News Grower

Independent coverage of AI, startups, and technology.

Ars Technica May 7, 2026 at 19:18 Big Tech Stable Warm

Mozilla says 271 vulnerabilities found by Mythos have "almost no false positives"

The developer of Firefox says it has "completely bought in" on AI-assisted bug discovery.

Signal weather

Stable

The story has moved beyond the first headline and now acts as a reliable context anchor.

By Dan Goodin Original source
Mozilla says 271 vulnerabilities found by Mythos have "almost no false positives"

The disbelief was palpable when Mozilla’s CTO last month declared that AI-assisted vulnerability detection meant “zero-days are numbered” and “defenders finally have a chance to win, decisively.” After all, it looked like part of an all-too-familiar pattern: Cherry-pick a handful of impressive AI-achieved results, leave out any of the fine print that might paint a more nuanced picture, and let the hype train roll on. Mindful of the skepticism, Mozilla on Thursday provided a behind-the-scenes look into its use of Anthropic Mythos—an AI model for identifying software vulnerabilities—to ferret out 271 Firefox security flaws over two months. In a post, Mozilla engineers said the finally ready-for-prime-time breakthrough they achieved was primarily the result of two things: (1) improvement in the models themselves and (2) Mozilla’s development of a custom “harness” that supported Mythos as it analyzed Firefox source code. "Almost no false positives" The engineers said their earlier brushes with AI-assisted vulnerability detection were fraught with “unwanted slop.” Typically, someone would prompt a model to analyze a block of code. The model would then produce plausible-reading bug reports, and often at unprecedented scales. Invariably, however, when human developers further investigated, they’d find a large percentage of the details had been hallucinated. The humans would then need to invest significant work handling the vulnerability reports the old-fashioned way. Read full article Comments

Stay on the signal

Follow Mozilla says 271 vulnerabilities found by Mythos have "almost no false positives"

Follow this story beyond a single article: new follow-ups, adjacent sources, and the evolving storyline.

We send a confirmation link first, then only meaningful digests.

Story map

Understand this topic fast

A quick entry into the story: why it matters now, who is involved, and where to go next for context.

Why it matters now

This story is still moving and pulling follow-up coverage.
There are already 6 connected articles in the same storyline to continue from here.
The story keeps orbiting around AI-assisted, Ars Technica, and Completely, so the entity pages are the fastest way to build context.
Ars Technica already has 4 follow-up stories on the same theme.

Topic constellation

Open the live map for this story

See which entities, story threads, sources, and follow-up articles shape this story right now.

Click nodes to continue

Entity Cluster Article Hub Source

Story timeline

Continue with this story

A short sequence of events and follow-up stories to understand the arc quickly.

Jun 22, 2026 at 21:52 Ars Technica

GM installs robots at flagship EV factory after laying off 1,300 workers

US autoworkers union warns of robot automation as dark factory future looms.

Jun 22, 2026 at 21:02 Ars Technica

Man used massage gun on his tired eyeballs. It went as well as you'd expect.

He had retinal tears and bruises from squishing his eyeballs with the gun.

Jun 22, 2026 at 19:16 Ars Technica

Following user outcry, AMD reinstates memory encryption in consumer CPUs

Critics saw the move as an underhanded way to steer them toward more costly chips.

Jun 22, 2026 at 19:02 Ars Technica

Valve's Steam Machine ships June 29 for $1,049, but you probably won't be able to buy one yet

Valve says it's using a randomized purchase queue to make the experience "less frustrating and more fair."

Jun 22, 2026 at 17:10 Ars Technica

NHTSA investigating alleged Tesla Autopilot crash that killed woman in her home

Tesla touts Autopilot as lifesaving a day after grandmother died in crash.

May 7, 2026 at 19:18 Ars Technica

Mozilla says 271 vulnerabilities found by Mythos have "almost no false positives"

The developer of Firefox says it has "completely bought in" on AI-assisted bug discovery.

How reliable this looks

Signal and trust for Ars Technica

This source works at a rapid pace: 100% of recent stories land in the hot window, and 0% carry visible search signal.

Trusted

Reliability

92

Freshness

100

Sources in storyline

1

Related articles

More stories that share tags, source, or category context.

More from Ars Technica

Fresh reporting and follow-up coverage from the same newsroom.

Open source page