Skip to content

164news.com

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of Service
  • Cookie Policy

Google found the first AI-generated zero-day exploit. It stopped the attack before it started.

Posted on May 12, 2026 By 164news66 No Comments on Google found the first AI-generated zero-day exploit. It stopped the attack before it started.

Google Identifies First AI-Developed Zero-Day Exploit and Thwarts Planned Mass Exploitation Event

May 12, 2026 – 6:56 pm

Summary

Google has discovered the first zero-day exploit believed to be developed using artificial intelligence. The threat actor intended to deploy it in a mass exploitation event but was stopped by Google’s Threat Intelligence Group (GTIG). The report highlights the increasing use of AI for hacking, including state-sponsored actors from China, North Korea, and Russia.

Key Findings

  • First AI-Generated Zero-Day: Google found a Python script that bypassed two-factor authentication on an open-source tool, containing telltale signs of AI generation.
  • State-Sponsored Actors: The report documents how China, North Korea, and Russia are using AI for vulnerability research and supply chain attacks.
  • AI Malware: An Android malware named PROMPTSPY uses Google’s Gemini API to autonomously gather biometric data from infected devices.
  • Industrial-Scale Application of Generative Models: The use of AI in hacking is transitioning from experimental to industrial scale, as shown by the exploit and other cases.

The Exploit

The zero-day exploit targeted a semantic logic flaw, not a typical memory corruption bug or input sanitization error. It exploited a high-level design mistake where a trust assumption was hardcoded into the two-factor authentication logic. Traditional vulnerability scanners missed this flaw because they are optimized for detecting crashes and data flow sinks, while large language models can perform contextual reasoning and identify such logical errors.

Response

GTIG worked with the affected vendor to patch the vulnerability before it could be exploited. They do not believe Gemini was directly used in this case but highlight the threat actor’s history of high-profile incidents.

Clock

Post navigation

Previous Post: Nadella feared Microsoft would become ‘the next IBM.’ The trial reveals how much he paid to make sure it didn’t.
Next Post: GM is firing 600 IT workers and hiring AI engineers. It calls it transformation, not termination.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Editor's Picks

  • 24/7 Plumber Available in Denver
  • Denver Water Softener Installation
  • Clock
  • Thyroid Test
  • sailboat
  • Steam Boat
  • Submarine
  • Catamaran
  • Aeroplane
  • Helicopter

Recent Posts

  • Dutch watchdogs urge Europe’s banks to pool buying power against US tech giants
  • Humanoid robots just removed organs from live animals for the first time
  • SoftBank and PayPay said to be in talks to invest in Seven & i
  • A €91M bet on the diamond microscope that could be Europe’s next ASML
  • Claude can now tell you that you use Claude too much

Recent Comments

  1. fk777 casino on Spiro takes $55M from China’s NewTrails as it nears a $1bn valuation
  2. 5577betapp on Spiro takes $55M from China’s NewTrails as it nears a $1bn valuation
  3. 144bet1 on Spiro takes $55M from China’s NewTrails as it nears a $1bn valuation
  4. 144bet1 on Spiro takes $55M from China’s NewTrails as it nears a $1bn valuation
  5. 144bet1 on Spiro takes $55M from China’s NewTrails as it nears a $1bn valuation

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026

Editor's Picks

  • 24/7 Plumber Available in Denver
  • Denver Water Softener Installation
  • Clock
  • Thyroid Test
  • sailboat
  • Steam Boat
  • Submarine
  • Catamaran
  • Aeroplane
  • Helicopter

Copyright © 2026 164news.com.

Powered by PressBook Dark WordPress theme