• TrippinMallard@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    3 hours ago

    That was not obvious to me. LLMs have been used for finding hardware, firmware, RF, software, and social exploits.

    RAM side-channel attacks are a good example of software exploits that are harder to exploit than find the vulnerability.

        • ☆ Yσɠƚԋσʂ ☆@lemmy.mlOP
          link
          fedilink
          arrow-up
          2
          ·
          31 minutes ago

          Again, I’m not disagreeing that you can use LLMs to audit all these things. All I’m saying is that software is by far the easiest place to apply models and actually try out exploits end to end.

          • TrippinMallard@lemmy.ml
            link
            fedilink
            arrow-up
            1
            ·
            29 minutes ago

            Your original comment was:

            Finding them is a prerequisite to exploiting them, and by far the hardest part. Once you know what the exploit is, abusing it is not difficult.