• TrippinMallard@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    3 hours ago

    Depends on the exploit. Sometimes it requires physical access to a port with contacts hidden under conformal coating that damages when removed.

      • TrippinMallard@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        edit-2
        3 hours ago

        That was not obvious to me. LLMs have been used for finding hardware, firmware, RF, software, and social exploits.

        RAM side-channel attacks are a good example of software exploits that are harder to exploit than find the vulnerability.

            • ☆ Yσɠƚԋσʂ ☆@lemmy.mlOP
              link
              fedilink
              arrow-up
              2
              ·
              29 minutes ago

              Again, I’m not disagreeing that you can use LLMs to audit all these things. All I’m saying is that software is by far the easiest place to apply models and actually try out exploits end to end.

              • TrippinMallard@lemmy.ml
                link
                fedilink
                arrow-up
                1
                ·
                27 minutes ago

                Your original comment was:

                Finding them is a prerequisite to exploiting them, and by far the hardest part. Once you know what the exploit is, abusing it is not difficult.