ChrisRohlf
banner
chrisrohlf.bsky.social
ChrisRohlf
@chrisrohlf.bsky.social
🇺🇸 Waging algorithmic warfare since 2003. Software & Security Engineer. Non-Resident Research Fellow CSETGeorgetown CyberAI
Reposted by ChrisRohlf
🤖New CSET Blog

How is AI starting to impact the software vulnerability lifecycle?

@chrisrohlf.bsky.social breaks down the automation of the discovery, patching, and exploitation phases. cset.georgetown.edu/article/ai-a...
AI and the Software Vulnerability Lifecycle | Center for Security and Emerging Technology
AI has the potential to transform cybersecurity through automation of vulnerability discovery, patching, and exploitation. Integrating these models with traditional software security tools allows engi...
cset.georgetown.edu
August 4, 2025 at 2:01 PM
AI + cyber articles have an extreme lack of imagination. Where are the tabletop exercises for nation state APTs silently tampering with SentencePiece tokenizer implementations introducing backdoors into normalization logic …
July 8, 2025 at 3:06 PM
An interesting, and possibly intentional, side effect of interpreting the BIS rule in this way is that it deters most capable companies and individuals from contributing any development or support of Huawei’s Ascend CANN stack within open source AI compilers.
May 15, 2025 at 12:05 PM
Playing with OpenAI's o3-mini-high tonight. Here is the model analyzing a slightly modified crackaddr.c

These reasoning models are a game changer for non-agentic based AI driven code analysis

chatgpt.com/share/679d79...
ChatGPT - Segmentation Fault Exploit
Shared via ChatGPT
chatgpt.com
February 1, 2025 at 1:55 AM
Reposted by ChrisRohlf
We sat down with Nicholas Carlini and talked about his work attacking the mathematical underpinnings of LLMs, including remote oracle attacks that extract weights from closed foundation models. Crypto-type exploits that are not about cryptography:

securitycryptographywhatever.com/2025/01/28/c...
Cryptanalyzing LLMs with Nicholas Carlini
‘Let us model our large language model as a hash function—’ Sold. Our special guest Nicholas Carlini joins us to discuss differential cryptanalysis on LLMs...
securitycryptographywhatever.com
January 28, 2025 at 6:34 PM
he Deepseek v3 paper is impressive and the discussion surrounding it is fascinating. I find these results raise more questions for me than they answer. Here are a few random questions and thoughts I have after reading through the paper:
December 27, 2024 at 4:50 PM
Not sure how much I'll use this platform but here are some recent short pieces I recently wrote on AI and Cyber

AI Replication
struct.github.io/ai_replicati...

AI+Cyber & the Security Dilemma
struct.github.io/ai_security_...

LLM Emergent Abilities & Weird Machines
struct.github.io/emergent_abi...
December 1, 2024 at 4:06 PM