AI-Found Vulnerabilities More Likely to Enable Remote Code Execution (RCE), Google Says
Infosecurity Magazine, Wednesday, September 30th, 2026
Google research finds half of likely AI-discovered flaws enable remote code execution and exploited vulnerabilities rose sharply in 2026.
Google Threat Intelligence Group found 50% of vulnerabilities it judged likely AI-discovered led to remote code execution, versus 26% of other CVEs.
Monthly disclosures doubled from about 5,000 in January 2026 to more than 10,000 by summer, and exploited vulnerabilities rose from 10.5 to 18 a month, though modest zero-day growth suggests most of the increase came from rapid weaponization of n-days, possibly aided by AI patch analysis.
Google calls confirmed exploitation of AI-found flaws an early indicator rather than an established trend.