Google: AI Is Changing the Pace and Profile of Vulnerability Discovery
Google Threat Intelligence Group (GTIG) reports that AI is significantly accelerating the discovery and exploitation of software vulnerabilities, with AI-discovered flaws more likely to enable remote code execution. The volume of disclosed vulnerabilities doubled in 2026, with a notable increase in high-risk and exploited vulnerabilities. AI-discovered vulnerabilities tend to have higher impact, with 50% enabling remote code execution compared to 26% for non-AI discoveries. Exploitation of known vulnerabilities (n-days) is rising, possibly due to AI-assisted automation in weaponizing these flaws. AI-related vulnerabilities in AI systems themselves are also increasing, though zero-day exploitation in AI infrastructure has not yet been observed. The trend suggests continued growth in vulnerability discovery and exploitation driven by AI capabilities.
AI Analysis
Technical Summary
Google Threat Intelligence Group analyzed vulnerability disclosures from January 2025 through August 2026 and found that AI is changing both the pace and profile of vulnerability discovery. Monthly vulnerability disclosures doubled in 2026, with high-risk disclosures increasing by 167%. AI-discovered vulnerabilities show a different risk profile, with a higher proportion rated medium risk and a greater likelihood of enabling remote code execution (50% vs. 26%). Exploitation of vulnerabilities increased, particularly for n-days, likely due to AI tools automating analysis and weaponization. GTIG confirmed in-the-wild exploitation of AI-discovered vulnerabilities, including CVE-2026-1731. AI-related CVEs are rising, especially in AI orchestration frameworks, but zero-day exploitation of AI infrastructure remains unobserved. GTIG expects these trends to continue in the short to medium term.
Potential Impact
The impact includes a faster rate of vulnerability discovery and exploitation, with AI-discovered vulnerabilities more likely to enable remote code execution, increasing the risk of severe attacks. The number of exploited vulnerabilities nearly doubled in 2026 compared to 2025, with a significant rise in exploitation of high-risk and n-day vulnerabilities. AI is enabling threat actors to more efficiently analyze and weaponize vulnerabilities, potentially increasing the frequency and severity of attacks. AI-related vulnerabilities in AI systems are also increasing, posing emerging risks to AI infrastructure.
Mitigation Recommendations
No specific patch or remediation is provided as this is an observational report on trends rather than a single vulnerability. Organizations should monitor vendor advisories for patches on specific vulnerabilities, especially those discovered or weaponized using AI. Awareness of the changing threat landscape is critical, but no direct mitigation steps contradicting vendor guidance are indicated. Patch status is not applicable here; check vendor advisories for individual vulnerabilities mentioned.
Google: AI Is Changing the Pace and Profile of Vulnerability Discovery
Description
Google Threat Intelligence Group (GTIG) reports that AI is significantly accelerating the discovery and exploitation of software vulnerabilities, with AI-discovered flaws more likely to enable remote code execution. The volume of disclosed vulnerabilities doubled in 2026, with a notable increase in high-risk and exploited vulnerabilities. AI-discovered vulnerabilities tend to have higher impact, with 50% enabling remote code execution compared to 26% for non-AI discoveries. Exploitation of known vulnerabilities (n-days) is rising, possibly due to AI-assisted automation in weaponizing these flaws. AI-related vulnerabilities in AI systems themselves are also increasing, though zero-day exploitation in AI infrastructure has not yet been observed. The trend suggests continued growth in vulnerability discovery and exploitation driven by AI capabilities.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
Google Threat Intelligence Group analyzed vulnerability disclosures from January 2025 through August 2026 and found that AI is changing both the pace and profile of vulnerability discovery. Monthly vulnerability disclosures doubled in 2026, with high-risk disclosures increasing by 167%. AI-discovered vulnerabilities show a different risk profile, with a higher proportion rated medium risk and a greater likelihood of enabling remote code execution (50% vs. 26%). Exploitation of vulnerabilities increased, particularly for n-days, likely due to AI tools automating analysis and weaponization. GTIG confirmed in-the-wild exploitation of AI-discovered vulnerabilities, including CVE-2026-1731. AI-related CVEs are rising, especially in AI orchestration frameworks, but zero-day exploitation of AI infrastructure remains unobserved. GTIG expects these trends to continue in the short to medium term.
Potential Impact
The impact includes a faster rate of vulnerability discovery and exploitation, with AI-discovered vulnerabilities more likely to enable remote code execution, increasing the risk of severe attacks. The number of exploited vulnerabilities nearly doubled in 2026 compared to 2025, with a significant rise in exploitation of high-risk and n-day vulnerabilities. AI is enabling threat actors to more efficiently analyze and weaponize vulnerabilities, potentially increasing the frequency and severity of attacks. AI-related vulnerabilities in AI systems are also increasing, posing emerging risks to AI infrastructure.
Defensive Guidance
No specific patch or remediation is provided as this is an observational report on trends rather than a single vulnerability. Organizations should monitor vendor advisories for patches on specific vulnerabilities, especially those discovered or weaponized using AI. Awareness of the changing threat landscape is critical, but no direct mitigation steps contradicting vendor guidance are indicated. Patch status is not applicable here; check vendor advisories for individual vulnerabilities mentioned.
Technical Details
- Classification
- {"confidence":0.76,"severitySource":"heuristic","classifier":"rss-v2"}
- Article Source
- {"url":"https://www.securityweek.com/google-ai-is-changing-the-pace-and-profile-of-vulnerability-discovery/","fetched":true,"fetchedAt":"2026-09-30T14:18:06.734Z","wordCount":1313}
Threat ID: 6abd1a1e2a4e24523d1a52d8
Added to database: 09/30/2026, 14:18:06 UTC
Last enriched: 09/30/2026, 14:18:14 UTC
Last updated: 10/01/2026, 05:04:03 UTC
Views: 16
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.