Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I learned from a recent post (https://sean.heelan.io/2025/05/22/how-i-used-o3-to-find-cve-...) that finding security issues can take 100+ calls to an LLM to get good signal. So I wonder about agent implementers who are trying to get good signal out of single calls, even if they are specialized ones.


I think that article is talking about finding a previously unknown exploit. A known and well documented vulnerability should be much easier to identify




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: