The most visible thing how AI impacted security vulnerabilities early on were slop reports. Famously, daniel:// stenberg:// (npub1cm0…enqe) shared plenty of experiences with AI written garbage reports.
But there's another more recent development. Real, and valuable security reports show up. I heard those starting early this year. Those were single instances, but they were clearly showing that there are companies out there developing tools that spit out real vulnerabilities, with proof of concepts, and sometimes even patches.