Mozilla: Anthropic’s Mythos found 271 security vulnerabilities in Firefox 150



By identifying bugs so efficiently, Holley writes that AI tools like Mythos tilt the cybersecurity balance toward defenders, who benefit when discovering vulnerabilities becomes cheaper for both sides. “Computers were completely incapable of doing this a few months ago, and now they excel at it,” Holley writes. “We have many years of experience picking apart the work of the world’s best security researchers, and Mythos Preview is every bit as capable.”

In an interview with Wired, Holley said that, from now on, this kind of AI-aided vulnerability analysis is something that “every piece of software is going to have to [engage with], because every piece of software has a lot of bugs buried underneath the surface that are now discoverable.” And while it’s possible that future models more advanced than Mythos may be able to find bugs that current models miss, Holley said he was confident that “at least on the Firefox side, having had a bit of a head start here, that we’ve rounded the curve.”

Running through the AI-aided defense gauntlet could be especially important for the open source projects that underpin much of the modern Internet. That’s both because their public codebases are easier for AI systems to explore for vulnerabilities and because many such projects rely on wildly insufficient volunteer maintenance for their security.

In a New York Times essay last week, Mozilla CTO Raffi Krikorian argued that the human difficulty of both finding bugs and writing complex software has created a kind of balance in cyberthreat research that Mythos could break wide open. “The programmer who gave 20 years of his life to maintain [open source] code that runs inside products used by billions of people? He doesn’t have access to Mythos yet. He should,” Krikorian wrote.



Source link

  • Related Posts

    Meta will record employees’ keystrokes and use it to train its AI models

    Meta has found a new source of training data for its AI models: its own employees. The company plans to use data culled from the mouse movements and keystrokes of…

    Mozilla says it patched 271 Firefox vulnerabilities thanks to Anthropic’s Claude Mythos

    Anthropic’s buzzy announcement about using AI to improve cybersecurity earlier this month was met with plenty of skepticism. However, Mozilla shared some details that support use of the company’s special…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Pratt & Whitney’s $100M Plan To End Airline Engine Delays

    Pratt & Whitney’s $100M Plan To End Airline Engine Delays

    At least there’s one tech company making me feel sane in an increasingly insane world

    At least there’s one tech company making me feel sane in an increasingly insane world

    Canada wants reciprocity after US given ‘significant’ concessions

    Meta will record employees’ keystrokes and use it to train its AI models

    Meta will record employees’ keystrokes and use it to train its AI models

    Rep. Cory Mills says he won’t resign from Congress amid ethics probe into misconduct allegations

    Rep. Cory Mills says he won’t resign from Congress amid ethics probe into misconduct allegations

    What Was the 2015 Iran Nuclear Deal?

    What Was the 2015 Iran Nuclear Deal?