惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
The GitHub Blog
The GitHub Blog
Vercel News
Vercel News
D
DataBreaches.Net
MongoDB | Blog
MongoDB | Blog
H
Help Net Security
小众软件
小众软件
美团技术团队
T
The Blog of Author Tim Ferriss
爱范儿
爱范儿
D
Docker
Martin Fowler
Martin Fowler
大猫的无限游戏
大猫的无限游戏
博客园 - 聂微东
Blog — PlanetScale
Blog — PlanetScale
H
Hackread – Cybersecurity News, Data Breaches, AI and More
罗磊的独立博客
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
V2EX
S
SegmentFault 最新的问题
云风的 BLOG
云风的 BLOG
B
Blog
雷峰网
雷峰网
The Cloudflare Blog

Cybersecurity Dive - Latest News

Dozens of Red Hat npm packages targeted in supply chain attack Turning tension into collaboration: How CIOs and CISOs can lead together Trump signs EO seeking early government access to powerful AI models Anthropic shares Mythos with 150 more organizations, including critical infrastructure operators Without strong governance, companies put credit ratings at risk in AI era CISA adds critical Palo Alto Networks firewall flaw to KEV as company, researchers warn of exploitation How Canva scaled to 260+M users while elevating security and productivity Top 4 data security best practices for the AI-enabled enterprise CISA urges security teams to check for software development compromises How CISOs can manage sovereign-cloud security risks IBM’s new $5B initiative will help enterprises rapidly patch open-source vulnerabilities Enterprise data is creeping its way into shadow AI tools Coordinated operation takes down Glassworm botnet Leading AI models are more vulnerable to malicious prompts than vendors claim Iranian government, not hacktivist group, breached LA Metro system, security firm says FBI warns about PhaaS platform used to access Microsoft 365 environments Iran-linked hackers target key US, allied sectors with sophisticated spear-phishing messages New York regulator calls for additional cyber mitigation amid heightened threat environment CISA asks cybersecurity community to alert it to vulnerability exploitation Grafana Labs links GitHub environment breach to TanStack npm supply chain attack 7-Eleven hit by data breach Microsoft disrupts cybercrime operation that hid behind legitimate software Compromised coding tool helped hackers breach thousands of GitHub repositories Telecom sector launches its own private ISAC Patch bypass allows hackers to exploit prior flaw in SonicWall SSL-VPN Grafana Labs says hacker gained access to codebase through leaked token How a government contest launched a revolution in AI-based bug hunting Attackers exploit critical flaw in Cisco Catalyst SD-WAN Controller MSPs need AI to fight AI-fueled cyberthreats: Guardz More money is going to physical security, but it’s often CISOs that oversee it: EY
AI used to develop working zero-day exploit, researchers ...
David Jones · 2026-05-11 · via Cybersecurity Dive - Latest News

An article from site logo

A report by GTIG shows threat groups are increasingly leveraging AI to scale attacks. The exploitation attempt was disclosed and patched, preventing a mass incident.

Published May 11, 2026

Digital background depicting AI systems and machine learning technologies

MF3d via Getty Images

A threat actor was able to leverage AI to develop a working zero-day exploit, in what is believed to be the first such successful use of the technology, according to a report released Monday by Google Threat Intelligence Group (GTIG). 

The effort was an attempt to launch a mass exploitation event, the report read, but ultimately was unsuccessful, as Google discovered it before the vulnerability was weaponized. 

GTIG notified the developer of the exploit and a patch was issued to address the potential threat. Researchers do not believe that Mythos was used in the development process. 

“AI can review the underlying logic, context, and flow of code at scale to discover vulnerabilities, John Hultquist, chief analyst at GTIG told Cybersecurity Dive, via email. “It can also be used to build working exploits which are a significant hurdle.”

The incident highlights a growing trend by state-linked and financially motivated threat groups using AI to scale and accelerate hacking campaigns and exploit flaws in widely used applications. GTIG researchers caution they have seen several other attempts to use AI to develop exploits and expect there will be other operations employing a variety of models. 

Threat groups affiliated with North Korea and China have shown significant interest in exploiting AI to discover vulnerabilities, according to the GTIG report. 

For example, a North Korea-linked hacker tracked as APT45 has used AI to analyze a wide range of vulnerabilities using thousands of repetitive prompts and validate proof of concept exploits, the report stated.  

In a recent case involving criminal actors, a group of hackers joined forces to plan a mass exploitation operation. A zero-day vulnerability was implemented in a Python script, which enabled the hacker to bypass two-factor authentication on a widely used open-source system administration tool, GTIG said. 

Researchers worked with the vendor to disclose the vulnerability and disrupt the operation. 

The report follows an attempt by an unknown hacker to breach a Mexican water utility using widely used AI tools, including Claude.