How do you know when AI is powerful enough to be dangerous? Regulators try to do the math

Advertisement

Advertise with us

How do you know if an artificial intelligence system is so powerful that it poses a security danger and shouldn’t be unleashed without careful oversight?

Read this article for free:


or

Already have an account? Log in here »

To continue reading, please subscribe:

Subscribe and receive a limited-edition Free Press branded hat or tote.

Digital Subscription

One year of digital access for only $205*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles

*First annual payment billed as $205.00 + GST for one year. This annual subscription will automatically renew at $233.00 + GST every 52 weeks (10% off the regular annual price of $259.35). Offer available to new and qualified returning subscribers only. Cancel any time.

To continue reading, please subscribe:

Add Free Press access to your Brandon Sun subscription for only an additional

$1 for the first 4 weeks*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles
Start now

*Your next Brandon Sun subscription payment will increase by $1.00 and you will be charged $17.95 plus GST for four weeks. After four weeks, your payment will increase to $24.95 plus GST every four weeks.

Hey there, time traveller!
This article was published 04/09/2024 (715 days ago), so information in it may no longer be current.

How do you know if an artificial intelligence system is so powerful that it poses a security danger and shouldn’t be unleashed without careful oversight?

For regulators trying to put guardrails on AI, it’s mostly about the arithmetic. Specifically, an AI model trained on 10 to the 26th floating-point operations must now be reported to the U.S. government and could soon trigger even stricter requirements in California.

Say what? Well, if you’re counting the zeroes, that’s 100,000,000,000,000,000,000,000,000, or 100 septillion, calculations to train AI systems on huge troves of data.

FILE - President Joe Biden signs an executive on artificial intelligence in the East Room of the White House, Oct. 30, 2023, in Washington. Vice President Kamala Harris looks on at right. (AP Photo/Evan Vucci, File)
FILE - President Joe Biden signs an executive on artificial intelligence in the East Room of the White House, Oct. 30, 2023, in Washington. Vice President Kamala Harris looks on at right. (AP Photo/Evan Vucci, File)

What it signals to some lawmakers and AI safety advocates is a level of computing power that might enable rapidly advancing AI technology to create or proliferate weapons of mass destruction, or conduct catastrophic cyberattacks.

Those who’ve crafted such regulations acknowledge they are an imperfect starting point to distinguish today’s highest-performing generative AI systems — largely made by California-based companies like Anthropic, Google, Meta Platforms and ChatGPT-maker OpenAI — from the next generation that could be even more powerful.

Critics have pounced on the thresholds as arbitrary — an attempt by governments to regulate math. Adding to the confusion is that some rules set a speed-based computing threshold — how many floating-point operations per second, known as flops — while others are based on cumulative number of calculations no matter how long they take.

“Ten to the 26th flops,” said venture capitalist Ben Horowitz on a podcast this summer. “Well, what if that’s the size of the model you need to, like, cure cancer?”

An executive order signed by President Joe Biden last year relies on a 10 to the 26th threshold. So does California’s newly passed AI safety legislation — which Gov. Gavin Newsom has until Sept. 30 to sign into law or veto. California adds a second metric to the equation: regulated AI models must also cost at least $100 million to build.

Following Biden’s footsteps, the European Union’s sweeping AI Act also measures floating-point operations, but sets the bar 10 times lower at 10 to the 25th power. That covers some AI systems already in operation. China’s government has also looked at measuring computing power to determine which AI systems need safeguards.

No publicly available models meet the higher California threshold, though it’s likely that some companies have already started to build them. If so, they’re supposed to be sharing certain details and safety precautions with the U.S. government. Biden employed a Korean War-era law to compel tech companies to alert the U.S. Commerce Department if they’re building such AI models.

AI researchers are still debating how best to evaluate the capabilities of the latest generative AI technology and how it compares to human intelligence. There are tests that judge AI on solving puzzles, logical reasoning or how swiftly and accurately it predicts what text will answer a person’s chatbot query. Those measurements help assess an AI tool’s usefulness for a given task, but there’s no easy way of knowing which one is so widely capable that it poses a danger to humanity.

“This computation, this flop number, by general consensus is sort of the best thing we have along those lines,” said physicist Anthony Aguirre, executive director of the Future of Life Institute, which has advocated for the passage of California’s Senate Bill 1047 and other AI safety rules around the world.

Floating point arithmetic might sound fancy “but it’s really just numbers that are being added or multiplied together,” making it one of the simplest ways to assess an AI model’s capability and risk, Aguirre said.

“Most of what these things are doing is just multiplying big tables of numbers together,” he said. “You can just think of typing in a couple of numbers into your calculator and adding or multiplying them. And that’s what it’s doing — ten trillion times or a hundred trillion times.”

For some tech leaders, however, it’s too simple and hard-coded a metric. There’s “no clear scientific support” for using such metrics as a proxy for risk, argued computer scientist Sara Hooker, who leads AI company Cohere’s nonprofit research division, in a July paper.

“Compute thresholds as currently implemented are shortsighted and likely to fail to mitigate risk,” she wrote.

Venture capitalist Horowitz and his business partner Marc Andreessen, founders of the influential Silicon Valley investment firm Andreessen Horowitz, have attacked the Biden administration as well as California lawmakers for AI regulations they argue could snuff out an emerging AI startup industry.

For Horowitz, putting limits on “how much math you’re allowed to do” reflects a mistaken belief there will only be a handful of big companies making the most capable models and you can put “flaming hoops in front of them and they’ll jump through them and it’s fine.”

In response to the criticism, the sponsor of California’s legislation sent a letter to Andreessen Horowitz this summer defending the bill, including its regulatory thresholds.

Regulating at over 10 to the 26th is “a clear way to exclude from safety testing requirements many models that we know, based on current evidence, lack the ability to cause critical harm,” wrote state Sen. Scott Wiener of San Francisco. Existing publicly released models “have been tested for highly hazardous capabilities and would not be covered by the bill,” Wiener said.

Both Wiener and the Biden executive order treat the metric as a temporary one that could be adjusted later.

Yacine Jernite, who works on policy research at the AI company Hugging Face, said the computing metric emerged in “good faith” ahead of last year’s Biden order but is already starting to grow obsolete. AI developers are doing more with smaller models requiring less computing power, while the potential harms of more widely used AI products won’t trigger California’s proposed scrutiny.

“Some models are going to have a drastically larger impact on society, and those should be held to a higher standard, whereas some others are more exploratory and it might not make sense to have the same kind of process to certify them,” Jernite said.

Aguirre said it makes sense for regulators to be nimble, but he characterizes some opposition to the threshold as an attempt to avoid any regulation of AI systems as they grow more capable.

“This is all happening very fast,” Aguirre said. “I think there’s a legitimate criticism that these thresholds are not capturing exactly what we want them to capture. But I think it’s a poor argument to go from that to, ‘Well, we just shouldn’t do anything and just cross our fingers and hope for the best.’”

Report Error Submit a Tip

More Stories

ATV, generator stolen from Manitoba cottage

1 minute read Yesterday at 9:53 AM CDT

RCMP are seeking the public’s help to identify a person of interest after an all-terrain vehicle and other belongings were stolen from a cottage in southern Manitoba.

The theft happened near near Provincial Road 440 in the Rural Municipality of Louise, about 150 kilometres southwest of Winnipeg, on Aug. 11.

Police said surveillance video showed a man walking onto the property at about 2:30 p.m. while covering his face and holding power tools.

A grinder was used to open a locked shipping container, where a 1982 Honda ATC200 all-terrain vehicle, a Honda EU2000i generator and a Stihl FS90 trimmer were among the items stolen, RCMP said. One of two Spypoint trail cameras was also reported stolen.

Pharmacist who failed to disclose addiction, couldn’t account for ‘staggering’ amount of drugs fined $100K by disciplinary panel

Scott Billeck 4 minute read Preview

Pharmacist who failed to disclose addiction, couldn’t account for ‘staggering’ amount of drugs fined $100K by disciplinary panel

Scott Billeck 4 minute read Tuesday, Aug. 18, 2026

A June 9 disciplinary decision found more than 39,000 doses went unaccounted for while Glen Pauch, who worked at a Portage la Prairie pharmacy, was consuming drugs and improperly dispensing controlled substances — including opioids oxycodone and hydromorphone, and Concerta, a stimulant prescribed for ADHD — to 11 patients.

Read
Tuesday, Aug. 18, 2026

Allen misses out on league MVP award

Taylor Allen 4 minute read Preview

Allen misses out on league MVP award

Taylor Allen 4 minute read Updated: 4:04 PM CDT

Winnipeg Sea Bears guard Teddy Allen has come up short in his bid to win a second career CEBL Most Valuable Player award — and he’s not happy about it.

The league revealed its award winners Thursday, with Scarborough Shooting Stars guard Myles Powell taking home the MVP honours over Allen who was the finalist out of the Western Conference.

Powell, who was also named the Clutch Player of the Year with nine target score winners, averaged 22.9 points, 3.3 rebounds and 4.5 assists while leading Scarborough to a historic 20-4 record.

“A dude who averaged 23 on 38 per cent. You will never see me again. Lost ya credibility,” Allen commented on Instagram.

Read
Updated: 4:04 PM CDT

Demolition ordered after fire in vacant city home

Free Press staff 2 minute read Preview

Demolition ordered after fire in vacant city home

Free Press staff 2 minute read 11:56 AM CDT

A Winnipeg firefighter was assessed by paramedics and an emergency demolition was ordered after a vacant house caught fire Thursday morning for the second time in less than three months.

The two-storey home, at Argyle Street and Disraeli Freeway, in South Point Douglas, was boarded up following a blaze that occurred June 1.

Firefighters returned to the house after flames were reported shortly after 6 a.m. Thursday. The house was engulfed when crews arrived.

“Due to heavy fire conditions, crews were unable to enter the structure,” a Winnipeg Fire Paramedic Service spokesperson wrote in an email to the Free Press.

Read
11:56 AM CDT

Wolseley residents put down roots to save elms

Joyanne Pursaga 5 minute read Preview

Wolseley residents put down roots to save elms

Joyanne Pursaga 5 minute read 5:02 PM CDT

A neighbourhood group that raised thousands of dollars to inoculate publicly owned trees against Dutch elm disease hopes others will follow their lead.

Read
5:02 PM CDT

Rural Manitoba homeowner charged with shooting at accused thieves

Nicole Buffie 4 minute read Preview

Rural Manitoba homeowner charged with shooting at accused thieves

Nicole Buffie 4 minute read Tuesday, Aug. 18, 2026

A homeowner in southern Manitoba has been charged after he fired shots at a group of people accused of stealing from his property, police say.

Officers were sent to the Rural Municipality of Dufferin Saturday after a report of a theft in progress. RCMP said four people went to the property, located about 95 kilometres southwest of Winnipeg, and returned later the same day driving two vehicles stolen from Watrous, Sask.

The owner of the property, a 66-year-old man, saw the suspects on a motion-activated camera and saw someone transferring fuel from a portable container into one of the stolen vehicles. The man confronted the group and fired shots towards the vehicles, police said.

Three people stayed at the scene until officers arrived and took them into custody, RCMP said. Various items believed to have been stolen from the property were found in the back of a truck. A fourth suspect fled in the other vehicle.

Read
Tuesday, Aug. 18, 2026