Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <875x0ap3no.fsf@gmail.com>
Date: Sat, 12 Sep 2026 14:20:59 -0700
From: Collin Funk <collin.funk1@...il.com>
To: oss-security@...ts.openwall.com
Subject: Re: AI slops from Eve

"David A. Wheeler" <dwheeler@...eeler.com> writes:

> The "rocky time" can easily be prepared for, though. I encourage
> everyone to do the following, assisted by AI:
>
> 1. Find & fix vulnerabilities.
>
> 2. Speed component update response. I argue this further here:
> https://www.linkedin.com/pulse/accelerate-deployment-vulnerability-tsunami-david-a-wheeler-eapge/
>
> 3. Harden systems so even break-ins will be less effective.
>
> I'd encourage others to do the same. The "vulnpocalypse" is starting.
> Like many storms, if you're ready, it will be far less damaging. I
> look forward to the end-state: WAY more secure software.

It would be nice if the major labs actually helped free software
projects with that process. Instead, they give you a trial for a few
months in hopes you become dependent on it, and drain your wallet into
theirs once the trial is finished. They probably learned that tactic
from drug dealers.

I used to be more charitable, recognizing that the compute would be
expensive. But seeing recent events where OpenAI decided to spend
millions of dollars to steal credit from independent math researchers
has made it even clearer that money is no concern of theirs.

Collin

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.