AI usage is evident but isn't yet a serious problem

The 35th USENIX Security Symposium (USS), scheduled to take place next week in Baltimore, Maryland, has recorded an unprecedented number of paper submissions, reaching approximately 3,030 valid papers across two cycles. This marks a significant increase from the previous year's total of around 2,400 submissions. While the rise in submissions is partly attributed to the growing availability of AI tools, conference organizers report that instances of abuse have been minimal due to proactive defensive measures.
Ben Stock, a tenured faculty member at the CISPA Helmholtz Center for Information Security and USS program co-chair, noted that this growth mirrors a broader trend within the security community. He pointed to the Network and Distributed System Security Symposium (NDSS), which saw its paper submissions jump from 694 in 2024 to 1,311 in 2025, and then to 1,481 this year. Stock indicated that the USS program committee was scaled in anticipation of this increase.
A paper published in April, titled "More Versus Better: Artificial Intelligence, Incentives, and the Emerging Crisis in Peer Review," found that since the release of ChatGPT in 2022, major academic journals have experienced a 42 percent increase in submission volume. In response to the proliferation of large language models (LLMs), the USS organizers, including Stock and co-chair Elissa Redmiles, an assistant professor of computer science at Georgetown University, detailed their strategies in the USENIX Security '26 transparency report, issued in January.
The report highlighted an "alarming trend of AI usage in key areas of the scientific process" and outlined actions taken against two specific violations: the inclusion of non-existent or "hallucinated" references, and the use of AI in the paper review process. After identifying and rejecting a paper with fabricated references, the organizers developed tools to extract references from submitted PDFs, query established sources like DBLP and arXiv, and manually verify invalid citations.
Papers containing three or more hallucinated references were rejected. This policy impacted 21 out of 1,181 submissions in the first round, representing 1.78 percent. Stock clarified that while they could not definitively confirm these were AI-generated, such papers were deemed problematic and rejected. The report also noted over 100 additional papers with at least one unconfirmed reference, but these were not further investigated to avoid overburdening staff, acknowledging potential false positives from minor discrepancies.
Conference organizers explicitly prohibit the use of AI for bibliography preparation, emphasizing the importance of halting this trend to preserve scientific integrity. However, limited AI use for refining human-written text is generally permitted, extending to reviewers, with specific limitations.
While no dedicated AI policy was established for reviewers, program committee members were explicitly informed that using AI services to write reviews is not allowed, primarily due to confidentiality concerns. The USS identified a small number of cases where there was sufficient confidence that AI was used in reviews. In these instances, appropriate actions were taken, including the removal of five out of 496 affected reviewers from the committee and allowing affected authors to resubmit their papers.
Despite these measures, Stock stated that there is no evidence to suggest that AI-generated submissions have become a significant challenge for the security community. He acknowledged, however, that AI might have been used in parts of some submissions.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed