
Google: AI helped hackers bypass 2FA in zero-day exploit
Google says hackers may have used AI to help bypass two-factor authentication (2FA) in a zero-day attack. The attackers used a script that took advantage of a logic flaw, where a session was wrongly marked as fully verified even though it still needed another authentication step. Google believes the attack script likely came from a large language model, which might help attackers find mistakes in authentication systems that other tools often miss. There is no evidence the flaw was widely exploited, and Google worked quickly to patch the issue and block related malicious activity.













