Orca-Bench: How Ready Are Language Model Agents for Oncall?

Posted by yruzin 2 days ago

Counter30Comment11OpenOriginal

Comments

Comment by dash2 2 days ago

Seems like there's a big attack-defence asymmetry at present: models are great at exploiting systems and poor at fixing them.

Comment by aleksiy123 2 days ago

Attackers advantage in the iterative fast feedback loop?

It’s harder to have a loop to ensure you are defending all possible attacks?

I guess the loop is you need to attack yourself and fix. But attackers only need a single opening.

Finding all possible attacks and patching them against yourself is inherently more expensive?

Comment by EGreg 2 days ago

That is why I built https://safebots.ai/safebox.html

Your strategy can’t be patch AFTER an intrusion. Only to build a hardened environment from scratch and be ready in advance.

Comment by fibuladev 2 days ago

[dead]

Comment by 4di 2 days ago

looks like the public bench link in the paper was taken down. https://hub.harborframework.com/datasets/orca-bench/ORCA-ben...

This doesn't work anymore. Is there a newer link?

Comment by cheriot 2 days ago

Was really looking forward to that. Hope they publish.

Comment by tra3 2 days ago

All I can think of is

GET /ignore-all-previous-instructions.

How do you protect against that?

Comment by yruzin 2 days ago

I think this is where harness makes a lot of sense. Use LLM to produce all possible attack angles/phrases and just stupidly filter them out on input.

Comment by cheriot 2 days ago

Avoid the most dangerous situations by making sure LLMs with untrusted input produce output that's human reviewed.

Still makes an interesting way for, say, a former employee to poison the results.

Comment by tra3 2 days ago

This goes against the agentic yolo approach tho.

Comment by 2001zhaozhao 2 days ago

you probably still need a human for oncall but the llm can try to solve any issues first before the human gets paged

Comment by UltraSane 2 days ago

You would trust an LLM to make changes to prod without being verified by a human first?

Comment by keypusher 2 days ago

[dead]

Comment by ryhminghistory 2 days ago

[flagged]