zero-day
DarkSword: The iPhone Exploit That Forced Apple to Rewrite Its Own Security Playbook
DarkSword silently compromises iPhones through website visits alone. 270M devices affected. Apple breaks its own policy with a rare iOS 18 security backport ...
When a Security Patch Becomes a Weapon
"The attackers are taking the patches, reverse engineering them, and then creating exploits out of the patches. They quickly identify where the flaw is and then generate that exploit." ...
Cogent: AI Exploit Developer Threats Outpace Scanner Detection On Critical Vulnerabilities
AI-native cybersecurity firm Cogent reveals that AI-assisted exploit development has collapsed vulnerability-to-weaponization timelines from 125 days to 12 hours, rendering traditional scanner-based detection cycles obsolete ...
Ivanti Warns of New EPMM Flaw Exploited in Zero-Day Attacks
What happened Ivanti has disclosed a high-severity remote code execution vulnerability in Endpoint Manager Mobile, tracked as CVE-2026-6973, that has been actively exploited in zero-day attacks against a limited number of customers ...
Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.
Mandiant's M-Trends 2026 report puts estimated mean time to exploit at negative seven days. That number should reset how security leaders think about vulnerability management. It means exploitation is now routinely occurring ...
Claude Mythos Has Found 271 Zero-Days in Firefox
That’s a lot. No, it’s an extraordinary number: Since February, the Firefox team has been working around the clock using frontier AI models to find and fix latent security vulnerabilities in the ...
Claude Mythos and the AI Vulnerability Arms Race – What CISOs Must Know Now
Claude Mythos discovered vulnerabilities that survived 27 years of human review. This technical breakdown covers how it works, what it found, and why your current security stack needs rethinking ...
Claude Mythos and the AI Vulnerability Arms Race – What CISOs Must Know Now
Claude Mythos discovered vulnerabilities that survived 27 years of human review. This technical breakdown covers how it works, what it found, and why your ...
AI Found Twelve New Vulnerabilities in OpenSSL
The title of the post is”What AI Security Research Looks Like When It Works,” and I agree: In the latest OpenSSL security release> on January 27, 2026, twelve new zero-day vulnerabilities (meaning ...
LLMs are Getting a Lot Better and Faster at Finding and Exploiting Zero-Days
This is amazing: Opus 4.6 is notably better at finding high-severity vulnerabilities than previous models and a sign of how quickly things are moving. Security teams have been automating vulnerability discovery for ...

