• TrippinMallard@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      edit-2
      4 hours ago

      That was not obvious to me. LLMs have been used for finding hardware, firmware, RF, software, and social exploits.

      RAM side-channel attacks are a good example of software exploits that are harder to exploit than find the vulnerability.

          • ☆ Yσɠƚԋσʂ ☆@lemmy.mlOP
            link
            fedilink
            arrow-up
            2
            ·
            2 hours ago

            Again, I’m not disagreeing that you can use LLMs to audit all these things. All I’m saying is that software is by far the easiest place to apply models and actually try out exploits end to end.

            • TrippinMallard@lemmy.ml
              link
              fedilink
              arrow-up
              1
              ·
              2 hours ago

              Your original comment was:

              Finding them is a prerequisite to exploiting them, and by far the hardest part. Once you know what the exploit is, abusing it is not difficult.