Google neutralises first AI-built zero-day exploit
The incident marks a significant shift in how digital threats are generated, moving from manual discovery to automated creation.

Google has detected and neutralised the first zero-day exploit constructed entirely by artificial intelligence. The attack involved hackers using AI to identify an unknown software vulnerability, resulting in an attempted mass exploitation event.
This development highlights a new era in cybersecurity where the tools used to find weaknesses are themselves generated by machine learning models. The incident was reported by CNBC and cited within The New York Times, with further context provided by MIT Technology Review's newsletter, The Download.
While the specific technical details of the vulnerability and the AI model employed remain undisclosed, the event marks a significant shift in cybersecurity threats from manual discovery to automated generation. The hackers utilised AI tools to identify the unknown software vulnerability before launching the attack.
Google spotted and stopped the attempted mass exploitation event, preventing the exploit from being used on a wider scale. However, the full scope of the attempted mass exploitation, including the number of potential targets, is not explicitly defined in the available reports.
The news appears within a broader discussion on technology trends, though the specific story focuses on the intersection of artificial intelligence and security risks. The claim that this is the first AI-built exploit relies on Google's detection capabilities, meaning other instances may exist but remain undetected or unreported.
Researchers and industry observers note that AI-powered hacking has exploded into an industrial-scale threat, with new tools simplifying online crime. This incident serves as a warning for the broader tech community regarding the evolving nature of digital warfare.


