Anthropic’s Claude found 22 vulnerabilities in Firefox over two weeks


In a recent security partnership with Mozilla, Anthropic found 22 separate vulnerabilities in Firefox — 14 of them classified as “high-severity.” Most of the bugs have been fixed in Firefox 148 (the version released this February), although a few fixes will have to wait for the next release.

Anthropic’s team used Claude Opus 4.6 over the span of two weeks, starting in the javascript engine and then expanding to other portions of the codebase. According to the post, the team focused on Firefox because “it’s both a complex codebase and one of the most well-tested and secure open-source projects in the world.”

Notably, Claude Opus was much better at finding vulnerabilities than writing software to exploit them. The team ended up spending $4,000 in API credits trying to concoct proof-of-concept exploits, but only succeeded in two cases.

Still, it’s a reminder of how powerful AI tools can be for open-source projects — even if they bring a flood of bad merge requests alongside the useful ones.



Source link

Latest

Robinhood’s startup fund stumbles in NYSE debut

Retail investors are famously locked out of the...

Valve doesn’t sound confident the Steam Machine will ship in 2026

As part of a Year in Review blog...

Google Home voice command update should be faster

Google Home is rolling out more updates to...

Newsletter

Don't miss

Robinhood’s startup fund stumbles in NYSE debut

Retail investors are famously locked out of the...

Valve doesn’t sound confident the Steam Machine will ship in 2026

As part of a Year in Review blog...

Google Home voice command update should be faster

Google Home is rolling out more updates to...

COPPA 2.0 passes the Senate again, unanimously this time

Today the US Senate unanimously passed proposed legislation...

Robinhood’s startup fund stumbles in NYSE debut

Retail investors are famously locked out of the startup world. Robinhood is attempting to change that by allowing the general public to invest...

Valve doesn’t sound confident the Steam Machine will ship in 2026

As part of a Year in Review blog detailing changes Valve made to Steam in 2025, the company shared a minor update on...

Google Home voice command update should be faster

Google Home is rolling out more updates to address ongoing issues with voice commands, with the latest fixes apparently making everything “snappier” and...

LEAVE A REPLY

Please enter your comment!
Please enter your name here