PulseAugur
实时 12:36:15
中文(ZH) 🌗 FFmpeg 中的 21 個零日漏洞 ➤ 透過 AI 代理進行低成本、高精準度的自主漏洞挖掘 ✤ https:// depthfirst.com/research/21-zer o-days-in-ffmpeg depthfirst 團隊透過自研的「自主安全代理」(Autonomous Security Agent

AI 代理以低成本在 FFmpeg 中发现 21 个零日漏洞

专注于人工智能驱动安全的公司 Depthfirst 宣布,其自主安全代理已在 FFmpeg 多媒体框架中识别出 21 个零日漏洞。与 Google 和 Anthropic 此前的分析相比,该代理以显著更低的成本实现了这一壮举,成本约为 1,000 美元,而之前为 10,000 美元。值得注意的是,其中一些漏洞长达 20 年未被发现,该代理能够生成可复现的概念验证漏洞利用。 AI

影响 展示了人工智能在显著降低发现关键软件漏洞的成本和时间方面的潜力。

排序理由 关于漏洞发现新方法的 AI 研究论文。

在 Mastodon — mastodon.social 阅读 →

AI 生成摘要 · Google Gemini · 来自 2 个来源。 我们如何撰写摘要 →

AI 代理以低成本在 FFmpeg 中发现 21 个零日漏洞

报道来源 [2]

  1. Mastodon — mastodon.social TIER_1 English(EN) · [email protected] ·

    TLDR:depthfirst的生产级自主安全代理在对Google和Anthr进行密集安全分析后,发现了FFmpeg中的21个零日漏洞

    "TLDR: depthfirst’s production autonomous security agent discovered 21 zero-day vulnerabilities in FFmpeg, after intensive security analysis by Google and Anthropic. Moving beyond theoretical analysis, our agent produces concrete, reproducible PoC inputs to confirm its findings a…

  2. Mastodon — mastodon.social TIER_1 中文(ZH) · GripNews ·

    FFmpeg 中发现 21 个零日漏洞 ➤ AI 代理实现低成本、高精度自主漏洞发现 ✤ https://depthfirst.com/research/21-zero-days-in-ffmpeg Depth First 团队通过其自研的“自主安全代理”

    🌗 FFmpeg 中的 21 個零日漏洞 ➤ 透過 AI 代理進行低成本、高精準度的自主漏洞挖掘 ✤ https:// depthfirst.com/research/21-zer o-days-in-ffmpeg depthfirst 團隊透過自研的「自主安全代理」(Autonomous Security Agent),成功在開源多媒體框架 FFmpeg 中挖掘出 21 個零日漏洞。相較於 Google 與 Anthropic 先前的研究,該團隊大幅降低了研發成本(僅約 1,000 美元),並確認了多項隱藏長達 23 年之久的安全性缺陷。該系統不僅能執…