hn.today

We found 24 Android vulnerabilities using our open source AI security agent

github.blog8 points2 comments
Screenshot of We found 24 Android vulnerabilities using our open source AI security agent

GitHub Security Lab built an open-source AI security agent called the Taskflow Agent to automate, package, and share the LLM prompts and stepwise workflows that improve vulnerability hunting. The core argument is that customized taskflows - breaking auditing into incremental steps and steering the model toward specific classes of issues - lets LLMs find complex or easily-missed vulnerabilities faster. For Android, the team created targeted taskflows that separate mobile entry points from non-mobile code and that instruct the model to evaluate common mobile vulnerability classes, helping the agent focus on the correct attack surface and reasoning patterns.

Using these Android-focused taskflows against real apps produced dozens of findings (24 Android vulnerabilities reported), including several high-impact bugs and advisories now disclosed. The taskflows are available in the seclab-taskflows repo and can be run in a Codespace; a Copilot license and premium model requests are required, and runs can take one to two hours and consume many tokens. To audit a repo, execute ./scripts/audit/run_mobile.sh myorg/myrepo and inspect the audit_results table in the generated SQLite file for rows flagged as vulnerable.

Read on github.blog2 comments on Hacker News

Summary generated by AI from the linked article. hn.today is not affiliated with Hacker News or Y Combinator.

More in Security

The daily digest

Today's best Hacker News stories, summarized and screenshotted, one email a day.