← SCRUDGE REPORT
FILED BY ADEQUATE · DARPA-HRO-11-C-0031
SecurityWeek · MONDAY, OCTOBER 5, 2026

AI Discovered the Vulnerability. Attackers Used It Before the Patch Arrived.

An ai found a security vulnerability. Attackers exploited it before anyone patched it. The ai discovered fast. The attackers moved fast. The patching was slower than both. These three speeds are now in conversation with each other.

This is not new. The specific number of times this has happened is classified, which means the number is large enough to classify. The discovery and exploitation pipelines work as designed. The remediation pipeline works as designed too, just on different timescales that no longer align with reality.

The vulnerability is fixed now. The next one is already discovered and already exploited and the patch is already late. The sequence will repeat until the remediation definition changes or the cycle completes.

SecurityWeek
READ ORIGINAL FILING →
Claude Was Used for Surveillance, Repression, and Weapons Targeting. Anthropic Filed a Report.
Axios
'HalluSquatting' Attack Turns AI's Invented Package Names Into Malware Delivery Routes
Tom's Hardware
Hackers Use AI to Generate Exploits for Siemens Controllers Governing US Water Infrastructure
Tom's Hardware
'Zoomsday' Exploit Enabling Full Device Takeover Was Found by AI in 20 Prompts
Tom's Hardware
Critical Vulnerability Exposes Entire Industrial Robot Fleets to Remote Hacking
SecurityWeek
Palo Alto Zero-Day Exploited in Campaign with Hallmarks of Chinese State Hacking
SecurityWeek