Settings

Theme

How I used o3 to find a remote 0-day vulnerability in the Linux kernel (ksmbd)

sean.heelan.io

17 points by seanheelan 7 months ago · 4 comments

Reader

cadamsdotcom 7 months ago

Love the rigor of running an experiment many times to see how often it got the desired outcome. Most people would just fire off a prompt and be disappointed if the model didn’t find the bug!

Seems a clever technique for anything that needs strong defense against hallucination. Kind of an “average across runs”. Manually auditing results isn’t very scalable (cf. the author says they missed that the LLM caught the second half of the bug in some runs but they missed that detail). In future an LLM could do that bit too so the technique becomes scalable. One can imagine being given a meta-report of what’s in all the reports produced by the runs.

sebstefan 7 months ago

We're approaching convincing David Gerard from last week

> I'll be convinced when LLMs start making valuable pull requests, non-obvious corner cases or non-trivial bugs in mature FOSS projects

https://pivot-to-ai.com/2025/05/13/if-ai-is-so-good-at-codin...

  • uskasagh 7 months ago

    Doubtful.

    Based on the linked article I think Gerard would balk at this post, consider the content the exact kind of contribution that people would hate to deal with , and the headline “ceo weasel wording”.

    • sebstefan 7 months ago

      I wrote to him as a comment under his post

      > sebstefan: There’s this one from yesterday

      >https://sean.heelan.io/2025/05/22/how-i-used-o3-to-find-cve-...

      > David Gerard: > My experiment harness executes this N times (N=100 for this particular experiement) and saves the results

      > That’s just fuzzing but vastly less efficient?

      > Also, that’s not the question being asked, is it. It wasn’t “did someone use an AI for anything in open source.”

      I'll try to explain it to him but the guy seems pretty full of shit already

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection