
Google said on Monday it disrupted what it described as the first known cyberattack in which hackers used artificial intelligence to find and build an exploit for a previously unknown software flaw.
The finding, published by Google Threat Intelligence Group, involved a prominent criminal threat actor that planned a mass exploitation campaign against a widely used open-source, web-based system administration tool. Google said the flaw allowed attackers to bypass two-factor authentication, though they still needed valid user credentials.