| ▲ | fragmede 5 hours ago | |||||||||||||||||||||||||||||||
> Credits: Nicholas Carlini using Claude, Anthropic Claude was used to find the bug in the first place though. That CVE write-up happened because of Claude, so while there are some very talented humans in the loop, Claude is quite involved with the whole process. | ||||||||||||||||||||||||||||||||
| ▲ | magicalhippo 5 hours ago | parent | next [-] | |||||||||||||||||||||||||||||||
> Claude was used to find the bug in the first place though. That CVE write-up happened because of Claude Do you have a link to that? A rather important piece of context. Wasn't trying to downplay this submission the way, the main point still stands: But finding a bug and exploiting it are very different things. Exploit development requires understanding OS internals, crafting ROP chains, managing memory layouts, debugging crashes, and adapting when things go wrong. This has long been considered the frontier that only humans can cross. Each new AI capability is usually met with “AI can do Y, but only humans can do X.” Well, for X = exploit development, that line just moved. | ||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||
| ▲ | bayindirh 3 hours ago | parent | prev [-] | |||||||||||||||||||||||||||||||
Yes, that claim needs a source. | ||||||||||||||||||||||||||||||||