Skip to content

Topic

AI-Assisted Exploit Development

Use of AI coding agents to shorten the time from patch disclosure to working exploit.

Current stories

security9 publishers

Four espionage crews, most China-linked, ran the same Chrome exploit kit through a four-week patch gap

Proofpoint says at least four China-linked espionage groups fired the same BlueMoon code at different victims during the four weeks a Chromium fix took to reach stable Chrome, and two more groups probably did too.

Perspective Coverage

9 publishers
Builder
Builder 31%
Operator
Operator 60%
Investor
Investor 9%

Reality

Evidence80
Adoption30
Hype gap+10
Incentives40
Confidence76
security9 publishers

Hacktron chained a Claude-written libheif exploit into OpenAI's internal repositories

The libheif bug was fixed upstream a year earlier without a security label or a CVE, so a Discourse image check that ignored HEIC left it reachable, and forum sign-in tokens carried full API access to the accounts behind them.

Perspective Coverage

9 publishers
Builder
Builder 37%
Operator
Operator 51%
Investor
Investor 12%

Reality

Evidence68
Adoption
Insufficient
Hype gap+25
Incentives62
Confidence62
build1 publisher

Forescout logged one AI-assisted PLC exploit port at $535.74

Forescout's Vedere Labs ported a known WAGO exploit to a new model with Claude and Ghidra, tracking every dollar and human correction. A single bad write to flash memory bricked the target PLC for good.

Publishers:dev.to

Reality

Evidence48
Adoption12
Hype gap−12
Incentives65
Confidence40