Best AI solution to hunt for buffer overflows in open source apps? A Hacker News user seeking to develop exploit-generation skills asked for the best AI solution to hunt for buffer overflows in open source applications, noting their OSCP attempt failed at the exploit generation stage and expressing a preference for locally runnable models. The user, an American, also referenced the 'cryptowars' and their eligibility for advanced tools. I'm an AI skeptic -- I was the type of person who made his students type out code from stack overflow, no copy and paste. And don't get me started on this generation's lack of shitposting ability lol... ANYWAYS - I attempted OSCP a while back, but floundered on the exploit generation portion... I think I know of a couple pieces of software that have some issues. I'd love to try to use AI to bridge that gap between theory and practice and maybe give a talk documenting my journey somewhere. On the pentesting side, I feel pretty confident, and this way would allow me to not spend a bunch of money if there are models that can run locally to do this to develop this skill. Also, since the cryptowars are apparently a thing again: I'm an American, so I should be allowed to get the good stuff ;- Comments URL: https://news.ycombinator.com/item?id=49307553 https://news.ycombinator.com/item?id=49307553 Points: 1 Comments: 0