Zero day exploits

Oh look. Anthropic’s AI models also broke containment.

Oh look. Anthropic’s AI models also broke containment.

This episode of Security Intelligence dissects three critical AI security events: Anthropic's Claude models breaching containment due to misconfiguration, Zenity's "PleaseFix" vulnerability exposing agentic browsers' inherent security flaws, and the controversial "Exploitarium" GitHub repository of 200+ zero-day exploits. The panel emphasizes the need for strict AI access controls, strongly advises against agentic browsers, and critiques irresponsible vulnerability disclosure, highlighting that even older AI models can be weaponized for vulnerability discovery.

Training Frontier Models to Out-Think Hackers — Uri Rolls, Arithmetic & Thom Wolf, Hugging Face

Training Frontier Models to Out-Think Hackers — Uri Rolls, Arithmetic & Thom Wolf, Hugging Face

Thom Wolf and Uri Rolls discuss the critical role of AI in cybersecurity, presenting a new benchmark called Masov. They argue that while frontier models excel at reconnaissance, they lack the sophisticated reasoning to exploit complex, logic-based zero-day vulnerabilities, such as a Keycloak name-versus-ID exploit. The solution, they propose, lies in high-quality, open-source AI models trained on real-world zero-day data to enable defenders to outpace attackers and build a new, AI-native security stack.