logoalt Hacker News

vlovich123 • today at 2:59 PM • 1 reply • view on HN

One challenge is that we’re still constantly generating defects even with these tools. And you need the next gen model to spot the mistakes of the previous one. The exploits get more and more complicated and involved of course. But now:

* there’s a long tail of software that just won’t get secured or will take a very long time

* exploits have transformed from an expertise problem to a compute time search.

This is very different than any problem faced before. I’m not saying I’m convinced by the “slow down” approach, but I don’t think it’s as simple as you point out.


Replies

radicalbyte • today at 3:10 PM

In the things published in public, they're using existing exploits and hitting systems which have been poorly maintained. It won't end at that, obviously, especially with humans behind the wheel.

Yet I'm convinced that we can create extremely resilient software systems. I've been involved in the entire life-cycle of one. We know how to be very defensive and it's a choice to build "cheap, crappy and disposable" software.

LLMs are turning the needle there and I think that's a good thing.