AI has found 50 bugs in cURL. "AI-native SASTs work well"
etn.se·3h·
Discuss: Hacker News

AI-generated bug reports are usually trash. But when a security researcher used LLM-based scanners the right way, he found 50 real bugs in libcURL. Swedish tech journalist talks to Swedish cURL maintainer Daniel Stenberg and to Joshua Rogers, an australian hacker / security researcher that used AI SAST tools to find 50 real cURL bugs – and counting.

With the help of generative AI–based tools, a developer named Joshua Rogers has identified no fewer than 50 flaws in one of the world’s most widely used open-source projects, cURL.

The Swedish maintainer of cURL — who recently vented his frustration over worthless AI-generated bug reports — is, this time, astonished by AI’s capability.

Something big just happened in the cybersecurity wor…

Similar Posts

Loading similar posts...