Close Menu
Daily Guardian EuropeDaily Guardian Europe
  • Home
  • Europe
  • World
  • Politics
  • Business
  • Lifestyle
  • Sports
  • Travel
  • Environment
  • Culture
  • Press Release
  • Trending
What's On

Italy’s Meloni fires back after Trump says she ‘begged’ him for a photo – POLITICO

June 19, 2026

Video. US-Iran deal is ‘very fragile’ as conflict ‘remains’, says analyst

June 19, 2026

Video. New Russian strikes hit Kharkiv and Odesa, killing one and injuring children

June 19, 2026

Messi’s family pleads for ‘humanity’ as Argentina captain’s father faces health issues

June 19, 2026

The methodology of wickedness: Data reveals the most evil Disney villain

June 19, 2026
Facebook X (Twitter) Instagram
Web Stories
Facebook X (Twitter) Instagram
Daily Guardian Europe
Newsletter
  • Home
  • Europe
  • World
  • Politics
  • Business
  • Lifestyle
  • Sports
  • Travel
  • Environment
  • Culture
  • Press Release
  • Trending
Daily Guardian EuropeDaily Guardian Europe
Home»Lifestyle
Lifestyle

Hackers are using AI to find security flaws no scanner can catch, Google warns

By staffMay 27, 20264 Mins Read
Hackers are using AI to find security flaws no scanner can catch, Google warns
Share
Facebook Twitter LinkedIn Pinterest Email

Published on
27/05/2026 – 8:12 GMT+2

Artificial intelligence has made it easier to write emails, generate spreadsheets and plan holidays, as the widespread popularity of the various AI models can attest.

It has also, according to a recent Google report, made it considerably easier to figure out previously unmapped or impossible-to-predict gaps in the software of our systems.

Google’s Threat Intelligence Group said it had for the first time caught hackers using AI to discover and exploit a so-called zero-day vulnerability, or a security flaw the software’s developer does not yet know exists and for which no fix is available.

The target was a popular web-based system administration tool and the flaw allowed attackers to bypass two-factor authentication, that second layer of security most people believe keeps their accounts safe.

Google said it spotted the attack before it could be deployed at scale and quietly alerted the software vendor.

“The criminal threat actor planned to use it in a mass exploitation event but our proactive counter discovery may have prevented its use,” the report noted.

“Threat actors associated with the People’s Republic of China (PRC) and the Democratic People’s Republic of Korea (DPRK) have also demonstrated significant interest in capitalizing on AI for vulnerability discovery.”

A crack developers failed to see

The zero-day vulnerability is not a conventional flaw. Traditional security scanners look for crashes and memory errors, the software equivalent of a spellchecker looking for the digital equivalent of a typo – but this vulnerability was buried in the logic of the code, a subtle hardcoded assumption by the developer that no automated scanner would have caught.

It is the kind of mistake where everything looks correct on the surface but the underlying reasoning is broken. Think of a bank vault with a working lock that nonetheless opens for someone who knows the exception exists because the designer, without realising it, built one in.

That is exactly the kind of contradiction AI is good at finding. “Frontier LLMs excel at identifying these types of high-level flaws and hardcoded static anomalies,” the report continued.

Though frontier LLMs struggle to navigate complex enterprise authorisation logic, “they have an increasing ability to perform contextual reasoning… and [catch] the contradictions of its hardcoded exceptions”, it concluded.

This capability can allow models to surface dormant logic errors that appear functionally correct to traditional scanners but are broken from a security perspective.

Not just one trick

While the zero-day vulnerability was the main finding, the full report makes for uncomfortable reading.

Chinese and North Korean state-sponsored hackers are using AI to hunt for vulnerabilities at an industrial scale, sending automated prompts to probe for weaknesses in everything from home routers to corporate networks.

Google observed one North Korean group “sending thousands of repetitive prompts that recursively analyze different CVEs and validate PoC exploits”, building what the report calls “a more robust arsenal of exploit capabilities that would be impractical to manage without AI assistance”.

Russian-linked groups, meanwhile, are using AI to develop malware that rewrites itself on the fly to evade detection, a capability that previously required significant human expertise.

AI is also transforming phishing. Rather than mass-blasting generic emails, attackers are now using AI to map corporate hierarchies and identify specific targets with access to sensitive data and generate “higher-fidelity phishing lures tailored to individuals with administrative privileges”, in the report’s words, that go well beyond “the commodity tactics of traditional bulk phishing”.

The broader shift, Google warns, is from AI as a research tool to AI as sort of active combatant in the security sphere.

“The LLM is no longer merely a passive advisor but an active participant in the offensive chain, capable of orchestrating complex toolsets and making tactical decisions at machine speed.”

Google’s own AI tools flagged the zero-day before it could cause damage, which is the silver lining here. The company is deploying AI agents itself to find and patch vulnerabilities faster than human teams could manage.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

W thinks it has the X Factor: Everything to know about Europe’s latest alternative to mainstream soc

Companies are rushing into AI, but adoption is still lagging, a KPMG executive says

From Foxconn to Nvidia: Why France is so attractive for Europe’s AI infrastructure

VivaTech 2026: Tips from L’Oréal and PwC on personal vitality and business resilience

Jeff Bezos at VivaTech: We need to colonise the Moon to save Earth

More people get news from social media than traditional outlets, study shows

From Jeff Bezos to Europe’s AI push: Everything to know about VivaTech 2026

Banned but still paid: How disinformation accounts keep monetising on Facebook

‘AI is the key to global power status’: Inside China’s race to militarise artificial intelligence

Editors Picks

Video. US-Iran deal is ‘very fragile’ as conflict ‘remains’, says analyst

June 19, 2026

Video. New Russian strikes hit Kharkiv and Odesa, killing one and injuring children

June 19, 2026

Messi’s family pleads for ‘humanity’ as Argentina captain’s father faces health issues

June 19, 2026

The methodology of wickedness: Data reveals the most evil Disney villain

June 19, 2026

Subscribe to News

Get the latest Europe and world news and updates directly to your inbox.

Latest News

Inside the Makerfield by-election – POLITICO

June 19, 2026

Europe looks at banning social media for teens, and girls are most impacted

June 19, 2026

Video. Lebanon air raids kill 18 as residents flee southern villages

June 19, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Europe. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.