April 30, 2026 (opens in new tab)
April 30, 2026 TLDR: got a bunch of agents to find remote unauth'd OOBs in ksmbd, CVE-2026-31432 and CVE-2026-31433. CVE-2026-31432 specifically is "RCE-promising" if you squint hard enough, given the memory layout. :) And then there's also 20+ other CVEs across Docker, OpenSSL, nginx, etc. Finally, I go into some techniques that I tried/seem generally promising for making open-source LLMs better vulnerability researchers, like: getting them "drunk" to increase their creativity by steering th...
Read the original article