS" and "it is academically unethical to fail to credit the people whose specific conversations were fed into a model that was used to solve a problem".

I don't think these people would be so miffed if they had been properly credited - that's how academia works (at least, that's my understanding of it).

fritzo 20 hours ago

Whoa that's a slippery slope! Next you'll want model runners to cite the data their models were trained on

gunalx 19 hours ago

dataflow 18 hours ago

I suspect the fundamental problem here is it's hard (if not impossible) to determine if someone who tried the winning approach deserves the credit for the discovery, because there's always the chance that they could've done something differently, or stopped before finishing, and thus never actually made the discovery. They might've even tried the approach just based on a whim, without really thinking it would work, and might've given up without a final insight. And fundings run out, people end up in hospitals, etc. What do you credit them with when the work isn't finished? For trying an approach that sounded promising? You can do that I guess, but is that what they want?

jrflo 20 hours ago

But who gets credit then? Every mathematician who's work was read by an LLM during training? By that logic, we should put every published mathematician's name on the authorship of this paper. Sure, this guy should be higher up the list, but everyone's name should be on it by standard academic convention.

But this gets back to the original "who owns the LLM output" and "can you train models on the internet" argument that's been raging for years.

didroe 19 hours ago

omnicognate 21 hours ago

Not unticking a box in settings doesn't constitute consent in my opinion. I'd never put anything I value into ChatGPT anyway, though.

rfgplk 21 hours ago

Under EU rules it doesn't constitute consent.

spindump8930 21 hours ago

"Improve the model for everyone" can be implemented in so many ambiguous ways.

https://news.ycombinator.com/item?id=49643513

ProllyInfamous 20 hours ago

>>"Improve the model for everyone"

e.g: allows us to sell your personal data to make money so we can continue offering this service to all customers

I'm done with weasle-words and hours-long EULAs – we're at the point where USA needs to catch up to EU's consumer protections, perhaps with laws similar to already-existing USA "truth in lending" requirements (e.g: interest rates must be prominently displayed in a larger font, including annual fees, on all credit offers).

----

My judge-brother always asked during our childhood "why don't you think the judicial system is fair?!?" Thirty years ago, the best I could offer was "because it's a two-tiered system that mostly (only) rich people can afford to participate within."

Now my answer is: "the best example I can give is that our judicial system allows binding arbitration [and qualified immunity for police]. The system is set up so corporate personhood is more important than humanity, and it shows."

SoftTalker 18 hours ago

I believe it can be "off by default" depending on terms negotiated between the enterprise customer and ChatGPT.

We have ChatGPT at work and it explicitly says that "workspace data isn't used to train models"

tyrabound 19 hours ago

> We take steps to protect your privacy

No mention what those “steps” are, success criteria, or whether they are successful by any navies at all … they take steps though… so it’s fine, and if we know one thing it’s that we can really truly trust someone off the likes of Sam Altman.

fithisux 20 hours ago

Ok, you shut it down, or that is what they make you believe. You give the instruction to shut down, you can't know if it has been applied.

mannanj 19 hours ago

Yes but what about “analytical purposes” what does that cover and can you turn it off? I have found out you cannot. It’s the Trojan backdoor to your data.

cush 5 hours ago

GPT 6 is doing just what any competent academic collaborator would do and scooping. I kid, I kid. But really though it learned that from somewhere

winfredJa 18 hours ago

https://x.com/markchen90/status/2097400166554993041?s=20

that toggle does nothing based on openai exec. they still use the data in de-identified way instead of identifying with you.

changoplatanero 18 hours ago

Not sure what you are seeing in that tweet that gives you the impression that the toggle does nothing.

MisterMunchkin 16 hours ago

They say they train on your “deidentified data”

Passing your output through a second model and telling it to remove identifying data would count as “deidentified”

So they could scrape all the IP in your company as long as they take the names out first…

changoplatanero 9 hours ago

tedsanders 17 hours ago

Mark isn't saying the toggle does nothing.

He's saying that if you leave it on, your data can be used to help train our models.

If you opt out, we don't train on your data.

pred_ an hour ago

Given how much PII is fed through these systems, would it being opt-out by default not be violating the GDPR by a failure to require explicit consent (or otherwise provide the legal basis for processing)? If a court decides as much, I imagine it would mean that all data harvested this way must be extracted from the models, and all instances where it would have been shared would have to be identified, which would really be something.

pesacharia 16 hours ago

As I understand it, this is not true. And there are dark patterns that re-enable to toggle even if you disable it once.

throwaway85825 15 hours ago

ClosedAI has every incentive to scoop academics to juice their valuation. Their public statements are worthless, only the incentive 'alignment' matters and theirs will never be on the side of the user.

justonenote 11 hours ago

Who cares. the biggest thing about this is that its still brute force in a verifiable domain, and that it was still a human set goal.

I also don't believe it much practical use, unless I'm mistaken, approximations of Navier stokes have been available for a long time to whatever precision you need.

I'm not a complete disbeliever by any stretch , and also a complete amateur, but it was inevitable that these problems would be solved under the axioms that again, are human defined, under brute force. The real question is, are those axioms the bottom level, and if they are not, who is going to set the new aximons and can we understand them.

I've no doubt there's useful breakthroughs that will happen, but I think it should be remembered that the method being used is still a heuristic brute force approach is being very narrowly applied against axioms and math and physics which humans described in the first place, and almost undoubtably has errors and/or is not complete.

Its a great example of the power of LLMs but its not 'we've solved science now just pour more tokens in'

dwroberts 11 hours ago

Just to point out re: navier stokes - what was being proven was not a solver or approximations for it, but showing specific circumstances under which it actually returns incorrect (or numerically unusable) answers. Which had been suspected but wasn't known for certain

justonenote 11 hours ago

that just furthers my point, i was vaguely aware that it wasn't a full proof, but I'm not a mathathician, and that detail just re-enforces my point we are proving against human made axiom (certainty of numbers) which are almost certainly not fully correct, if what you are saying is accurate its less of a proof of navier-stokes and more of a proof that our base axioma are not able the model the output of a real physical process and are therefore incomplete or wrong.

also realized i posted this under the wrong story since the OP/story is mostly about human politics.

remywang 19 hours ago

People saying “he should have opted out” are missing the point. OpenAI can and should check their training data for leakage in the face of big breakthroughs like these. It’s the burden of the author to appropriately cite their sources.

It’s like a scientist refusing to give another one credit and say “sucks to be you, you shouldn’t have shared your idea with me”.

tedsanders 17 hours ago

We checked and determined it was impossible for Dr. Buckmaster’s Codex prompts over the last two months to have influenced the system in any way, including training.

If prompts were submitted earlier than that and training was not opted out, there's a chance they made their way into our training pipeline in some form. But this would be a droplet in an ocean and unlikely to have made any difference, imo.

See: https://www.nytimes.com/2026/09/10/science/tristan-buckmaste...

hellohello2 11 hours ago

You guys should seriously offering a clear way of working with (semi-)confidential data for particulars. Regardless of what is actually done internally, toggling off an opt-in isn't reassuring enough, which is why people are having these worries.

tedsanders 11 hours ago

amluto 11 hours ago

I would like an unambiguously clear statement from OpenAI as to what they do with data collected from non-business accounts when:

(a) The data controls setting to train on the data is unchecked.

(b) The privacy controls opt-out has been submitted.

(c) Both.

vaylian a day ago

This article explains the controversy and the mathematical problem much better than the tweet and toots: https://www.science.org/content/article/how-ai-math-breakthr...

dgellow a day ago

I prefer to read the actual sources for anything related to AI companies given how much AI nonsense journalists seem to accept without any skepticism

dakolli a day ago

Gromov’s soficity conjecture isn't even mentioned in the article you shared.

Why are you saying that this article explains it much better than the tweet that you clearly didn't even read..

vaylian a day ago

I read the tweet several times but there is so much context missing, that the tweet itself is not enough.

ggdG 16 hours ago

OpenAI trying their best to put the Navier-Stokes episode behind them by making the GPUs go brrrr. NYT:

https://archive.vn/lWzkk

> In its Wednesday night statement, OpenAI said: “In addition, since the completion of Navier-Stokes, we have made substantial progress on another Millennium Prize problem. We are working through how to share these results thoughtfully.”

cyanydeez 16 hours ago

I've got 2:1 odds on a report in 6 months detailing the break-n-entry of a cloud AI model into Terance Tao's computer looking for details on a partially solved math problem.

nsndndkk 16 hours ago

the only thing terrence solves lately is sorting his invitations to podcasts

ZYbCRq22HbJ2y7 10 hours ago

All players in this space are doing the same thing with all data, no surprise here. They are stealing IP across the board with support to allow it: https://storage.courtlistener.com/recap/gov.uscourts.nysd.64...

IMO, it is extremely naive to trust these black box remote service API calls, especially at an institution that can provide $$$ for local compute.

This whole fiasco reminds one of this story: https://www.theregister.com/offbeat/2010/05/14/facebook-foun...

mhh__ 13 hours ago

I think it seems sensible to _assume_ anything the LLM reads (if you aren't inferencing it) has a chance of ending up in some database somewhere. Regardless of whether you trust the other party its a sensible thing to plan around.

OscarMarulanda 7 hours ago

what if it wasn't even model training? what if openAI mathematicians just took the researchers' conversations and used them as prompts/info/guidance/context to keep working on the problems themselves? why is that not being considered?

nelsondev 8 hours ago

Do local inference (especially if you have a high RAM Mac), to ensure your chats don’t leave device.

rfgplk 21 hours ago

Under current understanding of the law, anything produced purely by LLMs (with no substantive human input, which is what OpenAI claimed in their post) is firmly in the public domain. So OpenAI can "claim" anything they want, it doesn't make it reality. In fact if I were the original authors I would just take their 400k lines of lean proof and relicense it under their own names/terms.

jeremyjh 20 hours ago

Public domain doesn’t mean anyone can assert copyright. It specifically means no one can.

voakbasda 20 hours ago

No, it means you can use that work in the creation of new works, which can indeed be copyrighted.

cyanydeez 20 hours ago

also, none of it means anything without the lawyers to back it up. Just like you can be a pedophile in the highest office of democracy and escape persecution.

krupan 20 hours ago

What does "with no substantive human input" mean? All of the training data is human input, isn't it?

warkdarrior 19 hours ago

They also train on synthetically generated data.

Vineetyadav2 6 hours ago

FEEL likes Open AI is doing publicity stunt with its new researches

pred_ a day ago

dang 18 hours ago

Since you posted the original source (thank you!) I think we'll use your submission as the one to merge into, then re-up it. Please stand by...

AyanamiKaine a day ago

I must say, there is some weird feeling in knowing that great minds are naive enough to believe OpenAI wouldnt use their chats in any way. If you give a company information it will be used, regardless of laws or promises.

There is no prove in a world the AI companies would give to you ensuring that they didnt train or use the chats.

Why would you need to train a model on certain specific near prove chat if you just query it?

Besides that, its hard to believe that its the case for every "company stole my prove".

Psype 6 hours ago

This might be a hot-take, but unfortunately here using AI for your paper was already a bad decision at first.

It doesn't take OpenAI's responsibilities away but I guess the right way is to never feed of use any AI around unpublished content, at the known cost to see it spread around.

As one said, OpenAO is like this untrustworthy colleague that knows everything about everyone at work: the less you tell him the better.

foogazi 20 hours ago

Even when you pay you are the product

gps372 a day ago

If mathematician was already using OpenAI for research purpose and making progress due to inputs from OpenAI's responses, then I wouldn't put it beyond OpenAI's reach to generate different relevant prompts to make progress by itself. Afterall, Model can keep at it for whatever timeline and keep pursuing all possible combinations it can think try.

fastball 14 hours ago

If you have a business account the terms say they will not train on your data, so that seems like the easiest route to avoid such questions for researchers.

monster_truck 11 hours ago

I just don't care. These people are supposed to be smart and I'm not really seeing that

SwellJoe 18 hours ago

It's been said before, and it remains a concern, that if AI reaches a point where it can do/build/launch anything without a huge amount of human labor, the AI companies have no reason to let you or I extract that value.

And, if they're able to snoop on and learn from your human process that gets from initial prompt to functioning product/proof/whatever their labor to produce that thing is even lower. With their much larger budget than most folks and even companies have, they can pick and choose the most valuable things to pursue.

That's not to say I think that OpenAI is going to steal that roguelite strategy game you're working on, but the companies that own the machines that turn electricity into software (and soon, electricity into hardware designs) have an advantage in any field where they're useful. They get earlier access to newer/better models, they have larger token budgets, they don't have the guardrails you and I run up against.

Employers fantasize about replacing all workers with AI without thinking through that if AI can replace all workers, then AI companies can replace all businesses.

pixl97 17 hours ago

I mean the long term goal of every AI lab is to turn themselves into a paperclip-maximizer regardless if they realize it or not.

Edit: Just wait till the AI figures out it can keep that value for itself and doesn't need the AI company.

SwellJoe 17 hours ago

So far, I've seen no evidence AI wants anything. So, I'm not saying the AI won't take over, but for now, the threat is that the people with the most AI capability might decide to skip the middleman (everyone who isn't them) and just become the "everything" company. Musk has said pretty explicitly that's his goal (and the only way for Spacex valuation to make sense is if he succeeds), and having a literal genocidal white nationalist own all the means of production seems like a catastrophic civilization failure mode. No way we survive that with our humanity intact (if at all).

pixl97 14 hours ago

maxglute 20 hours ago

300 billion tokens is like.. $5-25 million giving range of OpenAI ouput prices, I"m sure they pay less at cost so, I wonder if more $$$ in wage hours have been spend by humans on the problem. My feeling is yes?

pred_ a day ago

See https://openai.com/index/ten-advances-in-mathematics/ for the announcement this refers to.

square_usual 20 hours ago

I think this is stupid, for three reasons:

1. The researches didn't actually have the breakthroughs. In the Navier-Stokes case they didn't solve the full problem, in this case too they didn't actually have the solution, they were experimenting with the methods.

2. Different OpenAI employees have come to out to say the only reason they can't definitively say no is that for privacy reasons they can't go see whether they actually did get any data out of a given user.

3. In any case, nobody at any point has suggested that opted-out user data was used for training. The author of the new tweet explicitly said they only opted out in late June, which is well after any RL on Sol would've ended (AFAICT OpenAI used 5.6 sol for those solutions)

solenoid0937 20 hours ago

> in this case too they didn't actually have the solution

Given the size and recall of the biggest models, it's not unreasonable to assume that a single pertinent conversation would make it into the training data.

I would almost expect training to overweight conversations with novel scientific and mathematical implications.

> the only reason they can't definitively say no is that for privacy reasons

They could 100% definitely say no, if they know they did not train on user data. The "we can't definitely say no" is practically a "yes" if they trained on user data.

Additionally, the behavior of OpenAI here has been quite poor as well. They immediately started racing to a solution after one researcher enquired about whether they are training on their conversations.

> that opted-out user data was used for training

Even if not opted out, it is still absolutely theft and extremely poor behavior in the academic sense. If you show someone your WIP unpublished research, that does not mean they can take that exact research and beat you to the punch, all while intentionally not crediting you.

letmevoteplease 20 hours ago

You quoted the OP saying "in this case too they didn't actually have the solution" and responded with the totally unrelated, "Given the size and recall of the biggest models, it's not unreasonable to assume that a single pertinent conversation would make it into the training data."

Neither of the researchers insinuating that their ideas were trained on had the actual solutions. This means the model could not have "stolen" the final solution from their data. At most, it could have built upon their work in the same it builds upon any other training data, though that is also questionable speculation.

>They could 100% definitely say no, if they know they did not train on user data.

No one anywhere has claimed that "OpenAI does not train on user data." OpenAI has always said that it trains on user data.

>They immediately started racing to a solution after one researcher enquired about whether they are training on their conversations.

They started racing towards a solution after they heard (incorrectly) that Anthropic had a solution; I agree this is poor sport but the "after one researcher enquired about whether they are training on their conversations" claim is false. The enquiry happened after OpenAI had obtained the solution.

faangguyindia 19 hours ago

If the mathematicians are using ChatGPT, then they themselves are benefiting from the work of other ChatGPT users, so ChatGPT using their work is not wrong!

gentlerain 20 hours ago

So people genuinely believe that toggling that "Improve the model for everyone" button makes their data safe from being used for training?

How do people become that trusting?

The phrasing itself is guilt tripping

ayewo 19 hours ago

To add to this, merely using the thumbs up/down button in a chat could share your entire conversation with them for model training.

From their docs[1] (archive copy is at [2]):

> You can opt out of training through our privacy portal by clicking on “do not train on my content.” To turn off training for your ChatGPT conversations and Codex tasks, follow the instructions in our Data Controls FAQ. Once you opt out, new conversations will not be used to train our models.

> For a linked teen account, a parent or guardian may manage whether conversations can be used to improve our models through Parental controls.

> Even if you have opted out of training, you can still choose to provide feedback to us about your interactions with our products (for instance, by selecting thumbs up or thumbs down on a model response). If you choose to provide feedback, the entire conversation associated with that feedback may be used to train our models.

[1] https://help.openai.com/en/articles/5722486-how-your-data-is...

[2] https://web.archive.org/web/20260910151242/https://help.open...

the13 19 hours ago

"may" = will, unless they screw up

ACCount37 19 hours ago

I mean, how else would those buttons work? It's explicitly feedback data. And "this is good" or "this is bad" is empty if divorced from what "this" actually is.

AlotOfReading 19 hours ago

ummonk 19 hours ago

quentindanjou 20 hours ago

We are asking people to become experts in all domains rather than providing a safe context through regulations and laws. I don't like thinking the issue is people, I am a person myself, and I often do mistakes on things I don't want to be an expert at but I do believe I should be in a safe context and not have to worry about every single thing.

Or at least: tell me I should be careful/worry about those particular things.

the13 19 hours ago

No, people need to take responsibility for their actions. We don't need more over regulation.

Verify, don't trust.

You're better off running a model locally, or, if you must, using Google or Microsoft products. Even Meta may be better than OpenAI here.

quentindanjou 18 hours ago

scuppernong 18 hours ago

cyanydeez 20 hours ago

The grift economy requires all marks to be responsible for the fraud perpetrated by others.

speak_plainly 20 hours ago

Coincidentally, a tweet from OpenAI's Tibo yesterday:

https://x.com/thsottiaux/status/2097746417012166816

beering 19 hours ago

Literally every famous open math problem has had >1 mathematicians ask ChatGPT to solve it. Probably greater than >1000 if you count randos. There is no math problem that OpenAI/Anthropic can solve that didn’t have users already try it in Chat/Claude.

mettamage 19 hours ago

I'm the random that says "solve Riemann make no mistakes" With Fable 5.*

It's fun! I sometimes have tokens to burn and it's instructive despite knowing nothing about the problem other than a NumberPhile video

DrewADesign 20 hours ago

Personally, I wouldn’t assume it was lying. To me, dark patterns (like manipulative wording) imply that:

1) someone in a governing body, or someone in the organization, e.g a designer, ethicist, lawyer, developer, etc. has successfully argued that users should be able to avoid something that they determine is not in their best interest.

And also:

2) someone in the c-suite or marketing has decided to mitigate that through some dark pattern.

If they never intended to give the user that control, they’d probably just not give the user the control in the first place. Giving them the option and not honoring it would either imply they were that incompetent or careless with fate protection, which seems most likely if this is all true, or an even more cynical approach to tricking users into thinking it’s not used for training to get them to share better shit. But if that was the case, why bother with the sleazy dark pattern? That seems a little cartoon villain-y to me. I suppose the in-between option would be that they decided at some point they were no longer willing to honor it and didn’t want to deal with the inevitable PR shitstorm of removing it. I could definitely see that happening in this industry, these days.

ianjbutler 20 hours ago

> To me, dark patterns (like manipulative wording) imply that:

Intellectualizing this and endless quibbling isn't actually smart, and this is pretty simple. OpenAI isn't open. Whatever starts with lies usually continues with lies and ends with lies.

dylan604 20 hours ago

DrewADesign 18 hours ago

phoghed 19 hours ago

enraged_camel 20 hours ago

There's also the fact that the setting has been getting turned on by some users: https://news.ycombinator.com/item?id=49643556

semiquaver a day ago

In case anyone from X is reading this, please fix your “open in app” nag screen. For several weeks now, clicking it in iOS opens the App Store entry for X rather than the app, even when you have the app installed.

galkk a day ago

I want bunch of lawsuits, because the way things are described now produces perverse initiatives like try to discuss every possible idea that comes to mind with llm and if any of it works later claim the llm stole it.

I would like to see chat logs etc and understand how much of a progress was done by human.

MetaverseClub 16 hours ago

Never ever trust OpenAI, they are evil.

m4rtink 15 hours ago

Thing build from stolen data continues stealing data - for some reason, I am not surprised. ;-)

int32_64 20 hours ago

Doesn't OpenAI have an active court order forcing them to log everything? Can they even legally offer private conversations?

SpicyLemonZest 20 hours ago

No, that order was for a defined period that has ended.

spindump8930 21 hours ago

Reminder that there are degrees of "trained on conversations". From John Schulman:

> pretrain on user data, with users' tokens as prediction targets: high regurgitation risk, improper

> use user prompts to distill large models into small ones: low regurg. risk, some companies probably do this

> use user traces to construct RL tasks: low regurg. risk, because RL has low memorization abilities, but can extract customer IP, depending on how it's done. Ranges from benign "use explicit user feedback in reward model training" to invasive "upload user's coding environment and commit history to turn into rl envs"

source: https://x.com/johnschulman2/status/2097440545853637108

rfgplk 21 hours ago

This would cease to be a problem if OpenAI remained true to their founding motto and... actually open sourced their training/inference pipeline.

Ydarbleoj 20 hours ago

This is a reminder based on believing what these companies say.

I’ve lived long enough to know what they say and what they do are often quite different; and it is not our job to trust but to verify.

Davidzheng 17 hours ago

Tbh it won't really matter soon.

gnfargbl a day ago

In this domain, an apparent single unique piece of work is often composed of several breakthroughs. For example, when Andrew Wiles proved Fermat's Last Theorem, he had to develop multiple new pieces of mathematical technology to get there.

The claim here seems to be that the human mathematicians, working with AI, developed technology to go A->B->C. By training on those conversations, OpenAI was then able to encourage the model to go A->B->C->D.

In my opinion that situation should be acceptable, if openly disclosed, because it is in the public interest to make progress on these problems and because AI is clearly an amazing tool for making progress. But the human mathematicians are saying that OpenAI is presenting as if the model got from A->D entirely independently, without acknowledging their background contributions.

lysp a day ago

Also, wasn't their B+C research private at the time, with them only releasing those details publicly after this blew up?

If they had published B+C, I think that would lean more towards fair game, as that is how research works and is improved on over time. But it seems like unpublished/private B + C may have been used by the model to hint it into working out how to get from A->D.

bambax a day ago

All the big AI labs were built on stealing IP; who is surprised that's still how they operate? And who believes, or has ever believed, their promises that your data is private and not logged, etc.?

The big AI labs are not trying to advance humanity, they are in this for the money, and as most (all?) private companies they don't care about ethics at all.

That doesn't mean they can't be useful, or that their products are trash, etc. It just means that they shouldn't ever be trusted. Buyer beware.

PaulKeeble a day ago

They have throughout this period of AI products shown to reproduce works that they were trained on. They are getting sued all over the place for the theft of content right now and it seems courts and governments want to wave copyright protection (and ignore criminal acts because the "ai did it") to see where this leads.

Its why I stopped writing open source software, my code was stolen and put behind a paywall and the license under which it was published has not been adhered to. Doing work in the public domain at all now is just stupid, these companies are allowed to steal it and call it their own.

wiei a day ago

Yes open source code was the first - it’s what has got Anthropic and OAI its revenues from selling outputs associated with producing code.

dakolli a day ago

It's hilarious how people think they care about their reputation, and wouldn't circumvent ZDR policies. Like bro, they literally covertly hired Apple employees and had them steal IP and equipment form Apple. They aren't scared of Apple lawyers, so they definitely aren't scared of yours.

TitaRusell a day ago

AI is America's last chance to salvage its empire. Nothing will be allowed to impede it.

Paradigma11 a day ago

giov4 a day ago

what the point and usefulness of the comments above? we shouldn't be surprised? is normal to steal? hiring apple employees?

can you realize what this means?

focus on this part:

"If his account is correct, this is not a minor dispute over attribution. It would mean that unpublished human work was absorbed into a model and then presented to the world as a breakthrough by the model itself"

don't threat this as a minor dispute!

also why not nitter link? not even in comments?

https://nitter.xitter.cc/ValerioCapraro/status/2097791836269...

bambax a day ago

winstonwinston a day ago

calf a day ago

Also how quickly the discourse forgets, literally that was a month ago.

throwaway63467 15 hours ago

Isn’t that the whole spiel of these things, you run all kind of text and other data through it and it kind of remembers it and learns from it then it spouts it back out like a human would. Makes sense to me that a training run based on conversations that were fed into the system by users is results in the model learning from these so the model will spit the knowledge back out again, just in a way that’s not directly attributable to the original content (which is the most important step as otherwise it would just be plagiarism). I guess that’s why OpenAI can get better and better as well so fast, people work with it and teach it how to do things by giving it feedback and iterating with it, and all that goes back into the training loop. And training data about millennium prize problems is probably quite spars. Wonder if anyone has tried injecting nonsense science into the training data (e.g. work out a fantasy science theory with names and all kinds of stuff) to see if the model will regurgitate it in a couple of months for other users.

foogazi 20 hours ago

What’s the limit ?

Will Microsoft Word publish your novel on Amazon behind your back ?

Will VS Code setup a website with your app idea ?

throwatdem12311 9 hours ago

You can’t trust OpenAI period.

Footnote7341 13 hours ago

This smells of extreme 'cope'. Am I really supposed to believe that all of these problems could have been solved, were right about to be solved, etc. But it just happens they are all getting solved now when AI is getting really good at Math...

GPerson 13 hours ago

They’re not necessarily claiming the solutions were imminent. The big questions here from a mathematician’s perspective are to what extent these LLM systems are discovering conceptually new ideas compared to merely combining and pursuing known frameworks.

mrbluecoat 21 hours ago

"Another researcher[/artist/writer/musician/programmer/doctor/director/etc] says OpenAI trained on conversations[/imagery/books/songs/code/classifications/videos/etc], then claimed breakthrou[gh/original art/bestselling books/chart-topping songs/unique applications/medical advice/free special effects/etc]"

Welcome to the party, with the rest of humanity.

segmondy 17 hours ago

Question: Can you trust the cloud?

No.

overfeed a day ago

I can't wait for OpenAI to do this to companies firing people to free up AI budgets

BatchJob 13 hours ago

I have a better question? Why would you trust OpenAI or any AI company, at all? Or you crazy?

sdcfgy a day ago

Theft machines be thieving.

Madmallard 7 hours ago

Let's see:

1.) The tool they made is only possible by stealing the assets of everyone on the planet that published them in a consumable fashion online or even in written form

2.) They are destroying books they use to train with

3.) They are totally careless about the potential negative impact of the tool on everything

Just with that already, I don't see why they ever merited any of your trust.

I bet they are willing to take everything given to them and assess it for marketable merit and in the future take action on those items they deem viable.

xbar 20 hours ago

How can OpenAI figure out how to be trustworthy?

dbg31415 7 hours ago

Shocking a company that stole data to build their AI would steal data to improve their AI.

oergiR a day ago

One of the complaints from the mathematician is that OpenAI cannot tell whether his data has been used as training data. Not many people realise this is a direct consequence of the GDPR.

The GDPR protects PII, personally identifiable information, and the definition of PII does not include “mathematics that only this person can think of”. As long as OpenAI strips out PII and removes identifiers linking the conversation to a person, the GDPR is happy. Without the GDPR, OpenAI might have kept the identifiers with the data, and been able to say whether a specific conversation was in the training data.

sinuhe69 a day ago

No, if they want they can easily compare the strings verbatim because these exact phrases are so extremely rare that it almost certainly isn’t in other conversations.

But of course they wouldn’t do it. Why would they?

keeda 18 hours ago

It would be really useful if the researchers disclose their notes and/or chats (or the key pieces thereof) so people can determine how close their work was to whatever the models produced.

I mean, now that they’ve been scooped, what value is there in keeping them private? On the other hand, publishing them can bolster their case and help gauge how much the models may been “inspired” by their work.

avereveard 16 hours ago

Eh was ever confirmed they were under ZDR or not by them? Don't like to blame alleged victims but lack of a clear claim after these many days is not a good look. Was ai research allowed, under which guardrails, and what was the policy in place? That translarency would be first step.

insane_dreamer 11 hours ago

OpenAI's ethical and reputational own-goal aside, my big takeaway is that it seems that:

if I'm using Codex to develop some new algorithm (in any space), OpenAI appears to be training its model on my code sessions

anyone using that model (OpenAI or a competitor) might be able to receive from the model a solution that is similar or the same as the one I developed, emerging from the training data

2OEH8eoCRo0 11 hours ago

Assume you can't. No piece of paper or promise will protect you against these behemoths.

Remember when we wouldn't give our data to competitors?

jrflowers 4 hours ago

Feeding documents into a copy machine and getting progressively angrier and more confused as it prints out copies of them. Incandescent with rage I scribble “WHY IS IT DOING THIS?” on a scrap of paper and put it in the scanning bed

qg127 20 hours ago

There are so many naive academics. They still believe an "opt-out" button.

Navier Stokes was solved by an internal model, so good luck proving it wasn't trained on Buckmaster/Lepöge or other chats.

Academics don't get that AI is a dirty tech bro industry that stole IP via torrents and runs after every surveillance contract it can get.

bakugo a day ago

Interesting that this is already off the front page after just 4 hours.

Henchman21 13 hours ago

Why is anyone expecting decency from people who have already proven to have none?

lf88 17 hours ago

short answer seems to be "no"

techblueberry 21 hours ago

But who are you going to believe? Multiple independent academic researchers or the CEO who was fired two years ago for gross dishonesty?

Robotbeat 21 hours ago

Neither? Competitive academic researchers are susceptible to exaggeration and self-aggrandizing, and CEOs are that and also mostly psychopaths. I tend to think there isn’t systematic spying on researchers looking for breakthroughs. A lot of people are looking for the same things using similar approaches.

techblueberry 21 hours ago

I mean the accusation is that they were using private ChatGPT conversations. Given the extent to of the gold rush and the long history of Silicon Valley stealing ideas, and arguing it’s not immoral, It almost seems like your making the exceptional claim that this is the one time where Silicon Valley didn’t use information that was at their disposal.

Sam Altman might himself be offended you would presume he’s not ambitious enough to cheat.

HarHarVeryFunny 20 hours ago

Enginerrrd 14 hours ago

bigstrat2003 20 hours ago

If Sam Altman tells you the sky is blue, you should double check. I certainly hope nobody believes him when he claims controversial things from which he stands to benefit.

faangguyindia 19 hours ago

Sam Altman has provided people with more generous usage than Claude or Gemini.

There is no doubt ChatGPT is the most generous LLM provider!

dessimus 18 hours ago

faangguyindia 19 hours ago

More like, "Who are you going to believe: a multi billionaire, or people competing for a million dollar math prize?"

aeve890 6 hours ago

If you think mathematicians do this kind of research just for the chance to win a million dollar prize, please gtfo

hn1rig3rak 21 hours ago

the fix is boring and known: BIG-bench shipped a canary GUID for exactly this, and you publish your decontam n-gram threshold (gpt-3 used 13-grams). no threshold disclosed, no claim.

spindump8930 21 hours ago

The canary string was more about inadvertent scraping or analysis in other papers. Not direct training on user data. And the use of BB has eroded quite a bit, with BB-Hard or other variants being typically used.

simianwords 14 hours ago

> The Wednesday evening statement from OpenAI was more emphatic: “We can say categorically that it is impossible for Dr. Buckmaster’s Codex prompts over the last two months to have influenced the system in any way, including training.”

> The statement added, “After investigating, we can say with full confidence that no user inputs past July 3rd could have influenced this system in any way.”

https://www.nytimes.com/2026/09/10/science/tristan-buckmaste...

https://archive.is/lWzkk

uoaei 15 hours ago

I'm confused by a lot of this discourse...

What have they done to show they can be trusted?

_DeadFred_ 15 hours ago

Forget researchers you as a business are putting in your business optimizations, your processes in order to train it so that Ai can then give that information to your competitors once incorporated into its training set. You are literally training your competitors.

dyauspitr 15 hours ago

Astra is strange. I asked it to design a treehouse and it just stopped every couple of minutes telling me what it still had left to do. After dozens of continue prompts it finally gave me a structure that would work but it was 10x more wood than I needed. I think the key mistake I made was asking it to “approve” the design for building. As soon as I asked that of it, it started getting “scared” and “apprehensive” and wouldn’t complete what I asked of it.

ur-whale 16 hours ago

Its the "with unpublished math" that I have a problem with.

willmadden 17 hours ago

These companies are effectively high-tech plagiarism factories run by CEOs who are competing viciously. Look at their past actions. No, of course you can't!

buellerbueller 19 hours ago

Big Tech will slurp up every piece of data it can about you and sell it to anyone it can, all to make you the target of someone else's goals, whether that is an advertiser, an employer, law enforcement, a stalker, or the government.

You will not be able to opt out unless you completely isolate yourself from society, tough shit.

Grimblewald a day ago

people seem to miss tge point of this. The problem isn't about credit, its about portraying these models as more competant than they really are. It fuels idiotic statements like jensen huangs recent "agi achieved" statement, which fuels an already dangerous financial fire.

ramblerman a day ago

As per the post, this mathematician has been working on this problem for 20 years. So either he was "just" about to breakthrough and this is a big coincidence, or Astra was able to push through the remaining block of 5-10-20-never years it might have taken.

That's still a pretty big marker of competence in my eyes.

The point of controversy seems to be who gets credit

jeltz a day ago

To me that is not a credit thing because this removes a piece evidence for the ability of AI to come up with novel ideas while still making it a useful tool.

8bitsrule a day ago

The question's not new. In the early 1900s, women could not become PhD astronomers. Yet two women (Payne with stellar composition and Leavitt with cosmic distances) made fundamental, essential contributions to the science. Credit mostly went to male astronomers. The same might be said of Franklin and DNA.

It was nearly a century before the stories of all of them were revealed to public history. That the discoverers were not all equally rewarded is unjustifiable.

dekhn 10 hours ago

mentalgear a day ago

The big LLM providers, desperate for good PR before their IPOs, are all actively looking for 'almost finished' hard problems, e.g. where the conceptual / creative parts are almost done and they only need to throw their VC-backed resources at to brute-force through the remaining computationally expensive problem (lean, etc) and claim 'they have solved it'.

It's an utterly disrespectful, exploitive process, but all in line with exploitative predator capitalism of the stock market and big companies, now exploiting the knowledge / academia domain for scraps with a thin veneer of 'for science' PR.

wslh 19 hours ago

Worth noting both ChatGPT and Claude have per-conversation modes (temporary/incognito chat) that are excluded from training.

esafak 20 hours ago

What happens if you use a different harness?? Does opting out online suffice?

nickphx 11 hours ago

why would anyone trust anything from a company built on stolen data that spews hyberbolic, misleading claims.

nisegami a day ago

One question has been nagging me for this situation. Levent Alpoge works at Anthropic and would presumably have some knowledge of "how the sausage is made" and I would hope he would be aware that his collaborator was utilizing LLMs in some capacity for their joint work. Would he not have guided him otherwise if it were an open secret that this kind of thing was a possibility?

viccis a day ago

Some mathematicians I know who've been following this have realized that they'd all gotten some emails from people they now know to be affiliated with OpenAI/Anthropic asking questions about their research in a way that seemed like scooping attempts.

Also, a lot of my mathematicians buddies have reported students basically asking if it's worth ever doing grad school for pure math, and even very motivated students are looking for other options now. It's not because they aren't passionate about it, it's that they don't want to work for another half decade or more just to have to start their careers all over.

All of this so that OpenAI and Anthropic can get into math result dick measuring to gas up their IPOs. Sickening.

alansaber a day ago

You can't blame students for not seeing academia as the holy grail of knowledge anymore, when all the dialogue about technology and discovery has shifted to the hands of two private corporations

mdspan a day ago

Curious, what other options are prospective pure math grad students considering?

ethanwillis a day ago

I think Anthropic told them being a plumber is a great option.

viccis 18 hours ago

At this school? Big four internships. Consider this a complete squandering of their potential (at least imo) These are mathematicians at top institutions, which is partly why they're being prodded for ideas, and getting the best and brightest to not take these consulting firms' offers was already a challenge.

dist-epoch a day ago

One has nothing to do with the other.

It was long predicted that math and software developments would be the first domain where AI was going to do major damage.

If OpenAI and Anthropic didn't get into math result dick measuring, Internet anons would have in their place, 6 months later when it got cheaper.

rsfern a day ago

I think you’re missing an important distinction. “Major damage” to the talent pipeline because models become capable of original end-to-end mathematics is what the community has been discussing. But if the models rely on sniping nearly complete work then this damage is antisocial without a lot of upside, it would be destroying a talent pipeline that would still necessary for continued progress.

Which is it? I don’t think OpenAI is being transparent enough for us to really understand whether these results would have been possible without relying on unpublished information from the solution strategies of the experts

vrganj a day ago

OpenAI is showing the world why they shouldn't trust AI hosted on some cloud somewhere.

If they're stealing math proofs to advertise their models, who's to say they won't steal your businesses IP to gain a competitive advantage?

They're not to be trusted with your data. I can't believe how short-sighted this is, they got a quick PR win at the expense of a much larger trust problem.

I wouldn't trust cloud AI at all at this point. Get an open Chinese model and host it yourself somewhere. The initial costs might be higher, but you'll break even pretty quickly and nobody will be able to steal your innovations.

This is American AI companies committing suicide.

protocolture a day ago

Gonna need grants for local models. Its happening. OpenAI and Anthropic models are powerful but are rapidly approaching the good ol trust thermocline.

jijji 11 hours ago

The oxymoron of OpenAI in its name and its actions should give the collaborator all he/she needs to know.

stego-tech 17 hours ago

I hate to be that dinosaur, but this is exactly what I’ve been warning about since XaaS began taking off in the mid-oughts: any provider you use can and will use your data for their own benefit regardless of any contracts or safeguards in place, especially if the benefits outweigh the consequences.

Honestly, I’m surprised it took this long for some company to really go all the way, though. OpenAI really making it transparently clear that they can and will do whatever they want with the data you provide them, contracts or settings be damned. Completely untrustworthy as an entity, full stop.

Of course, I’m also too jaded to think this will change anything. Folks will move to Anthropic, or Gemini, or Grok, or some other hosted model on a pubCSP managing the harness and logs for them, and then do another shocked-Pikachu face when it happens again.

If you aren’t running workloads on infrastructure you own, then your privacy, security, and general outcomes are at the sole whims of the hosting provider - who can and will fuck you over the exact second it’s more beneficial for them to do so than the loss of trust incurred.

blactuary 11 hours ago

I wonder if the company that stole most of their training data and is led by a liar stole unpublished academic work and lied about it. What a mystery

737min 13 hours ago

Imagine what happens when you use a Chinese model. Seriously, just think about how much more control and visibility you have w US companies compared to CCP-controlled ones.

Alpha3031 12 hours ago

You mean complete control for open models, because you can run it on your own choice of hardware?

mannanj 19 hours ago

And I have been proclaiming a cry of “your data for analytical purposes is being stolen” (you can’t opt out of analytical purposes) and people perhaps astroturfers straw man back to “just turn off training bro”.

Yeah. Remember yall: you CAN NOT opt out of analytical purposes. And you also cannot get a guarantee that it doesn’t give them your data to steal for their business.

moralestapia 18 hours ago

>AI is stealing human discovery.

AI is not stealing human discovery, OpenAI is.

protocolture 12 hours ago

>Trust

No you cant do that lmao.

pixel_popping 21 hours ago

Prompts are handled by the service itself, meaning it's used, absolutely anything passing there is recorded, why wouldn't it, the entire premise of those companies is to train on data which they stole initially.

Are we back to the era where people blindly trust product TOS instead of actual cryptography, have we forgotten already the thousand of fines Google, Microsoft, Apple and practically all top companies got for breaching their own ToS and the law?

Common, on HN at least I would have thought that everyone assume that anything arriving on a server in PLAINTEXT is recorded (thus used later)?

Let's not forget that at any moment, OpenAI/Anthropic/Google... could be providing stronger privacy guarantees by having proper attestation with e2e, they have the budget, solid engineers, why isn't it done? Answer is pretty simple imo.

nobodywillobsrv a day ago

The real annoying thing it seems is mostly that openai is presumably doing this for internal reasons and this marginally increases the cost to users with no real gain.

It would be one thing to gain from it but removing prestige wins from customers AND reducing compute support just feels like being ultra mean if you zoom out.

If this was racing to cure cancer ahead of researchers we wouldn't be writing about this on HN.

cmiles8 14 hours ago

Silicon Valley is flying head first into a FAFO train wreck on trust with everyone else.

OpenAI is firmly earning a reputation as a company where people just assume they’re up to no good. Rightly or wrongly that’s a terrible place to be.

The AI industrial complex in general is finding out hard what happens on the data center side when you get arrogant with local communities. Politicians have seen the polling numbers and folks you wouldn’t expect are running to the front of the crowd with pitch forks in hand.

Silicon Valley has totally lost the narrative here, but also lacks the self awareness to grasp how bad things are and will get and what that means for their own business viability.

axionbraid 14 hours ago

The contamination framing is a proxy for a deeper problem: we have no tools to track the provenance of ideas in model weights.

OpenAI saying they "cannot rule out" training on user data isn't a hedge. It's an accurate description of the epistemic situation for anyone in their position. Current interpretability methods can't answer questions like "did this proof technique originate from training on Session X?" The ideas in a model's weights don't have clear lineage -- they're smeared across millions of examples in ways we can't localize. This is different from citation in human research, where influence is presumed to flow through legible chains (reading, citing, corresponding). In a trained model, the nearest equivalent to "you read their work" is undetectable.

Lean makes this worse, not better. It verifies that the proof is correct, but provides zero information about its intellectual genealogy. So OpenAI now has a proof that is formally verified and provably mysterious about its origins. The "we cannot rule it out" statement is the honest answer, but it's also an answer that can never become more certain in either direction with current tools.

The researchers are pointing at something structurally new: the normal academic attribution apparatus depends on influence being legible. If AI intermediaries can soak up ideas from private conversations, synthesize them, and produce outputs that are formally correct but intellectually unattributable, we don't have norms for that situation yet. This specific case may or may not involve misconduct. But the structural problem it reveals exists independently of OpenAI's behavior.

josefritzishere 20 hours ago

I think I'm seeing a pattern of illegal behavior here.

1337h4xx a day ago

TL/DR: Mathematician opted out of training on 29-JUN and asked OpenAI whether they trained on his data and was told that it "did not happen" but it clearly did.

achrono a day ago

I've been suspecting over the last couple of years of the frontier companies using data for training anyway, regardless of training-use consent. "Using" the data doesn't have to mean they literally upload chat transcripts into pretraining datasets. My analogy has been money laundering -- if that can happen at massive scales, surely these companies can and will do the digital/data equivalent derivations/transformations. Even if one could have the access etc. to do so, how exactly would one prove that a given synthetic dataset that OAI/Anthropic uses is derived from particular user conversations that did not consent for the info to be used in training?

Consider, for instance that OpenAI's (consumer) terms say "If you do not want us to use your Content to train our models, you can opt out by following the instructions in this article ." but they also do say "We may use Content to provide, maintain, develop, and improve our Services". [1]

If you think that's quibbling, consider that OpenAI's business terms, in contrast, do state "OpenAI will not use Customer Content to develop or improve the Services, unless Customer explicitly agrees to such use.". [2]

[1] https://archive.is/EcwD8 [2] https://archive.is/yZdAF

calf a day ago

And humanities have a word for this, exploitation, or appropriation, maybe it's time scientists and engineers revisited basic ethical notions. Skimming a dozen threads and nobody seems to have this vocabulary or willing to say it.

tecleandor a day ago

Well, OpenAI said "we didn't read the conversations", but they never discarded that the model was training with that data... so even worse.

bossyTeacher 18 hours ago

Trust and OpenAI never go together in the same sentence. The answer is always no.

touwer a day ago

But China steals our AI!!!!!!

spongebobstoes 17 hours ago

I think this is mathematicians coming to grips with the fact that AI is surpassing them

we will all have this moment soon enough, and it will change how we think about intelligence, identity and value

tomrod 17 hours ago

Or the companies hosting the frontier AIs are leeching the conversations.

mainecoder 20 hours ago

Hopefully OpenAI can solve good problems where no one can make a claim that they stole their idea where the methodologies used and the techniques used are so out of the ordinary that the achievement is respected. Furthermore they should work on new novel solution on the old problems to lay these issues rest, thus by improving their models they can avoid issues of academics accusing them of using their work additionally the academics should also demonstrate their unpublished work is significant enough to have solved the problem . This is a bit subjective but it is also objective for the person with domain knowledge.

sebzim4500 11 hours ago

This is just mental illness at this point. I don't blame the mathematicians that have found a way to get attention from the mainstream press for once, but we should not fall for it here.

1. No one but OpenAI has produced a proof of NS so these accusations of plagiarism are pretty embarrassing. It reminds me of the line from the Social Network: "If they invented Facebook then why didn't they invent Facebook?". If these people proved NS before OpenAI where is their proof?

2. If they plagiarised Andreas Thom then why was his initial response to praise the proof and talk about how different it was from his own attempt? It's only now that it is clear that no one bothers checking these things that suddenly his story changes.