Researchers exploit 32 zero-days at Pwn2Own Ireland
At Pwn2Own Ireland 2026, security researchers uncovered 32 zero-day vulnerabilities in devices ranging from smartphones and smart home products to AI tools and printers. Teams earned over $368,000 on the first day by successfully breaching products like the Samsung Galaxy S26, Philips Hue Bridge Pro, and OpenAI Codex. The contest, organized by the Zero Day Initiative, continues over several days to identify flaws so vendors can issue patches.
- $368,000+ awarded for 32 new zero-days
- Samsung Galaxy S26 hacked twice on opening day
- Philips Hue Bridge Pro breached using seven zero-days
- AI infrastructure and coding tools among affected products
- Vendors have 90 days to patch before disclosure
Sources covering this
In this story
More in Cybersecurity
Four states sue TP-Link over router security claims
Florida and three other US states have filed lawsuits against TP-Link, alleging the company misled consumers about its routers' security…
Outlook will block MSIX file attachments in November
Microsoft will begin blocking .msix and .msixbundle attachments in Outlook on the web and the new Outlook for Windows starting in November.
Major software vendors patch critical vulnerabilities
Cisco Talos researchers reported multiple vulnerabilities in products from Microsoft, Adobe, Apple, and Foxit.
PoeLLM malware builds botnet targeting AI services
Researchers have identified malware named PoeLLM that has compromised over 3,400 servers since April by targeting open-source AI services.