Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
Sicherheitslücken (CVE)CVE-2026-49856 | vmoranv jshookmcp 0.3.1 server-side request forgery(19.09.2026 um 02:49 Uhr)
Sicherheitslücken (CVE)CVE-2026-49856 | vmoranv jshookmcp 0.3.1 server-side request forgery(19.09.2026 um 02:49 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

Google GTIG just documented the first confirmed AI-developed zero-day vulnerability — some technical details worth discussing

So GTIG dropped their Q2 AI Threat Tracker on May 11 and I think the most technically interesting finding has been underreported relative to its significance.

A cybercrime group was planning a mass exploitation campaign. The Python exploit scripts associated with the campaign had hallmarks that GTIG says indicate "high confidence" the code was written with AI assistance: educational docstrings throughout, a hallucinated CVSS score, structured "textbook Pythonic" formatting, detailed help menus and a clean ANSI color class. No human writing an exploit for actual deployment bothers with any of that.

The actual vulnerability — which GTIG helped disclose and remediate before it was deployed — was a 2FA bypass in a popular open-source web-based system administration tool (unnamed for now). Not a memory corruption bug. A semantic logic flaw: the developer hardcoded a trust assumption that contradicted the 2FA enforcement logic elsewhere in the codebase. Traditional fuzzers don't catch that. LLMs, apparently, do.

GTIG's explanation of why is worth reading: frontier LLMs can "read developer intent" and correlate enforced security policies against hardcoded exceptions. That's a completely different threat model than what most SAST tools are built around.

Beyond the zero-day, the same report covers PROMPTSPY (Android malware using Gemini as an autonomous UI navigation engine), CANFAIL and LONGSTREAM (AI-generated decoy code to confuse analysts), and the TeamPCP supply chain hits on LiteLLM and BerriAI via PyPI.

Some questions for the community:

  1. Is your organization treating semantic logic flaws (hardcoded trust assumptions, contradictory auth enforcement) differently from memory corruption bugs in code review? Because if AI can find them at scale, so can attackers.
  2. For those running AI API gateways — have you rotated credentials after the LiteLLM/BerriAI PyPI compromise? What's your secret management posture for AI API keys?
  3. GTIG says the most common threat actor use of LLMs is still just basic research and troubleshooting — but zero-day development is now proven possible. How do you model this in your threat matrix?

Full technical write-up here if you want the PROMPTSPY attack chain and the MITRE ATLAS mappings: https://www.techgines.com/post/gtig-ai-developed-zero-day-vulnerability-promptspy-2026

I previously covered the first AI-assisted OT attack (Dragos / Monterrey water utility) here if you want more background on the AI-as-attacker threat progression: https://www.techgines.com/post/ai-assisted-ot-attack-claude-scada-water-utility-dragos

submitted by /u/Expert_Sort7434
[link] [comments]
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Google GTIG just documented the first confirmed AI-developed zero-day vulnerability — some technical details worth discussing

Thematisch verwandte Begriffe: Google, GTIG, just, documented · 6 Treffer

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-61591 | djust provides Phoenix LiveView-style reactive server-side rendering for…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Radar › Alle Kategorien
Alle aus Alle Kategorien 2.659.412
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Rechts: Artikel Ziehen Links: RSS
Hoch: nächster Artikel Runter: zurück / schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Rechts: Original Links: RSS-Ansicht
↗ Original-Quelle
Social Reaktionen Stimme abgeben (+5 Karma)
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick