Episode 426 - Automatically exploiting CVEs with AI

EPISODE · Apr 29, 2024 · 37 MIN

Episode 426 - Automatically exploiting CVEs with AI

from Open Source Security

Josh and Kurt talk about a paper describing using a LLM to automatically create exploits for CVEs. The idea is probably already happening in many spaces such as pen testing and intelligence services. We can't keep up with the number of vulnerabilities we have, there's no way we can possibly keep up with a glut of LLM generated vulnerabilities. We really need to rethink how we handle vulnerabilities. Show Notes OpenAI's GPT-4 can exploit real vulnerabilities by reading security advisories paper: LLM Agents can Autonomously Exploit One-day Vulnerabilities Cisco Fixes RV320/RV325 Vulnerability by Banning "curl" in User-Agent Episode 219 – Chat with Larry Cashdollar Cory Doctorow: What Kind of Bubble is AI?

NOW PLAYING

Episode 426 - Automatically exploiting CVEs with AI

0:00 37:31

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Real Construction Talk Compass Leadership Real Construction Talk is a podcast for leaders in the construction industry. The truth is that "as the leader goes, so goes the company." RCT's goal is to open dialog about what really happens on the job site and in the office to help owners and leaders grow, deal with hard situations and fix leadership problems. More info on RCT can be found at http://www.realconstructiontalk.com and is powered by Compass Leadership LLC: http://www.compassleadership.coach. Explicit The AnXietY Archives AnxietyArchives Jeannine, a Gen Xer, and Diana, a Gen Yer, dive deep into the experiences that shape our lives, exploring the good, the bad, and the downright ugly moments we all face. Together, they bridge the generational gap, creating space for open conversations about everything from daily challenges to wellness, mind sets, and personal growth.Join us for insightful discussions that will empower you to embrace your own journey with confidence and resilience.In each episode, we’ll uncover how the lessons of the past can illuminate the path forward—and remind you that no matter your age, we all share common threads when it comes to wellness and navigating life’s twists and turns.Let’s bridge the gap, one conversation at a time! Explicit Technado (Archived) ACI Learning The Technado crew covers a whirlwind of tech topics each week from interviews with industry experts and up-and-coming companies to commentary on topics like security, vendor certifications, networking, and just about anything IT related. Explicit TCAST: The Future of Data & AI TARTLE The Data Intelligence Podcast (TCAST) explores the intersection of AI, data privacy, and ethical technology. Join Alexander McCaig and Jason Rigby as they decode the future of data ownership, artificial intelligence, and digital privacy with industry leaders, researchers, and innovators.Each episode delivers actionable insights on:AI and machine learning developmentsData privacy and ownership strategiesEthical technology implementationReal-world applications of data intelligenceFuture trends in digital identity and data marketplacesPerfect for tech leaders, data scientists, privacy advocates, and forward-thinking professionals looking to understand and shape the future of data and AI.Presented by TARTLE, pioneers in ethical data exchange and AI enhancement. New episodes every week.The show is hosted by Co-Founder and Source Data Pioneer Alexander McCaig and Head of Conscious Marketing Jason Rigby.What's your data worth? Find out at (https://tartle.co/)Watch the podcast on Yo Explicit
URL copied to clipboard!