Google Says Hackers Used AI to Find Critical Security Flaw
Hackers just used AI to find a zero-day Google missed. Here's what that means for your security posture.

Why it matters
AI is now a dual-use tool in the hands of adversaries. This is the first documented case of attackers using LLMs to discover critical vulnerabilities at scale—a shift that forces enterprises and platform vendors to rethink threat modeling and defensive AI deployment.
The key facts
5 to knowHackers used AI models to discover previously unknown security flaw
Attack planned as 'mass exploitation event'
Google security team detected and blocked the attack
First documented case of AI-assisted zero-day discovery by threat actors
Published May 11, 2026 by The Information
Go to the source
The Informationtheinformation.com
Publisher excerpt: Google recently observed hackers using AI models to find a previously undiscovered security flaw, the company said on Monday. The hacker planned to use the flaw for a “mass exploitation event,” but Google security researchers believe they successfully warded off the attack after noticing the ...
