HACKER Q&A
📣 smalltorch

Danger or Fun? encoding secret messages into HN comments


I am a casual observer of HN and am kinda just here as a hobbyist. Most the stuff I read here I can't even comprehend to be honest, you guys speak a lot of gibberish to me.

Ive made something I was surprised is even possible to make which is both fun and daunting in the context of what will be possible in the future.

I asked AI to scrape HN comments into the a large corpus of templates that would be ideal to encode messages in. To my surprise it had nothing preventing it from doing this. It did it instantly. Then I asked it to plug the corpus of templates into this other thing I made which encodes plaintext into small compressed data.

Now I can encode secret messages into HN comments.

Here are a few examples:

> 71 coherent cover texts hiding a secret message https://postimg.cc/mtMmxPkD

and

> 30 cover texts https://postimg.cc/crXVHDwQ

All this really got me thinking, with a sufficient amount of data, you could eventually make something that looks completely believable and relevant to a conversation that is taking place.

How will we know in the future that what we are replying to is not some bot with alter motive? And, how much of this place is already that?

On the topic, what have you guys made that made you think... "Wow, I can't believe I can make this seems potentially dangerous" ?


  👤 pwg Accepted Answer ✓
You have rediscovered steganography (https://en.wikipedia.org/wiki/Steganography). Nothing new here on that end.

> How will we know in the future that what we are replying to is not some bot with alter motive?

How do you know today that you are not doing the same? How did you know last year you were not conversing with some bot? Absent some tell to indicate "likely a bot" you have no way to know with certainty.

"On the Internet, nobody knows you're a dog" (https://en.wikipedia.org/wiki/On_the_Internet,_nobody_knows_...)


👤 hootz
We already get a ton of bots, but it's still better than other social networks. The only reliable way to get rid of LLM bots is to add friction to community participation, and that's not what we do here, so we get bots, and ones increasingly harder to identify.