| ▲ | simonw 5 days ago | ||||||||||||||||
You're posting this comment on a thread attached to an article where Filippo Valsorda - a noted cryptography expert - used these tools to track down gnarly bugs in Go cryptography code. | |||||||||||||||||
| ▲ | tptacek 5 days ago | parent | next [-] | ||||||||||||||||
They're also using "AI SAST tools", which: I would not expect anything branded as a "SAST" tool to find interesting bugs. SAST is a term of art for "pattern matching to a grocery list of specific bugs". | |||||||||||||||||
| |||||||||||||||||
| ▲ | delusional 5 days ago | parent | prev [-] | ||||||||||||||||
These are not "gnarly bugs". | |||||||||||||||||
| |||||||||||||||||