• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

The millennial generation is split in 2: an older crowd with boomer-style comfort, a younger set going 'back to the early 1900s'

2

Trump pulls back after Iran crosses his red line as U.S. military breaks two-week streak of airstrikes amid talks for potential Hormuz deal

3

'The demographic dividend of the last 40 years is ending': J.P. Morgan says the world is running out of the two things that kept interest rates down

1

The millennial generation is split in 2: an older crowd with boomer-style comfort, a younger set going 'back to the early 1900s'

2

Trump pulls back after Iran crosses his red line as U.S. military breaks two-week streak of airstrikes amid talks for potential Hormuz deal

3

'The demographic dividend of the last 40 years is ending': J.P. Morgan says the world is running out of the two things that kept interest rates down
Cybersecuritycyber

A new AI-powered computer worm could prove to be the stuff of cybersecurity nightmares

Sharon Goldman
By
Sharon Goldman
Sharon Goldman
AI Reporter
Down Arrow Button Icon
Sharon Goldman
By
Sharon Goldman
Sharon Goldman
AI Reporter
Down Arrow Button Icon
June 3, 2026, 1:42 PM ET
University of Toronto researchers demonstrated an AI-driven worm that exploited nearly three-quarters of a simulated corporate network in a week — with no human involvement.
University of Toronto researchers demonstrated an AI-driven worm that exploited nearly three-quarters of a simulated corporate network in a week — with no human involvement.japatino
Add Fortune on Google for similar content.

In cybersecurity, few words trigger more dread than ‘wormable’—a vulnerability that could be weaponized into a self-spreading worm. Now researchers at the University of Toronto have demonstrated something worse: an AI-driven worm that can’t be stopped by patching a single flaw, because it uses reasoning to detect and exploit different vulnerabilities as it spreads. 

Recommended Video

In a new paper released yesterday, ‘AI Agents Enable Adaptive Computer Worms,’ the researchers explain that traditional worms exploit a single vulnerability—patch it, and you stop the spread. But AI agents go further: the worm they built generates tailored attack strategies, with no human intervention, by hijacking compromised machines and running open-weight LLMs to simultaneously reason and extend its reach. 

The researchers ran the worm 15 times on a simulated 33-machine corporate network. On average, in one week with zero human involvement, the worm broke into nearly three-quarters of the machines on the network, and set up a permanent presence on nearly two-thirds of them.

In addition, any LLM knowledge cutoff—a date after which they don’t know about new vulnerabilities—did not stop the worm. The researchers showed the worm could read fresh, publicly available vulnerability advisories online in real time—the same ones security teams use—and figure out how to exploit those new flaws on its own. 

Findings come after Anthropic’s Mythos wake-up call

The paper’s findings come at a nervous moment for cybersecurity. Anthropic’s recently launched Mythos model, deployed only to companies with critical software through Project Glasswing, rattled enterprise security teams by revealing just how many unpatched software vulnerabilities exist across corporate infrastructure. Now the Toronto researchers are showing what happens when autonomous generative adversaries can find their way in without humans and without without already-known exploits.

“This is bigger than Mythos in my view,” said Gary McGraw, CEO of the AI security nonprofit Berryville Institute of Machine Learning. “This shows what happens when a generic model that’s open weights can be targeted, and it just sort of grinds relentlessly, looking for bugs.” 

What’s new here, he told Fortune, is that AI has gotten so good at looking for bugs and finding exploits, that even the non-Mythos models, including smaller, open-weight LLMs, are now good enough to be the brains of a worm. 

It should be a wake-up call to the industry, said McGraw, as was the famous Morris worm of 1988—when Robert Morris Jr. created a worm at MIT, let it loose, and it rampaged across the early Internet like a wildfire. 

Nearly four decades later, agentic AI is providing the “brain” that looks for not just one bug, but any bug, he explained. Traditional worms, including important news-making ones like Heartbleed in 2014 and WannaCry in 2017, were all based on one particular bug. 

“Now, the worm can pick a target, and instead of seeing whether it has one bug that it knows about, it can just try to hack it with any bug that it can find,” he said. 

Ari Herbert-Voss, CEO of AI cybersecurity startup RunSybil and formerly OpenAI’s first security hire, agreed that this is the latest reckoning for organizations, who need to accelerate patching efforts and stay ahead of a new generation of machine-speed attacks.

“Organizations that continue to patch on human timelines will increasingly find themselves behind the curve,” he said.

Still, it is important to separate laboratory success from operational reality, pointed out Jamieson O’Reilly, an offensive security specialist and founder of red-teaming startup Dvuln. “I have no doubt that AI-driven propagation is a real and growing capability,” he said, but added that while the researchers showed the AI-powered worm could spread to intentionally vulnerable targets in a controlled environment, companies do have defensive controls, monitoring, authentication barriers and operational friction that could dramatically alter outcomes.

“I view this research as an important warning sign rather than a surprise,” he said. “AI is steadily reducing the expertise required to build autonomous offensive capabilities, and both governments and organizations should take that seriously.”

Security teams must figure out how to defend in this new era

For security teams, the answer to how to defend against the dangers of AI-powered worms is investment—specifically in fixing software, said McGraw, pointing to Mythos as a model. “The thing I love about Mythos is that people spent literally millions of dollars finding and fixing bugs,” he said. “Maybe this will get the people who weren’t involved [in Project Glasswing] to realize, we’ve got to fix our software too.”

Herbert-Voss, however, argued that this may not fundamentally be just a spending problem. Most organizations already have more vulnerabilities than they can realistically address. “The challenge is knowing what actually matters for an attacker to gain control,” he explained. “As attackers become faster and more automated, defenders need to become more precise.”

In addition, O’Reilly emphasized that defenders still have an edge as worms using local AI models for their reasoning would still have to move large model files around computer networks. That creates unusual traffic and activity that security teams could detect. However, as models improve and get smaller, that advantage will erode, he warned.

But McGraw insisted that the biggest challenge is that defenders are chronically underfunded. Most security professionals already know what they should be doing—patching software, pen testing, using AI defensively. “That costs money, and it’s an investment,” he said. “You can spend too much on security, so how much is enough? Well, the scales recently changed. Time to think about it again.”

The bottom line, McGraw insisted, may be difficult, but is uncomplicated: “Fix your damn software.”

Subscribe to Fortune Gulf Brief. Every Tuesday, this new newsletter delivers clear-eyed, authoritative intelligence on the deals, decisions, policies, and power shifts shaping one of the world’s most consequential regions, written for the people who need to act on it. Sign up here.
About the Author
Sharon Goldman
By Sharon GoldmanAI Reporter
LinkedIn icon

Sharon Goldman is an AI reporter at Fortune and co-authors Eye on AI, Fortune’s flagship AI newsletter. She has written about digital and enterprise tech for over a decade.

See full bioRight Arrow Button Icon
Add Fortune on Google for similar content.

Latest in Cybersecurity

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • TikTok icon
  • YouTube icon

Latest in Cybersecurity

Intern arrested in Belgium on suspicion of spying inside NATO military headquarters and ‘being a member of a criminal organization’
CybersecurityNATO
Intern arrested in Belgium on suspicion of spying inside NATO military headquarters and ‘being a member of a criminal organization’
By Sam McNeil and The Associated PressJuly 25, 2026
16 hours ago
Sam Altman speaking to reporters.
AIOpenAI
AI safety experts say OpenAI’s rogue models may mean the company has already blown past its own internal red lines
By Beatrice NolanJuly 25, 2026
22 hours ago
Google logo is displayed on a smartphone in front of the EU Flag.
CybersecurityGoogle
EU strikes Google with $1 billion fine in major crackdown on antitrust regulations even as Trump threatens retaliation
By The Associated Press and Sam McNeilJuly 24, 2026
2 days ago
AI executives demand OpenAI release more details about how the Hugging Face hack happened
AIOpenAI
AI executives demand OpenAI release more details about how the Hugging Face hack happened
By Emily ForliniJuly 24, 2026
2 days ago
Anthropic debuts Claude Opus 5 with feature that lets users toggle between cost and capability
AIAnthropic
Anthropic debuts Claude Opus 5 with feature that lets users toggle between cost and capability
By Emily ForliniJuly 24, 2026
2 days ago
EU says TikTok failed to shield minors’ accounts from adults, exposing kids to predators
CybersecurityTikTok
EU says TikTok failed to shield minors’ accounts from adults, exposing kids to predators
By Sam McNeil and The Associated PressJuly 24, 2026
2 days ago

Most Popular

The millennial generation is split in 2: an older crowd with boomer-style comfort, a younger set going 'back to the early 1900s'
Real Estate
The millennial generation is split in 2: an older crowd with boomer-style comfort, a younger set going 'back to the early 1900s'
By Nick LichtenbergJuly 25, 2026
1 day ago
Trump pulls back after Iran crosses his red line as U.S. military breaks two-week streak of airstrikes amid talks for potential Hormuz deal
Middle East
Trump pulls back after Iran crosses his red line as U.S. military breaks two-week streak of airstrikes amid talks for potential Hormuz deal
By Jason MaJuly 25, 2026
19 hours ago
'The demographic dividend of the last 40 years is ending': J.P. Morgan says the world is running out of the two things that kept interest rates down
Economy
'The demographic dividend of the last 40 years is ending': J.P. Morgan says the world is running out of the two things that kept interest rates down
By Eleanor PringleJuly 24, 2026
2 days ago
An 11-year-old is cleaning his neighbors' trash cans for $10 each—he now has 100K followers as teens face the worst summer job market since 1948
Success
An 11-year-old is cleaning his neighbors' trash cans for $10 each—he now has 100K followers as teens face the worst summer job market since 1948
By Orianna Rosa RoyleJuly 25, 2026
1 day ago
Startups are installing tiny data centers in people’s homes to reduce strain on the beleaguered electrical grid
Environment
Startups are installing tiny data centers in people’s homes to reduce strain on the beleaguered electrical grid
By Sasha RogelbergJuly 25, 2026
1 day ago
A Hims cofounder fired his entire marketing team for AI. Now his 24/7 online vet service is growing 20% a month
Success
A Hims cofounder fired his entire marketing team for AI. Now his 24/7 online vet service is growing 20% a month
By Sydney LakeJuly 25, 2026
1 day ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.