Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Anthropic discovers 22 vulnerabilities in Firefox using Claude Opus 4.6 AI model

Robinhood startup fund stumbles in New York Stock Exchange debut

OSHA investigates fatal accident at Libyan warehouse

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Anthropic discovers 22 vulnerabilities in Firefox using Claude Opus 4.6 AI model
Identity

Anthropic discovers 22 vulnerabilities in Firefox using Claude Opus 4.6 AI model

userBy userMarch 7, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Rabi LakshmananMarch 7, 2026Browser security / artificial intelligence

Anthropic announced Friday that it has discovered 22 new security vulnerabilities in its Firefox web browser as part of a security partnership with Mozilla.

Of these, 14 were classified as severe, 7 were classified as moderate, and 1 was rated as low severity. This issue was resolved in Firefox 148 released late last month. This vulnerability was identified over a two-week period in January 2026.

The artificial intelligence (AI) company said the number of high-severity bugs identified by its Claude Opus 4.6 Large-Scale Language Model (LLM) represented “nearly one-fifth” of all high-severity vulnerabilities patched in Firefox in 2025.

According to Anthropic, LLM detected the use-after-free bug in the browser’s JavaScript after “just” 20 minutes of investigation, which was then verified by human researchers in a virtualized environment to eliminate the possibility of false positives.

“By the end of this effort, we had scanned approximately 6,000 C++ files and submitted a total of 112 independent reports, including the aforementioned high- and medium-severity vulnerabilities,” the company said. “Most issues have been fixed in Firefox 148, and remaining issues will be fixed in future releases.”

The AI ​​startup said it gave its Claude models access to the entire list of vulnerabilities submitted to Mozilla and tasked the AI ​​tool with developing working exploits for them.

The company said that despite running hundreds of tests and spending about $4,000 in API credits, Claude Opus 4.6 was only able to turn a security flaw into an exploit in two cases.

The company added that this behavior illustrates two important aspects. First, the cost of identifying a vulnerability is cheaper than creating a way to exploit it, and this model is better at finding problems than exploiting them.

“However, the fact that Claude was able to automate the development of a crude browser exploit, even in a small number of cases, is alarming,” Anthropic stressed, adding that the exploit only worked within a testing environment that intentionally removed security features such as sandboxing.

A key component built into the process is a task validation tool that determines whether the exploit actually works. This gives the tool real-time feedback as it explores the problem codebase and allows the tool to iterate on results until the exploit is successful.

One such exploit created by Claude is for CVE-2026-2796 (CVSS score: 9.8), which is described as just-in-time (JIT) miscompilation of JavaScript WebAssembly components.

The disclosure comes weeks after the company released Claude Code Security in a limited research preview as a way to remediate vulnerabilities using AI agents.

“We cannot guarantee that all patches produced by agents that pass these tests will be sufficient to be merged immediately,” Anthropic said. “However, using a task validation tool increases confidence that the patch created fixes a specific vulnerability while preserving the functionality of the program, thus achieving what is considered the minimum requirement for a reasonable patch.”

Mozilla said in a joint announcement that 90 other bugs were discovered through its AI-powered approach, most of which have been fixed. These consisted of assertion failures that overlapped with problems traditionally discovered by fuzzing, and a separate class of logic errors that fuzzers failed to catch.

“The scale of our findings reflects the power of combining rigorous engineering with new analytical tools for continuous improvement,” the browser maker said. “We see this as strong evidence that large-scale AI-assisted analysis is a new addition to the security engineer’s toolbox.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleRobinhood startup fund stumbles in New York Stock Exchange debut
user
  • Website

Related Posts

Transparent Tribe uses AI to mass produce malware implants in campaign targeting India

March 6, 2026

Multi-stage VOID#GEIST malware that delivers XWorm, AsyncRAT, and Xeno RAT

March 6, 2026

MSP guide to scaling cybersecurity with AI-powered risk management

March 6, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Anthropic discovers 22 vulnerabilities in Firefox using Claude Opus 4.6 AI model

Robinhood startup fund stumbles in New York Stock Exchange debut

OSHA investigates fatal accident at Libyan warehouse

Microsoft, Google, Amazon and Anthropic Claude announce continued availability to non-defense customers

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.