Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Internet Society Launches Global Online Trust and Safety Hub as Part of Its Safer Internet Initiative – NextBigFuture.com

    September 30, 2026

    Samsung Galaxy A18 4G review

    September 30, 2026

    Trails in the Sky 2nd Chapter review: yet another triumphant remake

    September 30, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Cybersecurity»Google: AI Is Changing the Pace and Profile of Vulnerability Discovery
    Google: AI Is Changing the Pace and Profile of Vulnerability Discovery
    Cybersecurity

    Google: AI Is Changing the Pace and Profile of Vulnerability Discovery

    The Tech GuyBy The Tech GuySeptember 30, 2026No Comments4 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement


    The number of vulnerabilities disclosed each month doubled in 2026, and the monthly average of vulnerabilities exploited in the wild nearly doubled, according to a new report from Google Threat Intelligence Group (GTIG).

    Advertisement

    Analyzing disclosures from January 2025 through August 2026, GTIG found that monthly disclosures rose from 5,045 in January 2026 to 10,477 in July, peaking at 10,740 in August.

    “We found that AI is measurably changing not just the pace of vulnerability discovery and exploitation, but also the types and typical risk profiles of vulnerabilities that are being discovered,” GTIG says.

    The researchers caution that raw volume can be misleading, as automated CVE assignment in open source ecosystems can inflate the numbers. Vulnerabilities whose description mentions the Linux kernel alone generated roughly 5,000 CVEs between January and August, with no in-the-wild zero-day exploitation observed.

    High-risk disclosures, based on GTIG’s own ratings rather than CVSS, grew 167%, from 131 in January to 350 in August. In addition, GTIG recorded 141 distinct exploited vulnerabilities in the first eight months of 2026, more than the 127 seen in all of 2025. That’s an average of 18 per month, up from 10.5 last year.

    Still, only 0.23% of this year’s disclosed vulnerabilities, roughly one in 431, were observed being exploited.

    Advertisement. Scroll to continue reading.

    Zero-day exploitation increased only marginally, from an average of eight per month in 2025 to 11 per month in 2026, although the count jumped to 22 in August. Zero-days made up 62% of the vulnerabilities exploited between January and August.

    GTIG suggests that the growth in exploitation came primarily from n-days. Exploitation of high-risk vulnerabilities also more than doubled, from 28 in 2025 to 75 in the first eight months of 2026.

    “It is possible that threat actors are finding it more accessible or efficient to use LLMs and AI tools to automate analysis of differences between product versions, patches, vulnerability disclosure announcements, and Proof-of-Concept (POC) code to rapidly weaponize n-days, rather than to discover new zero-days,” the report reads.

    Vulnerabilities that GTIG identified as likely discovered by AI between January and August show a different risk profile. Of these, 39% were rated low-risk and 58% medium-risk, compared to 69% and 28%, respectively, for non-AI vulnerabilities.

    GTIG says this likely reflects how research programs deploy AI agents, tasking them with auditing critical infrastructure and sensitive privilege boundaries with a focus on higher-impact findings.

    Half of the AI-discovered vulnerabilities result in remote code execution, compared to 26% of non-AI vulnerabilities. According to GTIG, this likely stems from AI models’ ability to find memory corruption and logic flaws that traditional static analyzers miss.

    GTIG has also confirmed in-the-wild exploitation of AI-discovered vulnerabilities, though it describes this as an early indicator rather than an established trend.

    One example is CVE-2026-1731, an unauthenticated OS command injection flaw in BeyondTrust Privileged Remote Access and Remote Support, discovered autonomously by the Hacktron AI research agent. One threat cluster exploited it within four days of public disclosure, and five more followed within seven days.

    Disclosures of vulnerabilities in AI systems themselves are also rising. GTIG tracked 2,076 AI-related CVEs between January 2025 and August 2026, including more than 1,500 this year, roughly half of which affect AI orchestration frameworks.

    Only a handful of the 2,076 have been confirmed as exploited in the wild, including flaws in LiteLLM and Langflow. GTIG has not yet observed zero-day exploitation of AI infrastructure.

    “GTIG expects that rates of vulnerability discovery and exploitation are likely to continue to increase in the short to medium term,” the report reads.

    Related: High-Severity Vulnerabilities Patched in OpenSSL, WolfSSL

    Related: WatchGuard Patches Critical Fireware OS Code Injection Vulnerability

    Related: Chrome, Firefox Updates Patch Over 100 Vulnerabilities

    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks

    September 30, 2026

    Trump Says Top Tech Firms Have Signed Accord to ‘Self-Police’ AI Development

    September 30, 2026

    OpenAI CEO Announces New AI Agent and Avoids Mention of Security Concerns at Developer Conference

    September 29, 2026

    RemoteThreat Launches With $7 Million for Offensive Operations Platform

    September 29, 2026

    Daemon Tools Hackers’ NeedyMantis Malware Dissected by Microsoft

    September 29, 2026

    Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon

    September 29, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    You don’t need a NAS to self-host — I proved it with hardware from my closet

    June 7, 2026391 Views

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 2026211 Views

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202517 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Internet Society Launches Global Online Trust and Safety Hub as Part of Its Safer Internet Initiative – NextBigFuture.com

    September 30, 2026

    Samsung Galaxy A18 4G review

    September 30, 2026

    Trails in the Sky 2nd Chapter review: yet another triumphant remake

    September 30, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.