• ActualGrapesTasteGreen@piefed.zip
    link
    fedilink
    English
    arrow-up
    69
    ·
    1 day ago

    A big detail nobody seems to bring up about Project Glasswing is that they didn’t just prompt it “Hey, check out this codebase looking for issues” and out popped zero days. They ran each project through tens of thousands of dollars worth of compute time. Iteration after iteration and after all that they accumulate a report. Now they’ve reached out to some of the most cash flush companies to say “we can do the same for you.”

    Put your quarter in the one armed bandit. Maybe you’ll get a zero day but more than likely you’ll get a “better luck next time.” But please, keep paying us. In 10,000 more iterations we’ll surely find the bug that would have cost you millions.

    • Ophrys@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      21
      ·
      22 hours ago

      Yeah it’s cool a computer can write a script but if it takes 5 megawatts to do it then it’s not really an improvement

    • qqq@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      20 hours ago

      A competent pentest already costs in the tens of thousands of dollars, and we’re also not guaranteed to find anything. Some of the bugs that were discovered by Mythos existed in long standing code bases for a very long time and were not previously known. I would definitely not write off those capabilities.