Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026

32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026

Posted on October 7, 2026 By CWS

On the first day of Pwn2Own Ireland 2026, security researchers identified 32 unique zero-day vulnerabilities, earning a total of $388,500. The event saw successful exploitations of devices such as the Samsung Galaxy S26 and OpenAI Codex, although an attempt on the Google Pixel 10 was not completed within the time limit.

Overview of Day One Results

The initial day of Pwn2Own highlighted vulnerabilities across various devices and systems, including smartphones and AI technologies. The Zero Day Initiative (ZDI) recorded 21 entries, with some exploits utilizing both new and previously known bugs.

Samsung Galaxy S26 Exploit Chains

Three teams managed to exploit the Samsung Galaxy S26, each employing four different vulnerabilities. Nguyen Thanh Dat from Viettel Cyber Security earned $31,250 by combining a newly discovered bug with three known vulnerabilities. Interrupt Labs and Ikotas Labs also executed successful exploits, though their payouts varied due to overlapping bug usage.

ZDI emphasizes that not every vulnerability in a successful exploit chain is new. Overlapping discoveries are marked as collisions, impacting the prize amounts awarded.

Challenges and Successes in AI and Smart Devices

While the Google Pixel 10 remained impervious during the contest, Ikotas Labs exploited a flaw in OpenAI Codex, securing $40,000. Other notable exploits included Taisic Yun of Xint achieving a reverse shell on LiteLLM through code injection, also earning $40,000.

VinSOC researchers revealed seven zero-days in the Philips Hue Bridge Pro, earning $40,000, and McCaulay Hudson received $50,000 for exploiting a Sonos device. These efforts highlight ongoing security challenges in both AI and smart home technologies.

The event underscored the critical need for vigilance and innovation in cybersecurity, with experts continuing to uncover vulnerabilities across a range of technologies. As the contest progresses, further discoveries are anticipated, offering insights into emerging threats and the necessary defenses.

Cyber Security News Tags:AI security, cyber threats, Cybersecurity, exploit chains, OpenAI Codex, Pixel 10, Pwn2Own, Samsung Galaxy S26, security research, smart home devices, TrendAI, vulnerability exploitation, ZDI, zero-day

Post navigation

Previous Post: Wikimedia Identifies Unauthorized OpenAI Agent Activities
Next Post: Critical Atlassian Vulnerability Fixed Across Key Products

Related Posts

Oracle Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack Oracle Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack Cyber Security News
NCSC Urges Organizations to Upgrade Microsoft Windows 11 to Defend Cyberattacks NCSC Urges Organizations to Upgrade Microsoft Windows 11 to Defend Cyberattacks Cyber Security News
DataCenter Fire Takes 600+ South Korean Government Websites Offline DataCenter Fire Takes 600+ South Korean Government Websites Offline Cyber Security News
New Magecart Skimmer Attack With Malicious JavaScript Injection to Skim Payment Data New Magecart Skimmer Attack With Malicious JavaScript Injection to Skim Payment Data Cyber Security News
Pastebin PowerShell Script Targets Telegram Sessions Pastebin PowerShell Script Targets Telegram Sessions Cyber Security News
Cavalry Werewolf APT Hackers Attacking Multiple Industries With FoalShell and StallionRAT Cavalry Werewolf APT Hackers Attacking Multiple Industries With FoalShell and StallionRAT Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Google Chrome Update Patches 247 Security Vulnerabilities
  • Critical Atlassian Vulnerability Fixed Across Key Products
  • 32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026
  • Wikimedia Identifies Unauthorized OpenAI Agent Activities
  • Over 100 Sites Compromised Using Fake Cloudflare Checks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Google Chrome Update Patches 247 Security Vulnerabilities
  • Critical Atlassian Vulnerability Fixed Across Key Products
  • 32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026
  • Wikimedia Identifies Unauthorized OpenAI Agent Activities
  • Over 100 Sites Compromised Using Fake Cloudflare Checks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark