Trail of Bits’ Buttercup heads to DARPA’s AIxCC

With DARPA’s AI Cyber Challenge (AIxCC) semifinal starting today at DEF CON 2024, we want to introduce Buttercup, our AIxCC submission. Buttercup is a Cyber Reasoning System (CRS) that combines conventional cybersecurity techniques like fuzzing and static analysis with AI and machine learning to find and fix software vulnerabilities. The system is designed to operate […]

August 9, 2024
Read More >>

Is NASA a National Security Organization?

Is the National Aeronautics and Space Administration (NASA) a national security organization? The answer matters greatly in the division of labor between government agencies, as well as how NASA should interpret national guidance. The United States’ current National Security Strategy states that an era of “strategic competition” exists, which the recent Joint Concept for Competing […]

Is NASA a National Security Organization? was originally published on Global Security Review.

February 6, 2024
Read More >>

DARPA’s AI Cyber Challenge: We’re In!

We’re thrilled to announce that Trail of Bits will be competing in DARPA’s upcoming AI Cyber Challenge (AIxCC)! DARPA is challenging competitors to develop novel, fully automated AI-driven systems capable of securing the critical software that underpins the modern world. We’ve formed a team of world class software security and AI/ML experts, bringing together researchers, […]

December 14, 2023
Read More >>

How CISA can improve OSS security

By Jim Miller The US government recently issued a request for information (RFI) about open-source software (OSS) security. In this blog post, we will present a summary of our response and proposed solutions. Some of our solutions include rewriting widely used legacy code in memory safe languages such as Rust, funding OSS solutions to improve […]

November 20, 2023
Read More >>