Jump to content

X A V I

Members
  • Posts

    5,969
  • Joined

  • Last visited

  • Days Won

    26
  • Country

    Algeria

Everything posted by X A V I

  1. OpenAI's o3 artificial intelligence (AI) model recently helped a cybersecurity researcher in uncovering a zero-day vulnerability in Linux. As per the researcher, the flaw was found in the Linux kernel's Server Message Block (SMB) implementation, also known as ksmbd. The previously unknown security flaw is said to be tricky to find since it involved multiple users or connections interacting with the system at the same time. This specific bug is now tracked as CVE-2025-37899, and a fix has already been released. OpenAI's o3 Finds Zero-Day Vulnerability Usage of AI models in finding zero-day or previously unknown (and likely unexploited) bugs is relatively rare, despite the increasing capabilities of the technology to potentially hunt them. Most researchers still prefer to uncover such security flaws using traditional code auditing, which can be a cumbersome way to analyse a large codebase. Researcher Sean Heelan detailed how OpenAI's o3 model assisted him in uncovering the flaw relatively easily in a blog post. Interestingly, the major bug was not the focus for the researcher. Heelan was testing the AI's capability against a different bug (CVE-2025-37778), also described as the “Kerberos authentication vulnerability.” This bug also falls in the “use-after-free” category, which essentially means that a part of the system deletes something from memory, but other parts still try to use it afterwards. This can lead to crashes and security issues. The AI model was able to find the flaw in eight out of the 100 runs. Russian Malware Lostkeys Can Steal Your Files and Extract Sensitive Data Once Heelan confirmed that o3 is capable of detecting a known security bug from a large chunk of code, he decided to use it to feed the AI model the entire file of the session setup command handler instead of just one function. This file, notably, contains around 12,000 lines of code and handles different types of requests. An analogy of this would be to give the AI a novel and to ask it to find a specific typo, only, this typo could potentially crash the computer. After o3 was asked to run 100 simulations of this full file, it was only able to find the previously known bug once. Heelan acknowledges the drop in performance but highlights that the AI was still able to find the bug, which is a big feat. However, he found that in other runs, the OpenAI model spotted an entirely different bug, which was previously unknown, and the researcher missed it. This new security flaw was also of the same nature, but it affected the SMB logoff command handler. This zero-day vulnerability also involved the system trying to access a file that was previously deleted, however, this bug triggered the issue when a user was logging out or ending a session. LockBit Ransomware Group Gets Hacked, Extortion Tactics Exposed As per o3's report, this bug could potentially crash the system or allow attackers to run code with deep system access, making it a major security concern. Heelan highlighted that o3 was able to understand a tricky bug in a real-world scenario, and explained the vulnerability clearly in its report. https://www.gadgets360.com/ai/news/openai-o3-ai-model-researcher-uncovers-zero-day-vulnerability-linux-kernel-smb-implementation-8510275#pfrom=topstory
  2. Music title: Spend 24 Hours With Rico Nasty In New York City | Billboard Signer: Spend 24 Hours With Rico Nasty In New York City | Billboard Release date:25/05/2025 Official YouTube link:
  3. ive Performance Title: Dua Lipa - Future Nostalgia Medley (Live at the BRIT Awards 2021) Signer Name: Dua Lipa Live Performance Location: Dua Lipa Official YouTube Link :
  4. Nick Movie: Mon Boss est un Zombie | Film Complet en Français | Comédie, Horreur Netflix / Amazon / HBO?: None Duration of the movie:1h32m Trailer:
  5. Music title: Carín León On His Roots, Working With Alejandro Fernández & Maluma & More |Billboard In Conversation Signer: Carín León On His Roots, Working With Alejandro Fernández & Maluma & More |Billboard In Conversation Release date:23/05/2025 Official YouTube link:
  6. ive Performance Title: Dua Lipa - Houdini (Live from the Royal Albert Hall) Signer Name: Dua Lipa Live Performance Location: Dua Lipa Official YouTube Link :
  7. Nick Movie: Un Tueur pas comme les Autres | Alan Ritchson (Reacher) | Film Complet en Français | Comédie Netflix / Amazon / HBO?: None Duration of the movie:1h35m Trailer:
  8. Forum u need u back ! 😔

    1. Secario

      Secario

      hello ..

      some topics need aprovals 

    2. -Sn!PeR-

      -Sn!PeR-

      thinking of coming back but there are no administrators to talk to lol

  9. A pocas horas para comenzar la campaña de la Renta 2024, ya vamos calentando motores para lidiar con esta ardua travesía. Así que, para acceder al borrar y poder presentar la declaración de manera online, debemos contar con una herramienta fundamental, que sin ella no podremos siquiera a entablar contacto con el proceso. Hablamos de la Cl@ve PIN, y es la opción más óptima y cómo para acceder a cualquier trámite de la Agencia Tributaria. Gracias a ella, nos ahorraremos disponer de un certificado digital o un DNI electrónico. Este sistema de clave nos permite iniciar sesión dentro de los servicios de la Administración mediante un código temporal que recibirás en tu propio móvil. Así que, si quieres utilizarlo, lo primero es que te registres en el sistema Cl@ve y que configures tu propio acceso. Vamos a ver cómo poder hacerlo para que no se te pase ningún plazo. Qué es la Cl@ve PIN y por qué influye en la Renta 2024 Este método consiste en un sistema de identificación electrónica, el cual nos permitirá acceder a trámites online que tengan que ver con la Administración, y en primer lugar, prioriza nuestra propia seguridad. A diferencia del certificado o el DNI electrónico, no requiere de ningún tipo de instalación de ningún programa. Todo se basa en introducir un PIN que se genera con cada solicitud. La campaña de la Renta 2024 comienza este mismo 2 de abril. O sea, mañana mismo. Y finaliza el 30 de junio. Así que, para enfrentarte a tan importante procedimiento, lo mejor es afrontarlo de la manera más sencilla. Es decir: Cl@ve. https://www.softzone.es/noticias/tramites/conseguir-configurar-clave-pin-renta-2024/
  10. Alcatel, the French mobile brand operated by TCL Communication, has officially announced the India launch date for its upcoming V3 series. While Alcatel has only confirmed the existence of the Alcatel V3 Ultra model, reports suggest that the V3 series will include the Alcatel V3 Pro and V3 Classic as well. The Alcatel V3 Ultra 5G is teased to come with a triple rear camera module and will support a stylus. The Alcatel V3 series will go on sale via Flipkart. After sharing multiple teasers, Alcatel has now confirmed that its V3 series will be unveiled in India on May 27 at 12pm IST. Although Alcatel has officially acknowledged only the Alcatel V3 Ultra model so far, the V3 series is expected to include additional variants such as the Alcatel V3 Pro and V3 Classic. https://www.gadgets360.com/mobiles/news/alcatel-v3-series-india-launch-date-specifications-expected-8430021#pfrom=topstory
  11. Hello Bro

    Pls Read Rules

    in Gaming Video

    1 Post in day Next i will get Wrining

    Good Luck !

    https://csblackdevil.com/forums/forum/19085-gaming-videos/

  12. Forum Need Modrators and Pls Need see u activ 1 week and i will your Request I will Accpted Good Luck !
  13. Though it takes place in the same setting as Control, it could not be any clearer in Remedy's new co-op shooter that you are no Jesse Faden. Forget telekinetic superpowers and shape-shifting weaponry—this time you're just an expendable grunt, sent out to do jobs so dangerous that your objectives are more likely to kill you than the hordes of Hiss-possessed ghouls.During my two-and-a-half-hour hands-on with FBC: Firebreak, I truly never knew what to expect as I jumped into each new mission—though "something unpleasant" was a good rule of thumb. One minute I was transporting deadly radioactive material in a nightmarish quarry full of giant leeches, the next I was desperately dodging through an office trying to avoid being engulfed by parasitic post-it notes. Even mid-mission I often found myself blind-sided by some new lethal wrinkle in the plan. An excursion to repair malfunctioning furnace fans that keep intermittently spewing flame already felt risky enough—my team and I couldn't quite believe it when our objective marker indicated the next step was to finish the repairs by crawling inside them and hammering away while literally on fire. "Definitely a big reference game would be the way that friendly fire, for example, works in Helldivers 2," says lead designer Anssi Hyytiainen. Certainly the travails of our team do evoke some of Helldivers' slapstick comedy and satire. We're redshirts, not heroes, messing with forces beyond our control. "They build these devices, or they're using a paranatural object, that is probably a little bit too powerful for their own good." https://www.pcgamer.com/games/fps/co-op-shooter-fbc-firebreak-is-so-deadly-that-even-the-objectives-are-trying-to-kill-you/
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.