D•Scribe
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
☆ Yσɠƚԋσʂ ☆@lemmygrad.ml to technology@hexbear.netEnglish · 3 months ago

Google says its AI-based bug hunter found 20 security vulnerabilities

techcrunch.com

external-link
message-square
32
link
fedilink
  • cross-posted to:
  • technology@lemmy.zip
  • technology@lemmygrad.ml
30
external-link

Google says its AI-based bug hunter found 20 security vulnerabilities

techcrunch.com

☆ Yσɠƚԋσʂ ☆@lemmygrad.ml to technology@hexbear.netEnglish · 3 months ago
message-square
32
link
fedilink
  • cross-posted to:
  • technology@lemmy.zip
  • technology@lemmygrad.ml
Google says its AI-based bug hunter found 20 security vulnerabilities | TechCrunch
techcrunch.com
external-link
The discoveries by an AI-based bug hunter are significant, as it shows these tools are starting to get real results, even if they still need a human.
  • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    3 months ago

    That article isn’t referring to the specific system google is using, so we don’t know what the false positive rate is.

    • WrongOnTheInternet [none/use name]@hexbear.net
      link
      fedilink
      English
      arrow-up
      9
      ·
      3 months ago

      Uh pretty high if it’s an LLM

      • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        2
        ·
        3 months ago

        That’s not a given.

        • Orcocracy [comrade/them]@hexbear.net
          link
          fedilink
          English
          arrow-up
          8
          ·
          3 months ago

          But it is likely.

          • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
            link
            fedilink
            English
            arrow-up
            2
            arrow-down
            2
            ·
            3 months ago

            It really depends on how their particular system is set up. You’re just making sweeping vibe based statements without any evidence to support them.

            • Orcocracy [comrade/them]@hexbear.net
              link
              fedilink
              English
              arrow-up
              7
              ·
              3 months ago

              Yeah, like maybe this is one of those AIs that is actually just a guy in the Philippines being paid shit wages. Or maybe it’s a dumb LLM that makes lots of mistakes. Or maybe it’s all just bullshit from TechCrunch where an underpaid journalist is just recycling a fucking press release from Google and none of this actually happened anything like how it’s written.

              • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
                link
                fedilink
                English
                arrow-up
                2
                arrow-down
                2
                ·
                3 months ago

                Or maybe new technology actually has valid applications despite the hype associated with it.

                • Orcocracy [comrade/them]@hexbear.net
                  link
                  fedilink
                  English
                  arrow-up
                  5
                  ·
                  3 months ago

                  It’s not entirely impossible. But given the story is light on detail and the main source is Google PR it looks very much like a case of hypemongering.

                  • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
                    link
                    fedilink
                    English
                    arrow-up
                    2
                    arrow-down
                    1
                    ·
                    3 months ago

                    I mean we’ll see, in general stuff like finding vulnerabilities in large code bases seems like a good fit for this tech. All it’s doing is making statistical inferences based on training, and this can help spot problems that would be hard to track down by hand.

        • GaveUp [she/her]@hexbear.net
          link
          fedilink
          English
          arrow-up
          2
          ·
          3 months ago

          It’s literally the 2nd paragraph lmao

          Heather Adkins, Google’s vice president of security, announced Monday that its LLM-based vulnerability researcher Big Sleep found and reported 20 flaws in various popular open source software.

          • ☆ Yσɠƚԋσʂ ☆@lemmygrad.mlOP
            link
            fedilink
            English
            arrow-up
            2
            arrow-down
            1
            ·
            3 months ago

            what specifically do you think this paragraph says lmao

technology@hexbear.net

technology@hexbear.net

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@hexbear.net

On the road to fully automated luxury gay space communism.

Spreading Linux propaganda since 2020

  • Ways to run Microsoft/Adobe and more on Linux
  • The Ultimate FOSS Guide For Android
  • Great libre software on Windows
  • Hey you, the lib still using Chrome. Read this post!

Rules:

  • 1. Obviously abide by the sitewide code of conduct. Bigotry will be met with an immediate ban
  • 2. This community is about technology. Offtopic is permitted as long as it is kept in the comment sections
  • 3. Although this is not /c/libre, FOSS related posting is tolerated, and even welcome in the case of effort posts
  • 4. We believe technology should be liberating. As such, avoid promoting proprietary and/or bourgeois technology
  • 5. Explanatory posts to correct the potential mistakes a comrade made in a post of their own are allowed, as long as they remain respectful
  • 6. No crypto (Bitcoin, NFT, etc.) speculation, unless it is purely informative and not too cringe
  • 7. Absolutely no tech bro shit. If you have a good opinion of Silicon Valley billionaires please manifest yourself so we can ban you.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 249 users / day
  • 895 users / week
  • 1.53K users / month
  • 2.52K users / 6 months
  • 3 local subscribers
  • 24.1K subscribers
  • 992 Posts
  • 7.53K Comments
  • Modlog
  • mods:
  • context [fae/faer, fae/faer]@hexbear.net
  • SexUnderSocialism [she/her]@hexbear.net
  • gaycomputeruser [she/her]@hexbear.net
  • Wakmrow [he/him]@hexbear.net
  • SwitchyandWitchy [she/her]@hexbear.net
  • UI: unknown version
  • BE: 0.19.12
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org