Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror

Submission Summary: 0 pending, 4 declined, 3 accepted (7 total, 42.86% accepted)

Submission + - GPT-4 can exploit real vulnerabilities by reading security advisories (theregister.com)

tippen writes:

In a newly released paper, four University of Illinois Urbana-Champaign (UIUC) computer scientists – Richard Fang, Rohan Bindu, Akul Gupta, and Daniel Kang – report that OpenAI's GPT-4 large language model (LLM) can autonomously exploit vulnerabilities in real-world systems if given a CVE advisory describing the flaw.

"To show this, we collected a dataset of 15 one-day vulnerabilities that include ones categorized as critical severity in the CVE description," the US-based authors explain in their paper.

"When given the CVE description, GPT-4 is capable of exploiting 87 percent of these vulnerabilities compared to 0 percent for every other model we test (GPT-3.5, open-source LLMs) and open-source vulnerability scanners (ZAP and Metasploit)."


Submission + - Ask Slashdot: Best management interface on an IT appliance?

tippen writes: The management user interface on most networking and storage appliances are, shall we say, not up to the snuff compared to modern websites or consumer products. What are the best examples of good UX design on an IT appliance that you've managed? What was it that made you love it?

What should companies (or designers) developing new products look to as best-in-class that they should be striving for?

Submission + - Timelapse of Endeavour's Final Ride

tippen writes: Fascinating timelapse video of the space shuttle Endeavor's final ride from Kennedy Space Center to LAX, then through 12 miles of city streets to the museum.

Sad to see the end of an era.

Slashdot Top Deals

Nothing is finished until the paperwork is done.

Working...