~Projectzero~
Google Project Zero details flaws in mutational grammar fuzzing and proposes a hybrid generative-mutational approach to improve bug discovery.
-
IOCs: (None identified)
-
#Fuzzing #ThreatIntel #VulnResearch
I've done some work in the past year with AI security startups focused on leveraging AI to find vulns. Their results were impressive.
This is running out-of-the-box without any add-on knowledge/expertise and is even more impressive in results.
#AI #vulnresearch
www.axios.com/2026/02/05/a...
New video out!
Security analyst John Ostrowski show the hands-on process behind discovering CVE-2025-24076 and CVE-2025-24994 described in our recent blog post.
Watch here: youtu.be/YwNcTuHxnAI
#security #pentest #windowsinternals #vulnresearch
Quote of the day: "Nicely done. It doesn’t undo all the (often rightly deserved) bad press that AI agents have received lately, but good news is good news."
www.vice.com/en/article/g...
#BigSleep #VulnResearch
Crucial point: PoC (Proof of Concept) is needed BEFORE GTFO. Validate LLM-suggested vulnerabilities with a working exploit to avoid spreading false positives. #VulnResearch 5/6
Boom! 💥
Windows Hello fingerprint authentication bypassed on top three devices:
- Dell Inspiron
- Lenovo ThinkPad
- Microsoft Surface Pro
Still waiting for recordings from our BlueHat talk to drop, but here's our writeup: blackwinghq.com/blog/posts/a...
#infosec #security #vulnresearch