网易首页 > 网易号 > 正文 申请入驻

首次确认:黑客用AI造出零日漏洞武器

0
分享至

criminals have crossed a new threshold. Google Threat Intelligence Group (GTIG) today released a report confirming the first known case of criminal hackers using artificial intelligence to develop a working zero-day exploit—a previously unknown software vulnerability weaponized for attack before defenders can patch it.

The exploit targeted a two-factor authentication bypass in a widely used open-source web-based system administration tool. Written in Python, it was designed for mass deployment. The attackers' implementation contained errors that likely prevented successful use, but the weapon itself was functional. Google disclosed the vulnerability to the vendor; a patch has since been issued.


GTIG researchers cited multiple indicators of AI assistance. The code contained a hallucinated severity score—an invented numerical rating not generated by any standard vulnerability scoring system. The Python formatting was textbook-perfect. Detailed help menus and educational docstrings, phrased in the style of training data, appeared throughout. The researchers explicitly noted that Google's Gemini model was not used in this case.

The vulnerability itself revealed why AI excels at this task. It stemmed from a semantic logic flaw: a developer had hardcoded a trust assumption, embedding high-level conceptual errors that traditional security scanners miss because the code appears functionally correct. Frontier large language models can reason about developer intent and surface these dormant logic errors in ways signature-based tools cannot.

"There's a misconception that the AI vulnerability race is imminent. The reality is that it's already begun," said John Hultquist, chief analyst at GTIG. "For every zero-day we can trace back to AI, there are probably many more out there. Threat actors are using AI to boost the speed, scale and sophistication of their attacks."

The report documents this capability spreading across threat categories. State-backed groups from China, North Korea, and Russia now use AI across the full attack chain. Criminal groups leverage it to accelerate malware development and expand operation scale.

North Korea's APT45 has sent thousands of repetitive prompts to recursively analyze vulnerabilities and validate proof-of-concept exploits—building arsenals impractical without AI assistance. An actor linked to China, designated UNC2814, employed expert-persona jailbreaking to manipulate Gemini into researching pre-authentication remote code execution flaws in TP-Link router firmware and Odette File Transfer Protocol implementations.

Agentic tools—AI systems capable of autonomous action—are entering operations. A China-nexus actor used the Hexstrike and Strix frameworks with the Graphiti memory system to probe a Japanese technology firm and an East Asian cybersecurity platform. The tools pivoted between reconnaissance capabilities based on internal reasoning, requiring minimal human oversight.

The report also details PROMPTSPY, an Android backdoor that calls the Gemini application programming interface.

特别声明:以上内容(如有图片或视频亦包括在内)为自媒体平台“网易号”用户上传并发布,本平台仅提供信息存储服务。

Notice: The content above (including the pictures and videos if any) is uploaded and posted by a user of NetEase Hao, which is a social media platform and only provides information storage services.

相关推荐
热点推荐
探店雷克萨斯全新ES300h:虽然上市太低调,但广州雷粉依然买单

探店雷克萨斯全新ES300h:虽然上市太低调,但广州雷粉依然买单

驾仕派
2026-05-12 12:18:35
美媒再曝特朗普随行名单:17巨头组"商业天团",唯独缺了那个人

美媒再曝特朗普随行名单:17巨头组"商业天团",唯独缺了那个人

听心堂
2026-05-12 11:08:28
《放羊的星星》男演员李威卷入精舍杀人案,被判1年10个月有期徒刑,缓刑5年

《放羊的星星》男演员李威卷入精舍杀人案,被判1年10个月有期徒刑,缓刑5年

蓬勃新闻
2026-05-12 13:02:22
看看谁底气足:央视即使一分钱不出,国际足联也得求着转播世界杯

看看谁底气足:央视即使一分钱不出,国际足联也得求着转播世界杯

林子说事
2026-05-12 12:56:00
一年用水量达400多吨 背后竟藏离奇谜案?

一年用水量达400多吨 背后竟藏离奇谜案?

环球网资讯
2026-05-11 19:19:57
成都男子被“天降钢管”砸伤缝8针,伤者:肇事者已找到,警方带走调查

成都男子被“天降钢管”砸伤缝8针,伤者:肇事者已找到,警方带走调查

封面新闻
2026-05-12 10:20:04
陆洪磊:盗名窃誉,日本的虚伪滤镜终将破碎

陆洪磊:盗名窃誉,日本的虚伪滤镜终将破碎

环球网资讯
2026-05-12 07:02:50
秦始皇子孙后代被找到,这四个姓氏都是他的后裔,有你的姓氏吗?

秦始皇子孙后代被找到,这四个姓氏都是他的后裔,有你的姓氏吗?

兴趣知识
2026-05-11 18:04:48
奥迪Q9内饰官图曝光 实车预计7月29日发布

奥迪Q9内饰官图曝光 实车预计7月29日发布

车质网
2026-05-12 09:28:09
美记:虽然现在下结论为时尚早,但杨瀚森没有什么耀眼的地方

美记:虽然现在下结论为时尚早,但杨瀚森没有什么耀眼的地方

懂球帝
2026-05-12 09:34:47
唐装穿在身,曼联在对桑德兰赛前身穿中国特色的赛前服装入场

唐装穿在身,曼联在对桑德兰赛前身穿中国特色的赛前服装入场

懂球帝
2026-05-12 01:17:05
性生活不足,原来会短寿!每周多少次比较合适?研究告诉你答案

性生活不足,原来会短寿!每周多少次比较合适?研究告诉你答案

医学原创故事会
2026-05-12 15:34:03
太意外,一声招呼不打,国际奥委直接官宣上海办赛,背后全是算计

太意外,一声招呼不打,国际奥委直接官宣上海办赛,背后全是算计

有范又有料
2026-05-11 11:29:37
他是外交部原部长,1985年被邓小平怒批“胡说八道”,活到了98岁

他是外交部原部长,1985年被邓小平怒批“胡说八道”,活到了98岁

历史人文2
2026-05-09 22:00:03
杜埃:所有投票我都把我哥排在第一位,他本赛季踢得极其出色

杜埃:所有投票我都把我哥排在第一位,他本赛季踢得极其出色

懂球帝
2026-05-12 03:47:05
北京市委、市政府决定:王剑同志任首发集团党委书记、董事长

北京市委、市政府决定:王剑同志任首发集团党委书记、董事长

极目新闻
2026-05-12 11:19:29
特朗普访华为什么多出了一天?

特朗普访华为什么多出了一天?

深度解析热点
2026-05-12 02:14:47
破防了!石家庄27岁美女凋谢,丈夫代笔写下告别信,全网彻底泪目

破防了!石家庄27岁美女凋谢,丈夫代笔写下告别信,全网彻底泪目

火山詩话
2026-05-12 08:55:32
越来越多的本科生进厂当普工了!

越来越多的本科生进厂当普工了!

灯锦年
2026-05-12 10:31:01
歌手黄霄云演出后两次晕倒确诊耳石症!连夜赶路连唱9首,工作室强制停工

歌手黄霄云演出后两次晕倒确诊耳石症!连夜赶路连唱9首,工作室强制停工

TVB的四小花
2026-05-11 13:59:18
2026-05-12 16:32:49
字节漫游指南
字节漫游指南
有态度网友ytd
3692文章数 40关注度
往期回顾 全部

科技要闻

宇树发布载人变形机甲,定价390万元起

头条要闻

女子立遗嘱遗产归弟弟 其女起诉两人返还857万及房产

头条要闻

女子立遗嘱遗产归弟弟 其女起诉两人返还857万及房产

体育要闻

总是掉链子的“倒霉蛋”,闯进了欧战决赛

娱乐要闻

刘涛晒妈祖诞辰活动照 评论区变许愿池

财经要闻

黄仁勋真是被白宫彻底封杀了

汽车要闻

吉利银河“TT”申报图曝光 电动尾翼+激光雷达

态度原创

本地
数码
艺术
教育
手机

本地新闻

用苏绣的方式,打开江西婺源

数码要闻

雷军晒小米电竞鼠标2拆解图:是不是很高级

艺术要闻

这位画家的油画美人让人惊叹不已!

教育要闻

正确率5%的解方程

手机要闻

消息称三星计划推出军用“Galaxy S26战术版”手机

无障碍浏览 进入关怀版