Comment Amateur Hour in IT Security is over (Score 2) 14
If you run software where security weaknesses typically can be exploited, you will get attacked. Only a matter of time and the attackers will soon have their own local models to do it (or already have them). Any patch will immediately lead to the creation of attack code. You have hours or less to patch. Unless you have effective defense-in-depth and security patches are for when one of several effective security mechanisms has a problem but the others are still fine, i.e. the vulnerability is non-exploitable.
That will require far better software on all levels, architecture, design and implementation, and that will require going from "coders" to actual software engineers that deserve the name and that have significant IT security skills. We are not there. We will not be there for a while. No, LLMs will not help the defenders. The only question is how large the catastrophe will get while we scramble to fix decades of cheaper than possible engineering it the software space.