Google's Threat Analysis Group has confirmed that cybercriminals have used artificial intelligence models to discover and exploit a zero-day vulnerability in a popular open-source web management tool, according to ChainCatcher. This vulnerability allowed attackers to bypass two-factor authentication. Google stated that this marks the first time the company has identified AI-assisted zero-day vulnerability development in a real-world scenario. Before attackers could exploit the vulnerability on a large scale, Google collaborated with the affected vendors to patch the issue. The vulnerability was identified as a logic error, where the software trusted a condition that could bypass two-factor authentication. Unlike traditional scanners that search for crashes or erroneous code, AI analyzed the software's expected functionality and detected logical inconsistencies, enabling attackers to bypass security checks without compromising encryption.