Research · curated 28 Jul 2026
AI-found bugs aren't proving any easier to exploit despite the hype
First reported theregister.com
Coverage timeline
Why it matters
VulnCheck's data-driven analysis gives defenders a grounded read on whether AI-assisted vulnerability discovery is actually tilting the offense-defense balance, tempering hype that frontier models are handing attackers instantly weaponizable bugs.
VulnCheck analyzed 1,061 publicly attributed AI-assisted vulnerability discoveries from Anthropic's Project Glasswing and the Berkeley Vulnerability Research Initiative, cross-referencing them against its Known Exploited Vulnerability database, and found only 14 (1.3 percent) confirmed exploited in the wild — nearly identical to the baseline rate for all vulnerabilities. The research concludes AI mainly increases the volume of flaws researchers uncover rather than the share attackers weaponize, suggesting claims that frontier AI dramatically favors attackers are overhyped.