Story thread · 3 reports / 3 sources

AI-Found Bugs Aren't Proving Any Easier to Exploit Despite the Hype

slashdot.org · 14d

How the coverage leans

Across 3 sources · syndicated copies counted once

AI-assisted vulnerability discovery has yet to produce the expected surge in real-world attacks: VulnCheck found that only 14 of 1,061 attributed discoveries, or 1.3 percent, had been exploited, which is "almost identical to the rate across all vulnerabilities in VulnCheck's dataset," reports The Register. "That's a far cry from the narrative that frontier AI is dramatically tilting the balance in attackers' favor by churning out instantly weaponizable bugs." The findings suggest AI is currently better at increasing the volume of bugs found than making them easier to weaponize. From the report: The report takes particular aim at Anthropic's much-publicized Project Glasswing, unveiled in April with warnings that AI-assisted vulnerability discovery could allow attackers to hijack systems, disrupt operations, or steal data. Claude Mythos may have identified 23,019 vulnerability candidates, but there's remarkably little public evidence showing what became of most of them. VulnCheck notes t

First report: AI-assisted security tools are finding more bugs, but the threat level has not changed cyberscoop.com, 14d

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.