| ▲ | 0xDEAFBEAD 2 hours ago | |||||||
It can't be too long before Claude Code is capable of replication + triage + suggested fixes... | ||||||||
| ▲ | 0xDEAFBEAD 2 hours ago | parent | next [-] | |||||||
BTW regarding "suggested fixes", an interesting attack would be to report a bug along with a prompt injection which will cause Claude to suggest inserting a vulnerability in the codebase in question. So, it's important to review bug-report-originated Claude suggestions extra carefully. (And watch for prompt injection attacks.) Another thought is the reproducible builds become more valuable than ever, because it actually becomes feasible for lots and lots of devs to scan the entire codebase for vulns using an LLM and then verify reproducibility. | ||||||||
| ▲ | ares623 2 hours ago | parent | prev [-] | |||||||
Would you ever blindly trust it? | ||||||||
| ||||||||