by pkilgore on 3/14/24, 1:10 PM with 10 comments
by lolinder on 3/14/24, 1:50 PM
Mitigating this should be very simple—pad the token with null to some reasonable length before sending it, then clip it on the client side. This would result in slightly higher bandwidth usage, but not enough to be perceptible.
by SushiHippie on 3/14/24, 2:04 PM
Cloudflare mitigates AI side channel attack | https://news.ycombinator.com/item?id=39703255
by acureau on 3/14/24, 1:33 PM
by wkat4242 on 3/14/24, 3:41 PM
It also requires a full packet capture of the target making it not very easy to execute.
by yunohn on 3/14/24, 1:55 PM
Nit: Title should say “guess” and not “read”.