Back to Home
The Verge AI··Industry Media

Google stopped a zero-day hack that it says was developed with AI

中文摘要

Google 成功拦截了首例由 AI 开发的零日漏洞攻击,该攻击旨在绕过开源管理工具的双重身份验证。

English Summary

Google stopped an AI-developed zero-day exploit designed to bypass two-factor authentication on an open-source web administration tool, preventing mass exploitation.

Original Excerpt

For the first time, Google says it has spotted and stopped a zero-day exploit developed with AI. According to a report from Google Threat Intelligence Group (GTIG), "prominent cyber crime threat actors" were planning to use the vulnerability for a "mass exploitation event" that would have allowed them to bypass two-factor authentication on an unnamed "open-source, web-based system administration tool." Google's researchers found hints in the Python script used for the exploit that indicated help from AI, like a "hallucinated CVSS score" and "structured, textbook" formatting consistent with LLM training data. The exploit takes advantage of … Read the full story at The Verge.