Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

Faraday’s future faces potential SEC enforcement measures after three years of investigation

Fully patched Sonic Wall SMA 100 Series Device with UNC6148 Backdoor of Step Rootkit

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google AI “Big Sleep” stops exploitation of critical SQLite vulnerabilities before hacker law
Identity

Google AI “Big Sleep” stops exploitation of critical SQLite vulnerabilities before hacker law

userBy userJuly 16, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

July 16, 2025Ravi LakshmananAI Security/Vulnerability

Google revealed on Tuesday that its Large Language Model (LLM)-assisted Vulnerability Discovery Framework discovered security flaws in the SQLite open source database engine before being exploited in the wild.

The vulnerability tracked as CVE-2025-6965 (CVSS score: 7.2) is a memory corruption flaw that affects all versions prior to 3.50.2. It was discovered by Big Sleep, an artificial intelligence (AI) agent launched by Google last year as part of a collaboration between DeepMind and Google Project Zero.

“Attackers who can insert any SQL statement into their application will read the end of the array, as they can cause integer overflows,” the SQLite project maintainer said in their advisory.

Cybersecurity

The tech giant described CVE-2025-6965 as an important security issue “known to threaten only the actors and risk being exploited.” Google did not reveal who the threat actor was.

“The combination of threat intelligence and great sleep allowed Google to predict that the vulnerability would actually be used in close proximity and could cut it off in advance,” said the president of Global Affairs, Google and Alphabet.

“We believe this is the first time that AI agents have been used directly to block efforts to exploit wild vulnerabilities.”

In October 2024, Big Sleep was behind the discovery of another flaw in SQLite. This is a stack buffer underflow vulnerability that could have been exploited to cause crashes or arbitrary code execution.

In line with development, Google has published a whitepaper for building a well-defined, secure AI agent for human controllers. Its capabilities are carefully limited to avoid potential fraud and sensitive data disclosure, and its actions are observable and transparent.

“Traditional system security approaches (such as limiting agent actions implemented through classic software) lack the context awareness required for multi-purpose agents, allowing utilities to be overly restricted.”

“On the contrary, purely inference-based security (which relies solely on AI model judgment) is insufficient, and current LLMs are susceptible to operations such as rapid injections, and still cannot provide sufficiently robust guarantees.”

To mitigate the critical risks associated with agent security, the company said it has adopted a hybrid detailed approach that combines the strengths of both traditional deterministic control and dynamic inference-based defense.

Cybersecurity

The idea is to create robust boundaries around the agent’s operational environment to mitigate malicious behaviors implemented as a result of rapid injections so that the risk of harmful outcomes is greatly reduced.

“This detailed approach relies on the forced boundaries around the AI agent’s production environment to prevent potential worst-case scenarios, even if the agent’s internal inference process is compromised or erroneous by sophisticated attacks or unexpected inputs,” Google said.

“This multilayered approach recognizes that purely AI-based judgment is not sufficient even for purely rules-based systems.”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleIs it a hype as a service or the next energy revolution?
Next Article Google releases CVE-2025-6558 crucial chrome update to wild and active exploits
user
  • Website

Related Posts

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

July 16, 2025

Fully patched Sonic Wall SMA 100 Series Device with UNC6148 Backdoor of Step Rootkit

July 16, 2025

Building AGI: Zuckerberg Commits Billions to Meta’s Superintelligence Data Center Expansion

July 16, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

Faraday’s future faces potential SEC enforcement measures after three years of investigation

Fully patched Sonic Wall SMA 100 Series Device with UNC6148 Backdoor of Step Rootkit

Building AGI: Zuckerberg Commits Billions to Meta’s Superintelligence Data Center Expansion

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

Building AGI: Zuckerberg Commits Billions to Meta’s Superintelligence Data Center Expansion

ICEX Forum 2025 Opens: FySelf’s TwinH Showcases AI Innovation

The Future of Process Automation is Here: Meet TwinH

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.