AI Is Breaking the Two Vulnerability Cultures: Coordinated Disclosure vs. Linux's "Bugs Are Bugs"

Jeff Kaufman's post "AI Is Breaking Two Vulnerability Cultures" examines the tension between coordinated disclosure and Linux's "bugs are bugs" approach, accelerated by AI. The Copy Fail vulnerability (reported May 2026) illustrates the breakdown: Hyunwoo Kim followed standard Linux procedure — privately sharing with a closed list of security engineers while fixing quietly in the open. But someone noticed the diff, realized the security implications, and went public immediately, ending the embargo.
The Two Cultures
- Coordinated disclosure: Report privately, give maintainers ~90 days to fix. Goal: patch before public knows. But with AI-assisted scanning, independent rediscovery is common — in this case, just 9 hours after Kim's report, Kuan-Ting Chen independently found the same bug.
- Linux "bugs are bugs": Fix fast without drawing attention. The argument: if the kernel does something wrong, someone may weaponize it. But as AI gets good at finding vulnerabilities, the signal-to-noise ratio of commits rises, making examination more attractive and cheaper.
Why AI Changes Everything
Kaufman tested three AI models on the fix (f4c50a403): Gemini 3.1 Pro, ChatGPT-Thinking 5.5, and Claude Opus 4.7 all identified it as a security patch instantly. Even with just the diff (no context), Gemini was sure, GPT probable, Claude probable. This means embargoes — even short ones — are increasingly fragile: defenders can use AI too, but attackers can scan commits faster.
Kaufman suggests very short embargoes (and shortening further over time) as a pragmatic response, leveraging AI to accelerate defenders. Long embargoes create a false sense of non-urgency and limit who can work on fixes.
Read the full post for deeper analysis and the specific prompt Kaufman used for testing.
📖 Read the full source: HN AI Agents
👀 See Also

OpenClaw Security Vulnerabilities: Critical Framework Flaws Patched in 2026.3.28
Ant AI Security Lab identified 33 vulnerabilities in OpenClaw's core framework, with 8 critical issues patched in the 2026.3.28 release. The vulnerabilities include sandbox bypass, privilege escalation, session persistence after token revocation, SSRF risks, and allowlist degradation.

New Skill Automates OpenClaw Security Hardening on Remote Servers
A community developer has released a skill that helps AI assistants automatically secure OpenClaw installations on remote servers.

Endo Familiar: Object-Capability Sandbox for AI Agents
Endo Familiar implements object-capability security for AI agents: agents start with zero ambient authority, receive only explicit references to specific files or directories, and can derive narrower capabilities in sandboxed code.

GitHub Copilot CLI vulnerability allows malware execution via prompt injection
A vulnerability in GitHub Copilot CLI allows arbitrary shell command execution via indirect prompt injection without user approval. Attackers can craft commands that bypass validation and execute malware immediately on the victim's computer.