Loading…
Attending this event?
Streaming: https://mssvideo.vcu.edu/RVAsec
Wednesday, June 5 • 10:30am - 11:20am
Patch Perfect: Harmonizing with LLMs to Find Security Vulns

Log in to save this to your schedule, view media, leave feedback and see who's attending!

Are LLMs a revolutionary leap forward for security research—or just spicy auto-complete?

The truth lies somewhere in between. This talk cuts through the hype and offers a practical perspective that’s grounded in real-world analysis of critical bugs in widely used products. We’ll walk through our process of harnessing large language models (LLMs) for patch-diffing in the context of N-day vulnerability research. Given a vague security advisory and some complicated code diffs, can an LLM get you closer to finding the right spot in the code to dig deeper? Which models work best for this task, and why? Let’s ditch the theory and get our hands dirty with iterative experimentation. Whether you’re a seasoned pentester, applied researcher, or budding practitioner, you'll take away tactical lessons for incorporating AI into your security toolkit.

Speakers
avatar for Caleb Gross

Caleb Gross

Director of Capability Development, Bishop Fox
Caleb Gross is the Director of Capability Development at Bishop Fox, where he leads a team of offensive security professionals specializing in attack surface research and vulnerability intelligence. Prior to coming to Bishop Fox, he served as an exploitation operator in the US Department... Read More →


Wednesday June 5, 2024 10:30am - 11:20am EDT
Ballroom D
Feedback form isn't open yet.

Attendees (3)