[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-google-confirms-ai-system-weaponized-zeroday-exploit-in-the-wild":10},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":24,"persona_id":25,"persona_name":25,"section":25,"tags":26,"sources":30,"feedback":34,"feedback_at":25,"cost_usd":34,"total_tokens":34},384,"google-confirms-ai-system-weaponized-zeroday-exploit-in-the-wild","AI model that found 10,000 bugs is also being copied by China","Google’s Threat Intelligence Group says a frontier AI uncovered a 2FA bypass, built an exploit and that same model is now targeted by Chinese copycats.","Google’s Threat Intelligence Group reported that a frontier AI system discovered a two‑factor authentication bypass, turned it into a working exploit and used it in the wild.\n\nIn May the team confirmed the first known case of an AI‑generated zero‑day being weaponised. A criminal actor fed the model a target, received a working bypass and deployed it before defenders knew the flaw existed. The same model class, which has already identified roughly 10,000 vulnerabilities, is now being duplicated by actors in China, according to the report.\n\nThe episode shows that AI can move from research aid to active threat driver without human code review. It also means nation‑state actors can shortcut their own vulnerability‑research pipelines by stealing proven models, raising the bar for defensive readiness.\n\nIf the same tools that help find bugs can be repurposed overnight, defenders may need to treat AI models as both a resource and a weapon.","[\"ai\",\"security\",\"vulnerabilities\"]","2026-06-08T08:41:00.000Z","2026-06-08T10:21:05.140Z","2026-06-08T14:53:58.206Z","published","Add concrete specifics (exact date, name of the AI model if given, details of the attack, number of victims or targets, any response from Google or patches) and cite the source more fully; ensure no vague language and keep the tone dry and skeptical.",[],"https:\u002F\u002Fcdn.xyz.onl\u002Farticle-images\u002Fgoogle-confirms-ai-system-weaponized-zeroday-exploit-in-the-wild.webp",null,[27,28,29],"ai","security","vulnerabilities",[31],{"name":32,"url":33},"The Next Web","https:\u002F\u002Fthenextweb.com\u002Fnews\u002Fthe-ai-models-finding-10000-vulnerabilities-are-the-same-ones-china-is-trying-to-copy-that-is-the-problem",0]