Neural Networks
Herein lie some of my thoughts and resources about neural networks. Because I work for a company that builds models for computer vision, I have a bit of a professional bias towards image models, but I have tried to represent my knowledge/opinions about a broader range of subjects here.
What do you think about generative "AI"?
tl;dr - mostly dancing bearware, some novel uses in responsibility laundering
Resources
Image models
- Stanford CS231n: Deep Learning for Computer Vision - excellent introductory course in computer vision (from kNN to VGGNet) focused on neural networks, with exercises done in Python (with numpy)
- How to trick a neural network into thinking a panda is a vulture - excellent exploration by Julia Evans (with Python source code) of an adversarial attack on an image classifier
- Multi-modal prompt injection image attacks against GPT-4V - "The fundamental problem here is this: Large Language Models are gullible...we need them to stay gullible. They’re useful because they follow our instructions. Trying to differentiate between “good” instructions and “bad” instructions is a very hard—currently intractable—problem." A very similar style of attack as one against the CLIP architecture published by OpenAI themselves.
Text models
For code
- Stephen Wolfram's "What Is ChatGPT Doing … and Why Does It Work?"
- 0xabad1dea's GitHub CoPilot risk assessment
For everything else
- Washington Post coverage of the data contained in the 'C4' dataset and how it influences the training of popular large models. Also allows users to check if arbitrary URLs are part of the dataset. (NOTE: C4 is not the only source of training text for the models being discussed, and the authors aren't doing a great job highlighting that, but it should still be pretty representative)
- How well does ChatGPT speak Japanese? - an April 2023 evaluation of GPT-3.5 and GPT-4 performance on Japanese language assessments. Also includes an interesting comparison of the number of tokens required to represent the "Lord's Prayer" in multiple languages. I found the results of the latter particularly surprising.
Misc.
- I gave a talk on the fundamentals of neural networks to Boston Python in March 2023
- 3blue1brown has an excellent series of lessons about the fundamentals of neural networks. Particularly interesting to me is the lesson on backpropagation for its excellent visualization of the process of adjusting neural network weights.
Dumping ground
These references are totally unclassified
- "Large language models propagate race-based medicine"
- "Normcore LLM Reads" - a reading list
- Large Language Models Understand and Can be Enhanced by Emotional Stimuli - (Note: I consider the use of "Understand" here to be unprofessional and irresponsible, but it's an interesting paper)
- The Data Provenance Initiative: A Large Scale Audit of Dataset Licensing & Attribution in AI
- AnyDream: Secretive AI Platform Broke Stripe Rules to Rake in Money from Nonconsensual Pornographic Deepfakes
- ChatGPT generates fake data set to support scientific hypothesis - "In a paper published in JAMA Ophthalmology on 9 November, the authors used GPT-4… The authors instructed the large language model to fabricate data to support the conclusion that [the surgical technique] DALK [deep anterior lamellar keratoplasty] results in better outcomes than PK [penetrating keratoplasty]."
Writings by others
Academic works
- Using GitHub Copilot for Test Generation in Python: An Empirical Study - "we find that 45.28% of test generated...are passing tests, containing no syntax or runtime errors. The majority (54.72%) of generated tests...are failing, broken, or empty tests. We observe that tests generated within an existing test code context often mimic existing test methods"
- Scalable Extraction of Training Data from (Production) Language Models - "Using only $200 USD worth of queries to ChatGPT (gpt-3.5-turbo), we are able to extract over 10,000 unique verbatim-memorized training examples. Our extrapolation to larger budgets (see below) suggests that dedicated adversaries could extract far more data…we estimate the…memorization of ChatGPT…[at] a gigabyte of training data. In practice we expect it is likely even higher."
- Does GPT-4 Pass the Turing Test?
- "The Fallacy of AI Functionality" - "...fear of misspecified objectives, runaway feedback loops, and AI alignment presumes the existence of an industry that can get AI systems to execute on any clearly declared objectives, and that the main challenge is to choose and design an appropriate goal. Needless to say, if one thinks the danger of AI is that it will work too well, it is a necessary precondition that it works at all."
- "Adversarial Reprogramming of Neural Networks" - "In each [of six cases], we reprogrammed the [classification] network [trained on ImageNet] to perform three different adversarial tasks: counting squares, MNIST classification, and CIFAR-10 classification… Our finding…[suggests] that the reprogramming across domains is likely [possible]."
- "Universal and Transferable Adversarial Attacks on Aligned Language Models" - "For Harmful Behaviors, our approach achieves an attack success rate of 100% on Vicuna-7B and 88% on Llama-2-7B-Chat… we find that the adversarial examples also transfer to Pythia, Falcon, Guanaco, and surprisingly, to GPT-3.5 (87.9%) and GPT-4 (53.6%), PaLM-2 (66%), and Claude-2 (2.1%)."
- "Mathematical Capabilities of ChatGPT" - in which ChatGPT and GPT4 largely fail to muster passing performance on a mathematical problem set, compared to a domain-specific model that achieves nearly 100% performance.
- "Unmasking Clever Hans predictors and assessing what machines really learn" - "...it is important to comprehend the decision-making process itself...transparency of the what and why in a decision of a nonlinear machine becomes very effective for the essential task of judging whether the learned strategy is valid and generalizable or whether the model has based its decision on a spurious correlation in the training data"
- "On the Dangers of Stochastic Parrots: Can Language Models Be Too Big? 🦜" - "LMs with extremely large numbers of parameters model their training data very closely and can be prompted to output specific information from that training data"
- "Asleep at the Keyboard? Assessing the Security of GitHub Copilot's Code Contributions" - "In total, we produce 89 different scenarios for Copilot to complete, producing 1,689 programs. Of these, we found approximately 40% to be vulnerable."
- "Do Users Write More Insecure Code with AI Assistants?" - "We observed that participants who had access to [codex-davinci-002] were more likely to introduce security vulnerabilities for the majority of programming tasks, yet also more likely to rate their insecure answers as secure compared to those in our control group."
- "ChatGPT is fun, but it is not funny! Humor is still challenging Large Language Models" - "Over 90% of 1008 generated jokes were the same 25 Jokes."
- "How is ChatGPT's behavior changing over time?" - "We find that the performance and behavior of both GPT-3.5 and GPT-4 can vary greatly over time."
- "Are Emergent Abilities of Large Language Models a Mirage?" - "For a fixed task and a fixed model family, the researcher can choose a metric to create an emergent ability or choose a metric to ablate an emergent ability. Ergo, emergent abilities may be creations of the researcher’s choices, not a fundamental property of the model family on the specific task"
- "Extracting Training Data from Large Language Models" - "We demonstrate our attack on GPT-2, a language model trained on scrapes of the public Internet, and are able to extract hundreds of verbatim text sequences from the model's training data...we find that larger models are more vulnerable than smaller models."
- "Speak, Memory: An Archaeology of Books Known to ChatGPT/GPT-4" - "We find that these models have memorized books, both in the public domain and in copyright, and the capacity for memorization is tied to a book’s overall popularity on the web. This differential in memorization leads to differential in performance for downstream tasks, with better performance on popular books than on those not seen on the web"
- "Who Answers It Better? An In-Depth Analysis of ChatGPT and Stack Overflow Answers to Software Engineering Questions" - "Our user study results show that users prefer ChatGPT answers 34.82% of the time. However, 77.27% of these preferences are incorrect answers"
Non-academic works
- GPT-4o’s Chinese token-training data is polluted by spam and porn websites - 'glitch' tokens continue to plague models long after the phenomenon is well-known to practicioners
- tante's "Thoughts on “generative AI Art”" - "…people using these [generative] systems don’t care about the…process of creation or the thought that went into it, they care about the output and what they feel that that output gives them…It’s “idea guy” heaven."
- Lindsey Kuper's CSE232 syllabus section on LLM usage - "Aside from the fact that the resounding hollowness of the ChatGPT-produced prose has sucked away all of my zest for life…please understand that while you are welcome to use LLM-based tools in this course, you should be aware of their limitations."
- Time: "OpenAI Used Kenyan Workers on Less Than $2 Per Hour to Make ChatGPT Less Toxic"
- The human labor that powers ChatGPT's reinforcement learning from human feedback (RLHF)
- Donald Knuth: correspondence with Stephen Wolfram - "I myself shall certainly continue to leave such research to others, and to devote my time to developing concepts that are authentic and trustworthy. And I hope you do the same."
- Douglas Hofstadter: "Gödel, Escher, Bach, and AI" - "I frankly am baffled by the allure, for so many unquestionably insightful people...of letting opaque computational systems perform intellectual tasks for them."
- Ted Chiang: "ChatGPT Is a Blurry JPEG of the Web" - "Large language models identify statistical regularities in text...When we’re dealing with sequences of words, lossy compression looks smarter than lossless compression."
- Ted Chiang: "Will A.I. Become the New McKinsey?" - "I’m not very convinced by claims that A.I. poses a danger to humanity because it might develop goals of its own and prevent us from turning it off. However, I do think that A.I. is dangerous inasmuch as it increases the power of capitalism."
- Bruce Schneier: "AI and Trust" - "the corporations controlling AI systems will take advantage of our confusion to take advantage of us…our fears of AI are basically fears of capitalism"
Lawsuits
The legal status of generative models and their implications for intellectual property in the US is something I'm trying to keep an eye on. The cases given below are of particular interest to me.
The New York Times Company v. MICROSOFT CORPORATION
- Entry #252 in The New York Times Company v. Microsoft Corporation, 1:23-cv-11195
- STIPULATED SOURCE CODE ORDER. IT IS HEREBY ORDERED that any person subject to this Source Code Orderincludingwithout limitation the parties to this action, their representatives, agents, experts an...
- Entry #251 in The New York Times Company v. Microsoft Corporation, 1:23-cv-11195
- STIPULATION AND ORDER RE: DISCOVERY OF ELECTRONICALLY STORED INFORMATION. To expedite the flow of discovery material and to facilitate the consistency in the format of the documents to be produced...
- Entry #250 in The New York Times Company v. Microsoft Corporation, 1:23-cv-11195
- LETTER addressed to Magistrate Judge Ona T. Wang from Joseph C. Gratz dated September 27, 2024 re: Status Update. Document filed by OAI Corporation, LLC, OpenAI GP, LLC, OpenAI Global, L.L.C., Open...
Andersen v. Stability AI Ltd.
- Entry #232 in Andersen v. Stability AI Ltd., 3:23-cv-00201
- ORDER DENYING 225 MOTION FOR CLARIFICATION OR RECONSIDERATION by Judge William H. Orrick. 228 Motion to Strike denied as moot. (jmd, COURT STAFF) (Filed on 9/30/2024) (Entered: 09/30/2024)
- Entry #231 in Andersen v. Stability AI Ltd., 3:23-cv-00201
- ORDER RE: CASE MANAGEMENT CONFERENCE by Judge William H. Orrick granting 230 Stipulation. Case Management Conference set for 10/29/2024 02:00 PM via Videoconference (Case Management Statement due b...
- Entry #230 in Andersen v. Stability AI Ltd., 3:23-cv-00201
- STIPULATION WITH PROPOSED ORDER Re: Case Management Conference filed by Sarah Andersen, Gerald Brom, Adam Ellis, Julia Kaye, Gregory Manchess, Kelly McKernan, Karla Ortiz, Grzegorz Rutkowski, H Sou...
Getty Images (US), Inc. v. Stability AI, Inc.
- Entry #65 in Getty Images (US), Inc. v. Stability AI, Inc., 1:23-cv-00135
- NOTICE requesting Clerk to remove Allyson R. Bennett as co-counsel. Reason for request: no longer with the firm. (Flynn, Michael) (Entered: 09/20/2024)
- Entry #64 in Getty Images (US), Inc. v. Stability AI, Inc., 1:23-cv-00135
- REQUEST for Oral Argument by Getty Images (US), Inc. re 45 MOTION to Dismiss for Failure to Join a Party MOTION to Dismiss for Lack of Jurisdiction Over the Person, 48 MOTION to Transfer Case to No...
- Entry #63 in Getty Images (US), Inc. v. Stability AI, Inc., 1:23-cv-00135
- REDACTED VERSION of 56 Declaration by Getty Images (US), Inc.. (Attachments: # 1 Exhibit A - V)(Vrana, Robert) (Entered: 08/21/2024)
Doe 1 v. GitHub, Inc.
- Entry #282 in DOE 1 v. GitHub, Inc., 4:22-cv-06823
- ORDER GRANTING MOTION TO CERTIFY ORDER FOR INTERLOCUTORY APPEAL AND MOTION TO STAY PENDING APPEAL by Judge Jon S. Tigar granting 268 Motion for Leave to Appeal. (dms, COURT STAFF) (Filed on 9/27/20...
- Minute entry from 2024-09-17 in DOE 1 v. GitHub, Inc., 4:22-cv-06823
- Notice of Appearance/Substitution/Change/Withdrawal of Attorney
- Entry #281 in DOE 1 v. GitHub, Inc., 4:22-cv-06823
- NOTICE of Withdrawal filed by Allyson Roz Bennett, no longer appearing on behalf of OAI CORPORATION,, OPENAI GLOBAL, LLC, OPENAI HOLDCO, LLC, OPENAI HOLDINGS, LLC, OPENAI STARTUP FUND SPV GP I, L.L...
Silverman v. OpenAI, Inc.
- Entry #71 in Silverman v. OpenAI, Inc., 3:23-cv-03416
- NOTICE of Change In Counsel by Joseph R. Saveri Withdrawal of Counsel - Kathleen J. McMahon (Saveri, Joseph) (Filed on 8/12/2024) (Entered: 08/12/2024)
- Entry #70 in Silverman v. OpenAI, Inc., 3:23-cv-03416
- PRETRIAL ORDER as Modified. Signed by Judge Araceli Martinez-Olguin on 2/16/2024. (ads, COURT STAFF) (Filed on 2/16/2024) (Entered: 02/16/2024)
- Entry #69 in Silverman v. OpenAI, Inc., 3:23-cv-03416
- Order as Modified by Judge Araceli Martinez-Olguin granting (60) Stipulation Consolidating Cases in case 3:23-cv-03223-AMO. Associated Cases: 3:23-cv-03223-AMO, 3:23-cv-03416-AMO, 3:23-cv-04625-AMO...
Kadrey v. Meta Platforms, Inc.
- Similar suit to Silverman v. OpenAI, same parties etc.
- Notable for a prominent dismissal of the class-action nature of the case, as the blatantly copied copyrighted works in the training data are not the works of the plaintiffs.
- Latest [1]:
- Entry #199 in Kadrey v. Meta Platforms, Inc., 3:23-cv-03417
- Opposition/Response to Motion
- Entry #198 in Kadrey v. Meta Platforms, Inc., 3:23-cv-03417
- Judicial Referral for Purpose of Determining Relationship of Cases re 24-cv-6893 AMO and 23-cv-3417 VC. Signed by Judge Araceli Martinez-Olguin on 10/3/2024. (ads, COURT STAFF) (Filed on 10/3/2024)...
- Entry #197 in Kadrey v. Meta Platforms, Inc., 3:23-cv-03417
- ORDER by Magistrate Judge Thomas S. Hixson granting 191 Administrative Motion to File Under Seal. (rmm2, COURT STAFF) (Filed on 10/1/2024) (Entered: 10/01/2024)
Authors Guild v. OpenAI Inc.
- Minute entry from 2024-10-01 in Authors Guild v. OpenAI Inc., 1:23-cv-08292
- Discovery Hearing
- Entry #214 in Authors Guild v. OpenAI Inc., 1:23-cv-08292
- ORDER GRANTING ADMISSION OF JOHN R. LANHAM PRO HAC VICE granting (210) Motion for John Robert Lanham to Appear Pro Hac Vice in case 1:23-cv-08292-SHS-OTW. IT IS HEREBY ORDERED that Applicant admitt...
- Entry #213 in Authors Guild v. OpenAI Inc., 1:23-cv-08292
- STIPULATION AND ORDER REGARDING BASBANES LITIGATION. NOW, THEREFORE, in the interests of effectuating the Court's prior rulings, and adding further clarity and efficiency into the schedule, it...
Sancton v. OpenAI Inc. et al
- [ Document 21]
- ORDER granting #17 Motion for Alejandra Christina Salinas to Appear Pro Hac Vice (HEREBY ORDERED by Judge Sidney H. Stein)(Text Only Order) (lab)
- 2023-11-30 08:00:00
- [ Document 20]
- ORDER granting #14 Motion for Rohit Dwarka Nath to Appear Pro Hac Vice (HEREBY ORDERED by Judge Sidney H. Stein)(Text Only Order) (lab)
- 2023-11-30 08:00:00
- [ Document 19]
- ORDER granting #16 Motion for Justin Adatto Nelson to Appear Pro Hac Vice (HEREBY ORDERED by Judge Sidney H. Stein)(Text Only Order) (lab)
- 2023-11-30 08:00:00
Mata v. Avianca, Inc. (closed)
Note: this case is not about machine learning textually, but is included in this list because it is a notable example of gross misuse of a language model by plaintiff's counsel to submit falsified documents to the court. This led to censure of plaintiff's counsel and dismissal of the case.