U OF T RESEARCHERS WARN OF AI-POWERED WORMS
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
University of Toronto researchers have demonstrated that artificial intelligence worms could potentially infect any connected device. The proof-of-concept highlights a critical vulnerability in the age of networked systems.
■ MORE FROM THE SECURITY DESK
The ACLU has created a toolkit for Massachusetts attorneys to expose and challenge surveillance technologies used by police to build criminal cases. The resources target facial recognition, AI-generated reports, and other concealed investigative methods.
A Verizon analysis of 22,000 incidents found 12% were carried out by internal actors, with companies now facing a new threat: AI-generated synthetic employees used to breach corporate systems. The rise of deepfake infiltration marks a significant escalation in insider attack tactics.
Attackers are actively exploiting CVE-2026-6875, a critical code execution vulnerability in ServiceNow's AI Platform. Threat intelligence firm Defused confirmed the attacks are underway.
A researcher discovered a critical WordPress remote code execution vulnerability that exploit brokers typically pay $500,000 to acquire—using only GPT5.6 and $25 in resources. The finding highlights how AI tools are democratizing vulnerability discovery.