Bỏ qua đến nội dung chính
Back to home
AI tools-ai Tech 3 min read

Google Uses Gemini AI Agents to Patch Over 1,000 Chrome Vulnerabilities in 60 Days

Google has successfully deployed Gemini-based AI agents to detect and fix 1,072 security vulnerabilities in the Chrome browser within 60 days, enhancing protection for 3.5 billion users.

Tier 2 · sources 99% confidence Reviewed
Sources zdnet.com

Google has officially announced the successful deployment of Gemini-based AI agents to detect and patch 1,072 security vulnerabilities in its Chrome browser within just 60 days. This strategic move by the search giant aims to protect its more than 3.5 billion daily active users against increasingly complex and sophisticated cyber threats.

Detailed Developments

According to Google's latest report, this large-scale vulnerability assessment and remediation campaign took place over a record-short span of two months. Rather than relying solely on manual methods or traditional source code scanners—which are highly time-consuming and labor-intensive—the company deployed a system of specialized AI agents to maximize workflow automation.

The new AI system continuously scanned millions of lines of complex Chrome source code, quickly identifying potential weaknesses and automatically proposing optimal patching solutions. Consequently, a total of 1,072 different security flaws, ranging from medium to critical severity, were thoroughly resolved before threat actors had any opportunity to discover and exploit them in the wild.

Technical & Technological Analysis

At the core of this comprehensive security upgrade lies the leveraging of deep analysis and the superior natural language processing capabilities of Google's own Gemini model. These AI agents do not merely search for predefined code error patterns; they are also capable of understanding the operational context of the source code to predict the most complex logical vulnerabilities.

The closed-loop workflow of these AI agents includes static analysis of the entire codebase, running simulation tests in a secure, sandboxed environment to verify the vulnerability, and finally, automatically writing compatible patch code. Automating this entire testing and patching cycle has helped Google significantly shorten the turnaround time from vulnerability discovery to the official release of patches to end-users.

Expert Opinions & Insights

According to Google's internal security experts, deeply integrating the Gemini model into the software development lifecycle has delivered performance that far surpasses traditional automated testing tools. The AI operates continuously around the clock with high precision, significantly alleviating the immense workload on the company's cybersecurity engineering teams.

However, international tech analysts also note that while AI offers highly impressive performance, human review and final decision-making remain irreplaceable. Google's security engineers must still closely monitor every AI-generated patch proposal to ensure these updates are completely stable, do not cause system conflicts, and do not disrupt the user's browsing experience.

Impact & The Future

This better-than-expected success clearly demonstrates the immense practical potential of AI technology in the field of cybersecurity. For over 3.5 billion Chrome users worldwide, this new AI-driven security solution offers a faster, continuous, and more proactive shield against dangerous zero-day exploits.

In the near future, this operating model of utilizing autonomous AI agents to discover and patch security flaws is highly likely to become a new industry standard in software development. The aggressive shift from passive defense to active prevention and AI-powered patching promises to reshape the global cybersecurity landscape in the years to come.