University of Toronto Researchers Develop Self-Spreading Computer Worm Using Open-Weight Model
Researchers at the University of Toronto have developed a self-propagating computer worm using an unnamed, publicly available open-weight model released in 2025. This worm was tested on an enterprise network and demonstrated the ability to adapt in real-time, identifying known vulnerabilities and misconfigurations. It then generates and executes attacks to move laterally and compromise additional machines. The system operates on a single GPU, highlighting the potential for smaller, less resource-intensive models to pose significant security threats. Professor Nicolas Papernot emphasized that security concerns are not limited to the largest AI models. The researchers intentionally omitted certain methodological details and the model's name to prevent misuse.