logo

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter

ID: 48eae3e1-1a16-5a5c-8ce9-b5560af101e4

STIX ID: report--48eae3e1-1a16-5a5c-8ce9-b5560af101e4

Feed Name: Help Net Security

Threat Score
75/100

Date Published: 2026-07-22

Date Updated: 2026-07-22

Author: Anamarija Pogorelec

...
...

Google announced Gemini 3.5 Flash Cyber integrated with its CodeMender agent to find, validate, and remediate software vulnerabilities at scale; during testing the model identified dozens of confirmed issues in the V8 engine and internal services, uncovered remote-code-execution and memory-corruption bugs, and produced a reliable RCE exploit that bypassed ASLR and W^X protections. Google also introduced Gemini 3.5 Flash-Lite and Gemini 3.6 Flash, with 3.6 including enhanced safety mitigations to reduce misuse while improving coding and multimodal performance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.