> LLMs with coding abilities could be employed to create sophisticated malware with unprecedented ease. If that is possible then shouldn't it also be possible to ask the AI to find and code remediation to the vulnerabilities it found? So AI could be used to find all possible code-vulnerabilities and then how to neutralize those? This would advance software security in general. In other words AI could be used like a m…
> If that is possible then shouldn't it also be possible to ask the AI to find and code remediation to the vulnerabilities it found? It's not that simple. Mal-AI will probably operate orders of magnitude faster than Bene-AI. Patching affected software/hardware is a bureaucratic or formalized process that can take time. Time dilates for AI relative to humans because it can accomplish so much work in our time horizons.…
“Bureaucracy” misstates the fundamental issue: errors in patching the software against malware (e.g., breaking the prime function to support security) are more costly than errors in attempts to break in, so the former fundamentally demands more costly (even if it, too, is fully automated) verification.