Google GTIG: First AI-Discovered Zero-Day Used in the Wild

Google's Threat Intelligence Group has documented the first confirmed active exploitation of a vulnerability discovered autonomously by AI—a milestone that moves AI-accelerated attacks from theoretical concern to operational reality. GTIG's proactive counter-discovery prevented wider deployment. Separately, Anthropic's Mythos model autonomously found a 27-year-old OpenBSD vulnerability and a 16-year-old FFmpeg vulnerability—discoveries shared only with a closed defensive consortium.

Why It Matters

The offense/defense balance in cybersecurity has shifted. AI now discovers latent vulnerabilities at industrial scale, making previously uneconomical attack targets profitable. Defenders without equivalent AI tooling face a structural disadvantage.