Elektrine lite

← Feed

@davidfstr@mastodon.world

Post #4166595

2026-07-28 14:39 UTC

@drwhax@infosec.exchange I've been very concerned about the emergence of Mythos-class AI that can weaponize vulns. I'm personally responding by adding formal memory safety proof coverage to critical libraries in C (notably: OpenSSL). Testing - which can identify many but not all bugs - I no longer consider sufficient. Instead we need formal verification to prove the *absence* of bugs/vulns. #aicoding #security

Replies (1)

  • @drwhax@infosec.exchange 2026-07-28 14:57

    @davidfstr@mastodon.world I liked Halvar Flake's analogy, which i was sometimes a long the lines of, a bug every 10 years instead of 1 year. I think we can do a lot to prevent it, but there's always going to be bugs. I also think Mythos is way too hyped and these capabilities already exist in modern frontier models.

    Open ##4166594