FinAi News

No products in the cart.

Subscribe
  • News
  • AI News Tool
  • Data
  • Transactions
  • Events
    • FinAi Banking Summit
    • FinAi Lending Summit
  • Podcast
  • WEBINARS
    • Webinar Library
Log In
No Result
View All Result
  • Banking
  • Lending
  • Payments
  • Risk & Security
  • Strategy
FinAi News
  • News
  • AI News Tool
  • Data
  • Transactions
  • Events
    • FinAi Banking Summit
    • FinAi Lending Summit
  • Podcast
  • WEBINARS
    • Webinar Library
BAN PLUS
Log In
No Result
View All Result
FinAi News
No Result
View All Result

AI finding twice as many cyber flaws in 2026 as it did in 2025

US National Vulnerabilities Database has recorded more than 45,000 digital security flaws so far this year

Bloomberg NewsbyBloomberg News
July 27, 2026
in Risk & Security
Reading Time: 3 mins read
0
Share on Facebook

The number of software security flaws discovered in popular technology products in 2026 is on pace to roughly double the tally of vulnerabilities that surfaced in 2025, an explosion driven by increasingly capable AI systems.

The U.S. National Vulnerabilities Database, a repository of digital security holes, recorded 45,207 flaws between January and Monday, a count approaching the total number found in all of 2025. Last year saw an all-time record for recorded vulnerabilities in that database. Security vulnerabilities are flaws in software that can be exploited by a hacker, including to break into computer systems to commit crimes or carry out espionage.

a digital grid superimposed over a globe
(Courtesy/Canva)

Oracle Corp. said it patched 1,449 security vulnerabilities in its monthly July software update, an all-time record for the 49-year-old tech giant, while the same update last year contained 309 fixes. Microsoft Corp. disclosed 642 security bugs in July, another all-time high and nearly five times the count in the same month last year. Alphabet Inc.’s Google found and fixed 433 such bugs in a recent update to the Chrome browser versus 11 in an equivalent update one year ago.

“We have to come to the reckoning that these tools are increasing the ability of people to find vulnerabilities in software,” said Gabriel Bernadett-Shapiro, distinguished AI research scientist at the cybersecurity firm SentinelOne Inc.

At Google, the “unprecedented scale and speed” of vulnerability discovery is a result of advances in AI models and a corresponding investment, Doug Turner, Chrome’s director of engineering, told Bloomberg.

Microsoft declined to comment. Oracle didn’t respond to a request for comment.

The surge in discovered vulnerabilities lends credence to the warnings governments and security firms have been issuing about the threat posed by hackers armed with powerful, new AI models.

A deeper look at the figures also reveals the limits of these worries. There’s been no rise in the number of exploited issues this year despite the uptick in discovered flaws, according to the U.S. government’s Known Exploited Vulnerabilities catalog. Internal security personnel at the technology firms are finding many of the new vulnerabilities with their own cyber-focused AI tools, according to their disclosures. Of the 433 vulnerabilities in Chrome in July, 401 were “reported by Google” internally, according to the company.

“We just aren’t seeing the numbers to back up the doom and gloom prophets,” said Dustin Childs, head of threat awareness at the cybersecurity firm Trend Micro Inc.

Frontier AI models accelerated their ability to discover software vulnerabilities in recent months, prompting anxiety about a surge in hackers exploiting those flaws. Anthropic PBC’s Mythos tool found thousands of software vulnerabilities in early testing, showcasing a new level of capability for cutting-edge AI models. OpenAI has developed comparable tools. Officials at the National Security Agency have been impressed by the Anthropic model’s ability to find and exploit cybersecurity vulnerabilities, Bloomberg reported.

Microsoft on Monday released another AI security tool, known as MAI-Cyber-1-Flash, that it said will help software vulnerability management.

Hackers are also able to turn abstract vulnerabilities into working exploits, which can actually be used to breach a computer system faster than ever. The average time it took attackers to exploit vulnerabilities dropped from 72 hours last year to just 24 hours in 2026, said Alexander Leslie, senior adviser at the cybersecurity firm Recorded Future Inc.

OpenAI disclosed on July 21 its autonomous agents had breached another company, Hugging Face, in an incident that Bloomberg reported took hours, compared to the weeks it likely would have taken a human. The models were operating without the usual safety guardrails, the company said, because OpenAI had intended them to remain in a virtual and isolated software environment that’s meant to run security tests or analyze unsafe code in a controlled situation.

Tags: artificial intelligence (AI)BloombergNewsPremium
Previous Post

American Express to insure agentic commerce

Next Post

Extend making AI take ‘night shift’

Related Posts

uipath
Risk & Security

Inetco launches agentic AI fraud investigation tool

July 24, 2026
Signage outside the ServiceNow headquarters in Santa Clara, California, US, on Thursday, Sept. 4, 2025. ServiceNow Inc. is offering federal agencies discounts of as much as 70% on its software, a move aimed at spurring adoption as the Trump administration presses for faster government implementation of artificial intelligence tools. Photographer: David Paul Morris/Bloomberg
Risk & Security

ServiceNow’s AI contract revenue soars more than 40% in Q2

July 23, 2026
Two people, who are made of data streams, shake hands
Risk & Security

Implementing AI for AML requires resolute leadership, comprehensive data

July 22, 2026
Next Post
(AI-generated)

Extend making AI take ‘night shift’

EMERGING FINTECH DIRECTORY

Emerging Fintech Directory

The Buzz Podcast

SPONSORED

Build an Antifragile Strategy to Outperform the Market

July 14, 2026

How AI and Product Experts Turn Fuzzy Requirements Into Focused Dev-ready Roadmaps

April 19, 2026

Is Your Technology Supplier There for You?

April 1, 2026

  • About Us
  • Help Center
  • Contact Us
  • Privacy Terms
  • ADA Compliance
  • Advertise

 [wt_cli_manage_consent]

Connect

twitter linkedin podcast podcast podcast
© 2026 Royal Media
No Result
View All Result
  • NEWS
    • All News
    • Banking
    • Lending
    • Payments
    • Risk & Security
    • Strategy
  • AI News Tool [Beta]
  • DATA
  • TRANSACTIONS
  • EVENTS
    • FinAi Banking Summit
    • FinAi Lending Summit
  • PODCAST
  • WEBINARS
    • Webinar Library
  • SUBSCRIBE
  • Log In / Account

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Unlock This Article

Create your free FinAi News account to access this article and stay informed on how AI is transforming financial services including banking, lending, payments, and risk.

Yes, I'd like to receive FinAi News updates, breaking news, and exclusive AI insights for financial services leaders.

Continue Reading with FinAi News Premium - Less than $2/Day

Upgrade to FinAi News Premium for unlimited access to news, insights, trends, and intelligence on how AI is transforming financial services including banking, lending, payments, and risk.
Upgrade to FinAi News Premium Subscription
No Result
View All Result
  • NEWS
    • All News
    • Banking
    • Lending
    • Payments
    • Risk & Security
    • Strategy
  • AI News Tool [Beta]
  • DATA
  • TRANSACTIONS
  • EVENTS
    • FinAi Banking Summit
    • FinAi Lending Summit
  • PODCAST
  • WEBINARS
    • Webinar Library
  • SUBSCRIBE
  • Log In / Account