security-research

Tag

Cards List
#security-research

An AI Agent Found 21 Zero-Days in FFmpeg for $1,000 — One Is a Network-Reachable RCE via a Single 183-Byte Packet

Reddit r/AI_Agents · 14h ago

An autonomous AI agent from depthfirst discovered 21 zero-day vulnerabilities in FFmpeg, including a network-reachable RCE via a single 183-byte packet, for only $1,000 in compute costs; the find highlights the disparity between automated bug finding and patching.

0 favorites 0 likes
#security-research

score by collisions, patch by panic

Lobsters Hottest · 2026-05-22 Cached

The article proposes a new severity model for vulnerability reporting based on collision counts and the presence of working exploits, arguing that the current disclosure model is broken and that patches should be prioritized when multiple researchers find the same bug or exploits are public.

0 favorites 0 likes
#security-research

The first public macOS kernel memory corruption exploit on Apple M5 was built with Mythos Preview's help, and it only took 5 days.

Reddit r/singularity · 2026-05-14 Cached

Calif researchers, with help from the AI tool Mythos Preview, built the first public macOS kernel memory corruption exploit on Apple M5 hardware, bypassing MIE. The exploit chain took 5 days and will be fully disclosed after Apple fixes the vulnerabilities.

0 favorites 0 likes
#security-research

Tracesofhumanity.org by Joanna Rutkowska

Hacker News Top · 2026-05-10 Cached

Joanna Rutkowska announces the relaunch of her blog after a seven-year hiatus, reflecting on her past work with Qubes OS and her evolving perspective on rationality versus humanism.

0 favorites 0 likes
← Back to home

Submit Feedback