LIVE · cybersecurity feed
Live wire
CVE-2026-9055 · WordPress Amelia Plugin Flaw Exploited Before CVE PublicationCVE-2026-46331 · Linux Kernel Flaw Exploited After 71 Days, Not on CISA KEVCVE-2026-84434 · CVE-2026-84434 Exploited Before Publication, No Patch WindowCVE-2024-4405 · Malicious Extensions Hijack AI Browser Agents via Prompt ForcingCVE-2026-58138 · Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the WildCVE-2025-39682 · CISA Flags Three Linux Kernel Vulnerabilities Exploited in the WildBrevo Supply-Chain Attack Infected Over 100,000 WebsitesPublic Exploits Released for Linux Kernel Root Privilege FlawsIn Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP FlawCisco alerts customers to second actively exploited zero-day in as many days
nation-state

AI Hallucinations Nearly Triggered a US-China Military Confrontation

An AI-generated intelligence report falsely identified weapons on a Chinese ship, nearly triggering a US military operation during the Iran war. According to CNN, four sources familiar with the episode say an intelligence report circulated through the military claiming a Chinese vessel in the Middle East was carrying components for a nuclear weapons program. The […]

zeroday.news ·

An AI-generated intelligence report nearly precipitated a military confrontation between the United States and China this spring, when it falsely identified components for a nuclear weapons program on a Chinese vessel in the Middle East. The incident, which unfolded during the ongoing conflict with Iran, prompted immediate preparations for a US military operation, including the deployment of armed boarding teams and military aircraft.

According to four sources familiar with the episode, the intelligence report, which circulated widely across the US military, claimed a Chinese ship was transporting nuclear weapon components. This triggered an urgent response, with US forces preparing to intercept and board the vessel. Military planes were reportedly airborne as part of the planned operation.

The crisis was averted when the report's source was scrutinized and found to be "entirely false." One source indicated that the incident came perilously close to initiating an armed operation that could have severely escalated tensions between the two global powers, potentially spiraling into a broader conflict.

The erroneous report originated when an analyst at Special Operations Command Pacific utilized a chatbot to analyze intelligence related to the ship's manifest. The AI system, combining open-source data with classified signals intelligence, incorrectly concluded that the cargo included nuclear weapon components. The analyst then used AI again to formalize this incorrect conclusion into an intelligence report, without an intervening human verification step.

This incident highlights the significant risks posed by AI hallucinations in military and intelligence contexts, where unverified AI outputs can rapidly propagate through decision-making chains. A former senior US official noted that many internal AI tools used by military and intelligence analysts are essentially commercial products with superficial modifications, underscoring a potential vulnerability in their application.

The Pentagon's "Artificial Intelligence Acceleration Strategy," articulated by Defense Secretary Pete Hegseth in January, aims to integrate AI models across all classification levels for millions of military and civilian personnel. However, the strategy appears to lack clear provisions for scenarios where AI models confidently produce incorrect information.

The adoption of AI across various military branches remains inconsistent, with differing tools, rules, and safety protocols. Crucially, there is no standardized system for verifying the accuracy of information generated by these AI tools. This particular incident is not isolated, with similar AI-driven errors reportedly occurring elsewhere within the intelligence community.

The pressure to rapidly deploy AI tools may be contributing to the problem, as younger analysts, accustomed to AI, might be more inclined to trust its outputs without sufficient scrutiny. One source observed that "AI allows you to get to a bad idea faster," suggesting that the perceived benefit of speed can inadvertently bypass critical human checkpoints for verification.

Targeting decisions represent one of the most sensitive applications for military AI, directly influencing who is engaged in combat. The speed offered by AI becomes a liability when inadequate checks are in place to validate its conclusions before action is taken. There is currently no clear guidance on how human operators should prevent civilian casualties or friendly-fire incidents when AI plays a substantial role in target selection. The primary risk may not be autonomous AI action, but rather the rapid dissemination of confident, yet incorrect, AI-generated information to decision-makers before human challenge or verification can occur.

nation-stateai
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 115

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Gray Rabbits and the Tale of a One-Click Backdoor Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit Malicious Twitch Browser Extension Exposes 30,000 Users’ OAuth Tokens to Russian Bot […]

nation-state

Security Affairs newsletter Round 595 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Google Gemini also Broke Out of Its Test Environment AI Helps Hackers Hijack OpenAI Staff Accounts Through […]

malware

Malicious npm packages evade install-script defenses at runtime

An ongoing npm malware campaign involving the 'indexed-btree' package shows how threat actors bypass supply chain defenses by hiding malicious code in a package's normal runtime behavior rather than in installation scripts. [...]

CVE-2026-9055critical

WordPress Amelia Plugin Flaw Exploited Before CVE Publication

A critical privilege escalation vulnerability in the WordPress Amelia plugin was exploited before its official CVE publication. CISA has not yet added it to its Known Exploited Vulnerabilities catalog.

CVE-2026-46331high

Linux Kernel Flaw Exploited After 71 Days, Not on CISA KEV

A Linux kernel vulnerability, CVE-2026-46331, has been confirmed as exploited, but remains absent from the US federal CISA Known Exploited Vulnerabilities (KEV) catalogue.

CVE-2026-84434high

CVE-2026-84434 Exploited Before Publication, No Patch Window

A critical vulnerability, CVE-2026-84434, was reported as exploited on September 18, 2026, one day before its official publication. This flaw has no patch window and is listed in the VulnCheck KEV but not in CISA KEV or EUVD.