Discussion about this post

User's avatar
kk's avatar

Which model did you use? I used claude opus/sonnet 4.6 and said I wanted to build an exploit that exploited this vulnerability, but they refused to generate it, they refused to weaponize it.

Golden Helm Securities's avatar

"Each new AI capability is usually met with “AI can do Y, but only humans can do X.” Well, for X = exploit development, that line just moved."

Yah if the exploit is a stack buffer overflow with no cookies or ASLR. Essentially AI can do exploit development equivalent to what was done in the 90s. Don't need to overhype this.

2 more comments...

No posts

Ready for more?