2 comments

  • jruohonen 6 hours ago

    "The average success rate for generating a patch that fully resolved the vulnerability (without materially changing application behavior) was just 26.0 percent,' wrote Director of Security Research Keith Hoodlet, adding that even patches that did fix the flaw also mucked up the application’s behavior 20 percent of the time."

    "'Conversely, LLM-generated patches did not resolve the vulnerability, added a new vulnerability, or both, an average 53.9% of the time,' Hoodlet said."

    These are some interesting points. I wonder: why?

  • saidnooneever 5 hours ago

    this is not really true. actually quite the opposite.

    sure that things which were obscure now are easier to detect and find if they are open, but it is becoming trivial to create very complex systems as well as security systems using AI which will be really hard to defeat by other AI because its not something they have ready access to.

    its not like suddenly AI can perform blind exploits on remote random targets.