Hacker Newsnew | past | comments | ask | show | jobs | submit | leir's commentslogin

It lacks a systematic theoretical framework to support it, as there is no guarantee regarding the detection rate of vulnerabilities. However, its practical effectiveness is undeniable—it can definitely identify vulnerabilities and achieve a relatively low false positive rate. In a nutshell, it is a "nice-to-have" tool. It would be valuable if someone could conduct a capability and ROI comparison between this tool and traditional security detection tools.


Is this vulnerability just an authentication bypass the AMT web server, or the root cause was that AMT itself vulnerable?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: