# Mythos smythos! How to find 0day with lesser models Page: https://stenobird.com/podcast/risky-business-features-7716365/mythos-smythos-how-to-find-0day-with-lesser-models Text version: https://stenobird.com/podcast/risky-business-features-7716365/mythos-smythos-how-to-find-0day-with-lesser-models.md Podcast: [Risky Business Features](https://stenobird.com/podcast/risky-business-features-7716365) Published: 2026-05-08T06:17:57+00:00 Episode link: https://risky.biz/RBFEATURES19/ Audio file: https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBFEATURES19.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/mythos-smythos-how-to-find-0day-with-lesser-models Duration seconds: 5273 ## Resource In this podcast James Wilson chats with Niels Provos about his research into using older AI models to successfully hunt for 0day vulnerabilities. Niels has had a long and prolific career in cybersecurity, having worked as a Distinguished Engineer at Google and then heading up security at Stripe. His interest in AI bug hunting was piqued recently when one of the Mythos 0day vulnerabilities that received lots of attention happened to be in code he wrote for the OpenBSD project 27 years ago. It got him thinking: Are these frontier models really that magical? Or could we replicate their findings with some clever orchestration instead of relying on the model’s smarts to find bugs with a single prompt? As it turns out, this was worth looking into. Niels’ orchestration framework, Iron Curtain, works extremely well. This episode is also available on YouTube ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/mythos-smythos-how-to-find-0day-with-lesser-models/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/risky-business-features-7716365/mythos-smythos-how-to-find-0day-with-lesser-models.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.