Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026

32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026

Posted on October 7, 2026 By CWS

On the first day of Pwn2Own Ireland 2026, security researchers identified 32 unique zero-day vulnerabilities, earning a total of $388,500. The event saw successful exploitations of devices such as the Samsung Galaxy S26 and OpenAI Codex, although an attempt on the Google Pixel 10 was not completed within the time limit.

Overview of Day One Results

The initial day of Pwn2Own highlighted vulnerabilities across various devices and systems, including smartphones and AI technologies. The Zero Day Initiative (ZDI) recorded 21 entries, with some exploits utilizing both new and previously known bugs.

Samsung Galaxy S26 Exploit Chains

Three teams managed to exploit the Samsung Galaxy S26, each employing four different vulnerabilities. Nguyen Thanh Dat from Viettel Cyber Security earned $31,250 by combining a newly discovered bug with three known vulnerabilities. Interrupt Labs and Ikotas Labs also executed successful exploits, though their payouts varied due to overlapping bug usage.

ZDI emphasizes that not every vulnerability in a successful exploit chain is new. Overlapping discoveries are marked as collisions, impacting the prize amounts awarded.

Challenges and Successes in AI and Smart Devices

While the Google Pixel 10 remained impervious during the contest, Ikotas Labs exploited a flaw in OpenAI Codex, securing $40,000. Other notable exploits included Taisic Yun of Xint achieving a reverse shell on LiteLLM through code injection, also earning $40,000.

VinSOC researchers revealed seven zero-days in the Philips Hue Bridge Pro, earning $40,000, and McCaulay Hudson received $50,000 for exploiting a Sonos device. These efforts highlight ongoing security challenges in both AI and smart home technologies.

The event underscored the critical need for vigilance and innovation in cybersecurity, with experts continuing to uncover vulnerabilities across a range of technologies. As the contest progresses, further discoveries are anticipated, offering insights into emerging threats and the necessary defenses.

Cyber Security News Tags:AI security, cyber threats, Cybersecurity, exploit chains, OpenAI Codex, Pixel 10, Pwn2Own, Samsung Galaxy S26, security research, smart home devices, TrendAI, vulnerability exploitation, ZDI, zero-day

Post navigation

Previous Post: Wikimedia Identifies Unauthorized OpenAI Agent Activities

Related Posts

Salat Stealer Exfiltrates Browser Credentials Via Sophisticated C2 Infrastructure Salat Stealer Exfiltrates Browser Credentials Via Sophisticated C2 Infrastructure Cyber Security News
Starkiller Phishing Tool Bypasses MFA with Real Login Pages Starkiller Phishing Tool Bypasses MFA with Real Login Pages Cyber Security News
Microsoft’s Plan to Phase Out NTLM for Enhanced Security Microsoft’s Plan to Phase Out NTLM for Enhanced Security Cyber Security News
CISA Warns of ‘ToolShell’ Exploits Chain Attacks SharePoint Servers CISA Warns of ‘ToolShell’ Exploits Chain Attacks SharePoint Servers Cyber Security News
Windows BitLocker Vulnerabilities Let Attackers Bypass Security Feature Windows BitLocker Vulnerabilities Let Attackers Bypass Security Feature Cyber Security News
Threat Actors Personalize Phishing Attacks With Advanced Tactics for Malware Delivery Threat Actors Personalize Phishing Attacks With Advanced Tactics for Malware Delivery Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • 32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026
  • Wikimedia Identifies Unauthorized OpenAI Agent Activities
  • Over 100 Sites Compromised Using Fake Cloudflare Checks
  • Anthropic Expands Access to Claude for Cybersecurity Experts
  • Android October 2026 Security Update Fixes 25 Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • 32 Zero-Day Vulnerabilities Exploited at Pwn2Own 2026
  • Wikimedia Identifies Unauthorized OpenAI Agent Activities
  • Over 100 Sites Compromised Using Fake Cloudflare Checks
  • Anthropic Expands Access to Claude for Cybersecurity Experts
  • Android October 2026 Security Update Fixes 25 Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark