PulseAugur
EN
LIVE 19:53:18

AI agent finds 21 zero-day flaws in widely used FFmpeg media library

Depthfirst, a security startup, has deployed an AI agent that discovered 21 zero-day vulnerabilities in FFmpeg, a widely used open-source media library. These vulnerabilities, some of which had been present for over two decades, include heap and stack overflows. The AI's findings, which cost approximately $1,000 in compute, have led to patches being rolled out for the affected software. AI

IMPACT Enhances software security by proactively identifying vulnerabilities, potentially reducing the risk of exploits.

RANK_REASON An AI agent identified vulnerabilities in a widely used software library, which is a form of security research.

Read on Mastodon — fosstodon.org →

AI-generated summary · Google Gemini · from 2 sources. How we write summaries →

AI agent finds 21 zero-day flaws in widely used FFmpeg media library

COVERAGE [2]

  1. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    Security startup Depthfirst's autonomous AI agent found 21 previously unknown vulnerabilities in FFmpeg, the open-source media library used in almost everything

    Security startup Depthfirst's autonomous AI agent found 21 previously unknown vulnerabilities in FFmpeg, the open-source media library used in almost everything that touches video. The run cost roughly 1,000 USD in compute. Some bugs had been hiding in the codebase for more than …

  2. Mastodon — mastodon.social TIER_1 English(EN) · [email protected] ·

    depthfirst’s AI agent found 21 FFmpeg zero-days (MEDIUM, CVE-2026-39210 – 39218), mainly heap/stack overflows — oldest since 2003. No active exploitation. Patch

    depthfirst’s AI agent found 21 FFmpeg zero-days (MEDIUM, CVE-2026-39210 – 39218), mainly heap/stack overflows — oldest since 2003. No active exploitation. Patches rolling out. Update ASAP. https:// radar.offseq.com/threat/depthf irsts-ai-agent-found-21-ffmpeg-zero-days-cve-99cb21…