AI found 12 of 12 OpenSSL zero-days

by AndrewDuckeron 2/19/2026, 4:20 PMwith 8 comments

by munk-aon 2/19/2026, 4:51 PM

It would be pleasant to know a bit more about the whole of what was reported. If this system reported 24 potential vulnerabilities of which thirteen were legitimate that's pretty excellent, if it only reported these twelve then that's astounding - but we don't know how many false reports were filtered through either by the OpenSSL team or by the folks running this agent and the primary issue.

by greesilon 2/19/2026, 4:42 PM

This is a press release masquerading as a blog post.

by jazz9kon 2/19/2026, 5:05 PM

"Our goal was to turn what used to be an elite, artisanal hacker craft into a repeatable industrial process"

So putting everyone in the security industry out of work is an admirable goal?