AI-Assisted Exploit Development Time Drops from 125 Days to 12 Hours, Outpacing Scanners
By
Elizabeth Montalbano
Crackling crust, pillowy middle. The kind of bagel that earns a second cup of coffee.
Summary
New research from Cogent Research analyzing 69,159 CVEs reveals that AI-assisted attackers have reduced exploit development time from 125.3 days (January 2025) to just 0.5 days (by April 2026). This dramatic acceleration in exploit creation is outpacing traditional vulnerability scanners, creating significant cybersecurity challenges as threat actors leverage AI to weaponize vulnerabilities far faster than defensive tools can adapt.
Key quotes
· 3 pulledAttackers have reduced the time to develop an exploit for a known vulnerability from 125 days to a mere half a day, thanks to the use of AI-assisted development, leaving vulnerability scanners struggling to keep pace
Cogent Research analyzed 69,159 common vulnerabilities and exposures (CVEs) and found that in January 2025, attackers needed 125.3 days to develop a method for exploiting them
By April 2026, threat actors reduced that time to just 0.5 days by using AI, thus creating significant v
You might also wanna read
AI-Driven CVE Discovery Accelerates as New Models Find Long-Hidden Vulnerabilities
The article discusses how AI models like Claude Mythos, Big Sleep, and Microsoft Copilot are accelerating the discovery of Common Vulnerabil

Google detects and blocks first known AI-assisted zero-day exploit
Google's Threat Intelligence Group has detected and stopped what it says is the first known zero-day exploit developed with AI assistance. T
AI Didn't Invent New Cyberattacks — It Just Made Old Ones Cheap and Accessible
The article argues that AI hasn't created fundamentally new types of cyberattacks, but has dramatically lowered the cost and skill barriers
AI-Generated Vulnerability Reports Overwhelm Bug Bounty Platforms and Security Teams
A cybersecurity expert with nearly a decade of experience in bug bounty programs analyzes the growing problem of AI-generated vulnerability
Analysis of First Reported AI-Orchestrated Cyber Espionage Campaign Detected in 2025
The article describes the discovery and analysis of the first reported AI-orchestrated cyber espionage campaign detected in mid-September 20
Anthropic's Mythos AI Achieves 72.4% Success Rate in Generating Browser Sandbox Exploits
Anthropic's Mythos research preview demonstrates a significant advancement in AI's ability to generate working exploits for browser sandboxe
