Google detects and blocks first known AI-assisted zero-day exploit
By
Stevie Bonifield
Lightly browned and well buttered. A solid pick from the rack.
Summary
Google's Threat Intelligence Group has detected and stopped what it says is the first known zero-day exploit developed with AI assistance. The exploit, created by prominent cybercrime threat actors, targeted an open-source web-based system administration tool and aimed to bypass two-factor authentication in a planned mass exploitation event. Google researchers identified AI involvement through telltale signs in the Python exploit script, including a hallucinated CVSS score and structured, textbook-style formatting consistent with LLM output.
Key quotes
· 3 pulledFor the first time, Google says it has spotted and stopped a zero-day exploit developed with AI.
Prominent cyber crime threat actors were planning to use the vulnerability for a 'mass exploitation event' that would have allowed them to bypass two-factor authentication.
Google's researchers found hints in the Python script used for the exploit that indicated help from AI, like a 'hallucinated CVSS score' and 'structured, textbook' formatting consistent with LLM.
You might also wanna read
Google reports first evidence of hackers using AI to develop zero-day security exploit
Google has reported evidence of hackers using AI to develop a zero-day security vulnerability, marking the first time the company has observ
Google Confirms First Known Case of Hackers Using AI to Discover Software Vulnerability
Google's security researchers have identified the first known instance of criminal hackers using artificial intelligence to discover a previ
AI-Assisted Exploit Development Time Drops from 125 Days to 12 Hours, Outpacing Scanners
New research from Cogent Research analyzing 69,159 CVEs reveals that AI-assisted attackers have reduced exploit development time from 125.3
Analysis of First Reported AI-Orchestrated Cyber Espionage Campaign Detected in 2025
The article describes the discovery and analysis of the first reported AI-orchestrated cyber espionage campaign detected in mid-September 20
Security Vulnerability: Google's Antigravity AI Susceptible to Indirect Prompt Injection Attacks
The article describes a security vulnerability where Google's Antigravity AI system (likely referring to Gemini) can be manipulated through
promptarmor.com·6mo agoHow an Attacker's Mistake in Installing Huntress Exposed Their AI-Driven Cyber Operations
An attacker inadvertently installed the Huntress security platform onto their own operating machine, providing security researchers with an
