Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. High Quality chaos (a slide from a talk I do next week on this topic)

High Quality chaos (a slide from a talk I do next week on this topic)

Scheduled Pinned Locked Moved Uncategorized
9 Posts 7 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • bagder@mastodon.socialB This user is from outside of this forum
    bagder@mastodon.socialB This user is from outside of this forum
    bagder@mastodon.social
    wrote last edited by
    #1

    High Quality chaos (a slide from a talk I do next week on this topic)

    Link Preview Image
    ftranschel@norden.socialF unixbhaskar@mastodon.socialU luatic@mastodon.socialL wolf480pl@mstdn.ioW S 7 Replies Last reply
    1
    0
    • bagder@mastodon.socialB bagder@mastodon.social

      High Quality chaos (a slide from a talk I do next week on this topic)

      Link Preview Image
      ftranschel@norden.socialF This user is from outside of this forum
      ftranschel@norden.socialF This user is from outside of this forum
      ftranschel@norden.social
      wrote last edited by
      #2

      @bagder In your professional opinion (I have my own hypotheses), how much of that is due to AI *finding* CVEs and how much is due to AI *introducing* them in the first place? ^^

      bagder@mastodon.socialB 1 Reply Last reply
      0
      • ftranschel@norden.socialF ftranschel@norden.social

        @bagder In your professional opinion (I have my own hypotheses), how much of that is due to AI *finding* CVEs and how much is due to AI *introducing* them in the first place? ^^

        bagder@mastodon.socialB This user is from outside of this forum
        bagder@mastodon.socialB This user is from outside of this forum
        bagder@mastodon.social
        wrote last edited by
        #3

        @ftranschel these tools find vulns in all code, but of course the worse code it is the more problems they will find...

        1 Reply Last reply
        0
        • R relay@relay.infosec.exchange shared this topic
        • bagder@mastodon.socialB bagder@mastodon.social

          High Quality chaos (a slide from a talk I do next week on this topic)

          Link Preview Image
          unixbhaskar@mastodon.socialU This user is from outside of this forum
          unixbhaskar@mastodon.socialU This user is from outside of this forum
          unixbhaskar@mastodon.social
          wrote last edited by
          #4

          @bagder Ah, looks like two scenarios 🙂

          One, big shops are desperate to show their name on record .

          Second, they are fixing their self-introduced bugs....heck.

          Bonus, these monkeys never learn to maintain open source...irks

          Sigh....they are serios time-grabber ...meh

          1 Reply Last reply
          0
          • bagder@mastodon.socialB bagder@mastodon.social

            High Quality chaos (a slide from a talk I do next week on this topic)

            Link Preview Image
            luatic@mastodon.socialL This user is from outside of this forum
            luatic@mastodon.socialL This user is from outside of this forum
            luatic@mastodon.social
            wrote last edited by
            #5

            @bagder wonder what the severity distribution is like; is there a similarly significant increase in high severity vulnerabilities?

            1 Reply Last reply
            0
            • bagder@mastodon.socialB bagder@mastodon.social

              High Quality chaos (a slide from a talk I do next week on this topic)

              Link Preview Image
              wolf480pl@mstdn.ioW This user is from outside of this forum
              wolf480pl@mstdn.ioW This user is from outside of this forum
              wolf480pl@mstdn.io
              wrote last edited by
              #6

              @bagder
              > Firefox fixes 271 vulnerabilities

              so like I'm a noob, but

              I remember Firefox getting a security fix every week or so, to the point I got desensitized to the security-announce mailing list of the distro I was using.

              Does 271 more vulns make a big difference at that point?

              1 Reply Last reply
              0
              • bagder@mastodon.socialB bagder@mastodon.social

                High Quality chaos (a slide from a talk I do next week on this topic)

                Link Preview Image
                S This user is from outside of this forum
                S This user is from outside of this forum
                spacelifeform@infosec.exchange
                wrote last edited by
                #7

                @bagder

                Most of them are not serious. But the AI hype must proceed.

                No word from Google regarding Android?

                1 Reply Last reply
                0
                • bagder@mastodon.socialB bagder@mastodon.social

                  High Quality chaos (a slide from a talk I do next week on this topic)

                  Link Preview Image
                  soviut@hachyderm.ioS This user is from outside of this forum
                  soviut@hachyderm.ioS This user is from outside of this forum
                  soviut@hachyderm.io
                  wrote last edited by
                  #8

                  @bagder I feel like some of these figures can be gamed since you can vibe code a LOT of bugs/vulnerabilities into a project then turn around and claim you're fixing more bugs than ever.

                  Sorry to be cynical, but it's the first thing that came to mind these days when I saw this slide.

                  1 Reply Last reply
                  0
                  • bagder@mastodon.socialB bagder@mastodon.social

                    High Quality chaos (a slide from a talk I do next week on this topic)

                    Link Preview Image
                    bagder@mastodon.socialB This user is from outside of this forum
                    bagder@mastodon.socialB This user is from outside of this forum
                    bagder@mastodon.social
                    wrote last edited by
                    #9

                    Wireshark: more than 40 CVEs in last release ...

                    1 Reply Last reply
                    1
                    0
                    Reply
                    • Reply as topic
                    Log in to reply
                    • Oldest to Newest
                    • Newest to Oldest
                    • Most Votes


                    • Login

                    • Login or register to search.
                    • First post
                      Last post
                    0
                    • Categories
                    • Recent
                    • Tags
                    • Popular
                    • World
                    • Users
                    • Groups