VulnCheck says fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, casting doubt on claims frontier models are handing attackers a major advantage

  • Rimu@piefed.socialOPM
    link
    fedilink
    English
    arrow-up
    2
    ·
    28 days ago

    That sounds plausible but is in direct contradiction to the contents of the article.

    • Canaconda@lemmy.ca
      link
      fedilink
      English
      arrow-up
      2
      ·
      28 days ago

      They’re talking about AI discovering vulnerabilities. I’m talking about already known vulnerabilities. Example, a device that hasn’t been updated since 2018.

      analyzed 1,061 publicly attributed AI-assisted vulnerability discoveries from Anthropic’s Project Glasswing and the Berkeley Vulnerability Research Initiative, then cross-referenced them against its Known Exploited Vulnerability (KEV) database.