this post was submitted on 08 Sep 2025
5 points (100.0% liked)

blueteamsec

488 readers
25 users here now

For [Blue|Purple] Teams in Cyber Defence - covering discovery, detection, response, threat intelligence, malware, offensive tradecraft and tooling, deception, reverse engineering etc.

founded 2 years ago
MODERATORS
top 1 comments
sorted by: hot top controversial new old
[–] Diluvian@infosec.pub 1 points 2 days ago* (last edited 2 days ago)

This validates what researchers have been seeing in the wild -- ransomware attackers have been vibe-coding exploits based on feeding CVEs to an LLM. 51% delivering valid code and reproducing the attack seems a bit high. Even a system for generating exploit code that gets it right 5% of the time is alarming, as a good attacker only needs to get through once. The good defender needs to block it every single time.

LLMs are making an already lopsided playing field even more skewed to red team.