Elektrine lite

← Feed

@freddy@social.security.plumbing

Post #1671878

2026-04-21 19:11 UTC

What Mythos access got us. Now public. https://blog.mozilla.org/en/privacy-security/ai-security-zero-day-vulnerabilities/

Replies (5)

  • Holy patch notes, Batman! Firefox has obliterated over 200 sinister security bugs in this release alone - the most villanous vulnerabilities ever squashed in the Firefox history. https://www.mozilla.org/en-US/security/advisories/mfsa2026-30/

    Open ##1885487

  • @Lukew@toot.wales 2026-04-21 21:26

    @freddy I'm curious if it's allowed the team to rethink certain architectural decisions to better guard against certain vulnerabilities across the board? Or if it is still a case by case bases where bugs get found but can also still sneak in?

    Open ##1885492

  • @jyasskin@hachyderm.io 2026-04-21 21:37

    @freddy Did you learn any lessons that would apply at the specification level? Totally reasonable if these were all implementation bugs, but I'd love to learn about mistakes we're making at other levels too.

    Open ##1885494

  • @buherator@infosec.place 2026-04-22 07:01

    @freddy Can you tell us about token costs?

    Open ##1885496

  • @floyd@chaos.social 2026-04-29 16:17

    @freddy do you have any infos regarding numbers of CVEs in how this compares to the coverage guided fuzzing time (AFL and following)?

    Open ##1885498