What's Happening?
A new study by VulnCheck reveals that fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, challenging the narrative that AI is significantly aiding attackers. The research analyzed over 1,000 AI-assisted vulnerability discoveries and
found that only 14 had been exploited in the wild. This suggests that while AI increases the volume of vulnerabilities discovered, it does not necessarily increase the rate of exploitation. The study specifically critiques Anthropic's Project Glasswing, which identified thousands of potential security flaws but has seen little evidence of these being exploited.
Why It's Important?
The findings highlight the current limitations of AI in cybersecurity, suggesting that while AI can uncover more vulnerabilities, it does not inherently make them easier to exploit. This challenges the perception that AI is a major threat to cybersecurity and emphasizes the need for continued vigilance and traditional security measures. The study also underscores the importance of responsible disclosure and the role of AI in assisting defenders rather than attackers. As AI technology continues to evolve, understanding its impact on cybersecurity will be crucial for developing effective defense strategies.











