Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Discover Spotify working on ‘SongDNA’ feature to introduce you to the people behind your favorite music

Apple adds 650 megawatts of renewable energy in Europe, also deploys renewable energy in China

Chinese threat group Jewelbug secretly infiltrated Russian IT networks for months

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google AI “Big Sleep” stops exploitation of critical SQLite vulnerabilities before hacker law
Identity

Google AI “Big Sleep” stops exploitation of critical SQLite vulnerabilities before hacker law

userBy userJuly 16, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

July 16, 2025Ravi LakshmananAI Security/Vulnerability

Google revealed on Tuesday that its Large Language Model (LLM)-assisted Vulnerability Discovery Framework discovered security flaws in the SQLite open source database engine before being exploited in the wild.

The vulnerability tracked as CVE-2025-6965 (CVSS score: 7.2) is a memory corruption flaw that affects all versions prior to 3.50.2. It was discovered by Big Sleep, an artificial intelligence (AI) agent launched by Google last year as part of a collaboration between DeepMind and Google Project Zero.

“Attackers who can insert any SQL statement into their application will read the end of the array, as they can cause integer overflows,” the SQLite project maintainer said in their advisory.

Cybersecurity

The tech giant described CVE-2025-6965 as an important security issue “known to threaten only the actors and risk being exploited.” Google did not reveal who the threat actor was.

“The combination of threat intelligence and great sleep allowed Google to predict that the vulnerability would actually be used in close proximity and could cut it off in advance,” said the president of Global Affairs, Google and Alphabet.

“We believe this is the first time that AI agents have been used directly to block efforts to exploit wild vulnerabilities.”

In October 2024, Big Sleep was behind the discovery of another flaw in SQLite. This is a stack buffer underflow vulnerability that could have been exploited to cause crashes or arbitrary code execution.

In line with development, Google has published a whitepaper for building a well-defined, secure AI agent for human controllers. Its capabilities are carefully limited to avoid potential fraud and sensitive data disclosure, and its actions are observable and transparent.

“Traditional system security approaches (such as limiting agent actions implemented through classic software) lack the context awareness required for multi-purpose agents, allowing utilities to be overly restricted.”

“On the contrary, purely inference-based security (which relies solely on AI model judgment) is insufficient, and current LLMs are susceptible to operations such as rapid injections, and still cannot provide sufficiently robust guarantees.”

To mitigate the critical risks associated with agent security, the company said it has adopted a hybrid detailed approach that combines the strengths of both traditional deterministic control and dynamic inference-based defense.

Cybersecurity

The idea is to create robust boundaries around the agent’s operational environment to mitigate malicious behaviors implemented as a result of rapid injections so that the risk of harmful outcomes is greatly reduced.

“This detailed approach relies on the forced boundaries around the AI agent’s production environment to prevent potential worst-case scenarios, even if the agent’s internal inference process is compromised or erroneous by sophisticated attacks or unexpected inputs,” Google said.

“This multilayered approach recognizes that purely AI-based judgment is not sufficient even for purely rules-based systems.”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleIs it a hype as a service or the next energy revolution?
Next Article Google releases CVE-2025-6558 crucial chrome update to wild and active exploits
user
  • Website

Related Posts

Chinese threat group Jewelbug secretly infiltrated Russian IT networks for months

October 15, 2025

F5 breach exposes BIG-IP source code — state hackers behind massive intrusion

October 15, 2025

The AI Revolution: Beyond Superintelligence – TwinH Leads the Charge in Personalized, Secure Digital Identities

October 15, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Discover Spotify working on ‘SongDNA’ feature to introduce you to the people behind your favorite music

Apple adds 650 megawatts of renewable energy in Europe, also deploys renewable energy in China

Chinese threat group Jewelbug secretly infiltrated Russian IT networks for months

Eightfold Co-Founder Raises $35M for Viven, AI Digital Twin Startup Contacts Missed Colleagues

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

The AI Revolution: Beyond Superintelligence – TwinH Leads the Charge in Personalized, Secure Digital Identities

Revolutionize Your Workflow: TwinH Automates Tasks Without Your Presence

FySelf’s TwinH Unlocks 6 Vertical Ecosystems: Your Smart Digital Double for Every Aspect of Life

Beyond the Algorithm: How FySelf’s TwinH and Reinforcement Learning are Reshaping Future Education

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.