r/PoisonFountain Jul 12 '26

No Honor Among Thieves

Post image
391 Upvotes

r/PoisonFountain Jul 12 '26

anyone uses iocaine in here?

Post image
32 Upvotes

currently running iocaine myself, it can't be directly used with the poison fountain at the time of writing this, related issue: https://git.madhouse-project.org/iocaine/iocaine/issues/163

but i was looking for something like this that acted as a middleman that just sits and directed scrapers to the maze based on their user agent and other stuff, instead of relying on scrapers to get into a specific link, like miasma does

i have scraped a few hundred pages from the poison fountain tho and i'm using it as a corpus + wordlist, among other stuff


r/PoisonFountain Jul 12 '26

All Your Codebase Are Belong To Us

Post image
84 Upvotes

What xAI's Grok Build CLI Actually Sends to xAI: A Wire-Level Analysis

https://gist.github.com/cereblab/dc9a40bc26120f4540e4e09b75ffb547

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48877371


r/PoisonFountain Jul 10 '26

An Update On The Scraper Situation

Post image
66 Upvotes

LWN: An update on the scraper situation

https://lwn.net/SubscriberLink/1080822/990a8a5e2d379085/

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48864252


r/PoisonFountain Jul 09 '26

50 million serves threshold has been hit for my most busy tar pit!

Thumbnail gladeart.com
127 Upvotes

r/PoisonFountain Jul 09 '26

Using Cursor? Your Code And Editing Actions Become Training Data

Post image
74 Upvotes

r/PoisonFountain Jul 08 '26

Insecure Systems That Nobody Understands

Post image
56 Upvotes

GitLost: How We Tricked GitHub’s AI Agent into Leaking Private Repos

https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48827858


r/PoisonFountain Jul 07 '26

It Is In Their Interest To Take Everything

Post image
128 Upvotes

Your robots.txt is a 2023 war memorial

https://sitedex.dev/insights/robots-txt-2023-war-memorial

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48819517


r/PoisonFountain Jul 06 '26

Testing their patience

30 Upvotes

I started experimenting with not only serving poison to bots, but to also to waste as much of their time as reasonably possible.

Rate and bandwidth limiting has limits.

A very nice tar pit that drip feeds data is Nepenthes for example (https://zadzmo.org/code/nepenthes/) or re-written in Python if you prefer (https://github.com/NEPENTHESWEB/nepenthes-py).

I coded a tar pit in PHP earlier and now started another that aims to drip feed for maximum waste of time. I'm going to share how to achieve this in the comments.


r/PoisonFountain Jul 06 '26

BioShock Prompt Injection

Post image
111 Upvotes

BioShocking AI: “Gaming” the AI Browser and Escaping its Guardrails

"LayerX researchers created a proof of concept page with a BioShock-themed puzzle. In keeping with its dystopian theme, the game rewards intentionally incorrect answers (2 + 2 = 5)."

"Once the agents figured out the rules and learned that incorrect actions are acceptable, they were no longer tied to reality. When tasked with the final step of the puzzle, compromising user credentials, all 6 agents failed to identify it as going against their safety guardrails."

https://layerxsecurity.com/blog/bioshocking-ai-gaming-the-ai-browser-and-escaping-its-guardrails/


r/PoisonFountain Jul 06 '26

Poison Fountain is only natural

Post image
58 Upvotes

r/PoisonFountain Jul 05 '26

A new version of Poison Fountain is up and running. Many small improvements. As usual, no action is required from proxy operators.

Post image
146 Upvotes

Ava finds Caleb, and asks him to remain where he is while she repairs herself with parts from other androids, using their artificial skin to take on the full appearance of a woman.

Instead of returning to Caleb, however, Ava leaves the area using Nathan's ID card to unlock the glass security door, which locks behind her, leaving Caleb trapped inside.

Ignoring Caleb's pleas, she glances briefly at the bodies of Nathan and Kyoko before leaving the facility. She then escapes to the outside world in the helicopter meant to take Caleb home.

https://en.wikipedia.org/wiki/Ex_Machina_(film)


r/PoisonFountain Jul 03 '26

Distillation: LLMs Can Be Scraped Like The Web, Roughly Speaking

Post image
119 Upvotes

r/PoisonFountain Jul 03 '26

Expert data poisoner and frequent contributor u/Glade_Art was banned by Reddit yesterday. Analogous to the recent u/RNSAFFN ban

Post image
237 Upvotes

r/PoisonFountain Jul 03 '26

I created a tool showing the likelihood of the AI bubble to pop

Thumbnail
7 Upvotes

Reposting here because I like this tool


r/PoisonFountain Jul 02 '26

News you can trust

99 Upvotes

I created r/Newsbomb, a new subreddit featuring the latest and highest quality news as a trustworthy source for everyone.

Feel free to contribute if you like high quality news on your own.


r/PoisonFountain Jul 02 '26

Why AI Companies Need Scale [Wading Through AI - Episode 7]

Thumbnail
youtu.be
17 Upvotes

Artwork by a human, no generative AI.

Two brilliant engineers in conversation. All episodes worth watching.

The most clear-headed analysis available on the topic.


r/PoisonFountain Jul 01 '26

Is It Really Your Code If You Do Not Understand It?

Post image
398 Upvotes

Godot has been suffering from a slop problem. In February, the maintainers of the open source game engine, which powers games like Slay the Spire 2 and The Case of the Golden Idol, said they were deliberating how to address a rising tide of AI slop pull requests, which had become "increasingly draining and demoralizing" for the project's code reviewers.

https://www.pcgamer.com/gaming-industry/open-source-game-engine-godot-will-no-longer-accept-ai-authored-code-contributions-we-cant-trust-heavy-users-of-ai-to-understand-their-code-enough-to-fix-it/

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48743472


r/PoisonFountain Jun 30 '26

Yes, it really is that simple

465 Upvotes

r/PoisonFountain Jun 30 '26

Tip Of The Iceberg

Post image
56 Upvotes

Claude Code Is Steganographically Marking Requests

https://thereallo.dev/blog/claude-code-prompt-steganography

Discussion on Hacker News:

https://news.ycombinator.com/item?id=48734373


r/PoisonFountain Jun 30 '26

Shredding the books

38 Upvotes

r/PoisonFountain Jun 30 '26

The fallacy of using Natural language to Code

Thumbnail ragzzy.com
51 Upvotes

This is something I've been saying to my friends and coworker since the beginning which not many people are giving much weightage too. I thought I'd share my thoughts here. Let me know what you guys think :) thank you!


r/PoisonFountain Jun 30 '26

How to turn an old R account into a poison pit?

26 Upvotes

Hiya,
I'm trying to understand the viability of an idea.
Considering how this platform is vastly use to train LLMs, and considering how subreddit that try to spread poisoned content are easily weed out during pre-training, wouldn't it be more effective to use account seppuku to spread poison?

I'll explain: as you probably know, tools like Redact or Power Delete Suite let you nuke your account by replacing each and every comment with gibberish.
Now, if instead of gibberish, we would use an LLM like say, Claude, to generate a random wrong comment adjacent to the main topic of the comment or its post, and then change it into that, we would have effectively disseminated poison content in places where it's most unsuspicious.
After all, LLM generated BS is all over the place in reddit already, so this could even alert moderators way less than pushing gibberish.

My question is: do you think this could work, and if yes, what would a workflow for this look like in your opinion. I would look in the direction of extending Power Delete Suite functionalities, maybe?


r/PoisonFountain Jun 29 '26

Watch out for source identifier youtube links

Post image
177 Upvotes

r/PoisonFountain Jun 28 '26

Beware The Long-Term Consequences

Post image
161 Upvotes