Mozilla partners with Anthropic to perform security audits on firefox
Mozilla partners with Anthropic to perform security audits on firefox
Curl is getting a slew of amatuer programmers throwing non-tuned AI at the project and just saying “go find problems” then throwing it as pull requests at curl when the pull creators have no ability to understand what the AI found or the code it generated. Curl never asked for it, and they aren’t self identifying as AI generated.
In contrast, Mozilla is actively working with Anthropic on this, which implies at least some amount of coordination and intent with this. That would mean professionals from Anthropic and Mozilla fine tuning these AIs to reduce false positives. They will also be clearly labeled as AI generated. If it results in needless busywork, they’re free to cut the agreement at any time.
I’m not a particular fan of this either, and I think that there’s plenty of ground to cover with less resource intensive pattern matching bug and error detection schemes that should be focused on first, but this is absolutely not the same situation that happened to curl.