Depthfirst, a security startup, has deployed an AI agent that discovered 21 zero-day vulnerabilities in FFmpeg, a widely used open-source media library. These vulnerabilities, some of which had been present for over two decades, include heap and stack overflows. The AI's findings, which cost approximately $1,000 in compute, have led to patches being rolled out for the affected software. AI
IMPACT Enhances software security by proactively identifying vulnerabilities, potentially reducing the risk of exploits.
RANK_REASON An AI agent identified vulnerabilities in a widely used software library, which is a form of security research.
Read on Mastodon — fosstodon.org →
AI-generated summary · Google Gemini · from 2 sources. How we write summaries →