logo

Google Says Hackers Used AI to Develop a Zero-Day Exploit

ID: cc8fbbd4-0b18-58cc-8b8c-b27725a17226

STIX ID: report--cc8fbbd4-0b18-58cc-8b8c-b27725a17226

Feed Name: HackRead

Threat Score
90/100

Date Published: 2026-05-11

Date Updated: 2026-05-11

Author: Deeba Ahmed

...
...

Google Threat Intelligence Group reports the first observed instances of AI being used to create zero-day exploits and autonomous malware, describing an Android backdoor (PROMPTSPY), supply-chain code injections into developer tools (LiteLLM, Checkmarx) by TeamPCP/UNC6780, credential theft via the SANDCLOCK stealer, and AI-driven reconnaissance and agentic attack workflows used by PRC- and DPRK-linked actors; researchers also identified machine-generated coding artifacts and AI-enabled deepfake information operations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.