@ChristosArgyrop@mastodon.social
Post #1295358
2026-04-10 05:33 UTC
it simply needs to provide certain data to the hashes/dictionaries used by system languages eg Perl or Python. It was recognized more that 15 years ago and many software still does not randomize the keys for the hashes (design decision for performance, or just ignorance of the pattern). However if you run the AI it will likely pick this vulnerability and flag it.
Replies (1)
-
@ChristosArgyrop@mastodon.social 2026-04-10 05:34
There are tons of examples like this, and recognition that this historical bias exists immediately decreases support of the idea that AI finds things that humans missed. What is happening is that an extensive review process finds things using an updated knowledge base. This extensive review could/should be done by human security experts, but the resources to do so are simply not there for most software artefacts.