| ▲ | ymir_e an hour ago | |
Absolutely. I'm not sure how universal this is, but I saw George Hotz tweeted something about Mythos not being such a big deal since he's able to find security issues without a claimed $20,000 in token spend per vulnerability. The reality is that humans aren't perfect, so we do not make "perfect programs". It is also possible to test it yourself to see how good LLMs are at finding software issues: Find any open source project that isn't huge, then have Kimi 3 review it for potential issues. You will find code "issues". Most of the time it won't be detrimental for security, but often there are code paths that are not "accounted for", or you're able to bypass a type of check by interacting with the software in a strange way. | ||
| ▲ | CodesInChaos 22 minutes ago | parent [-] | |
I'm sure if somebody hired him for a pentest it'd cost more per vulnerability found. | ||