Categorie: News

Shocking Google Discovery: AI Used to Create a Zero-Day Exploit for the First Time

A recent report prepared by the Google Threat Intelligence Group (GTIG) has confirmed the fears that had long circulated among cybersecurity analysts.

Groups of highly skilled hackers have begun to exploit AI tools to develop and launch zero-day exploits.

This discovery highlights how emerging technologies can become formidable weapons if exploited by malicious actors seeking software vulnerabilities still unknown to software vendors.

Google discovers a zero-day flaw created with AI

The technical document details the identification of malicious code explicitly designed to trigger a large-scale offensive. Specifically, the criminal software exploited a hidden flaw in a Python script to bypass two-factor authentication systems, an essential security measure for protecting private accounts.

Fortunately, security teams managed to isolate and fix the problem before the threat could spread and massively compromise users.

Algorithm fingerprints

Experts have concluded that artificial intelligence played a primary role by carefully analyzing the architecture of the code itself. During the investigations, researchers isolated specific text strings that commonly appear in datasets used to train large language models (LLMs).

Additionally, the analyzed software exhibited a completely invented CVSS score. This is a clear sign of algorithmic “hallucination,” a phenomenon entirely comparable to what recently occurred in the legal field, when some automated systems cited nonexistent cases and rulings.

Although checks rule out direct involvement of the Google Gemini model, the report notes that cybercriminals fragment their activities using various accounts on multiple different platforms, precisely to evade security checks.

Beyond the sheer discovery of new vulnerabilities, these technologies raise concerns about their ability to drastically shorten malware development times. Sabotage operations that in the past required months of meticulous work and extensive testing can now be packaged and executed within tiny time windows.

Additionally, the use of artificial intelligence to orchestrate increasingly sophisticated scams. A recent emblematic case involved the creation of fake customer-support operators, artificially generated voices to deceive victims and steal Gmail login credentials with an impressively high degree of realism.

The response of tech companies

Despite these evident issues, the same technologies also serve as a valuable shield for the software industry.

Many companies already employ advanced automated systems to proactively scan their own code, identifying and neutralizing weak points before public release.

As an example, Mozilla recently stated that it had identified and fixed as many as 423 security bugs in a single month thanks to these tools, demonstrating how modern cybersecurity defense is turning into a rapid competition between algorithms.

Luca Zaninello

Appassionato del mondo della telefonia da sempre, da oltre un decennio si occupa di provare con mano i prodotti e di raccontare le sue esperienze al pubblico del web. Fotografo amatoriale, ha un occhio di riguardo per i cameraphone più esagerati.

Recent Posts

YouTube Music Has a Major Problem with Wear OS

More and more people are turning to smartwatches powered by the Wear OS operating system…

37 minutes ago

Honor Magic 8 Pro joins the Android 17 beta program

The Chinese company has announced the opening of the beta program dedicated to Android 17:…

2 hours ago

Is a new Amazon Fire Phone on the way? Panos Panay comments on the rumors

Over ten years after the high-profile commercial failure of the Fire Phone, Amazon seems to…

2 hours ago

Xiaomi Electric Scooter 6 Series now available in Italy: prices and updates

The device is characterized by a yellow color and top features: a powerful motor of…

3 hours ago

The iPhone camera app is about to receive a major update

Ahead of the annual developers' conference WWDC, which will open its doors on June 8,…

3 hours ago

Snapdragon 8 Gen 6 is extremely expensive, get ready for even pricier flagship devices

If you thought that the current memory shortages were the only factor capable of driving…

3 hours ago