| ▲ | philipwhiuk 8 hours ago | |||||||
Sure but like, no AI was needed here. Regular human stupidity is still pretty potent. | ||||||||
| ▲ | mooreds 7 hours ago | parent [-] | |||||||
This is the thing that gets me about all the AI security pieces I read. Yes, AI can enable new attack vectors (prompt injection can be repeated N times when a human subject to the same messaging would bail). But what AI really does is shine a spotlight on all the flaws folks like OWASP have been talking about for decades. Secret rotation and short lived credentials don't require AI to implement, nor does their lack require AI to exploit. | ||||||||
| ||||||||