Published Wednesday, September 30, 2026 at 05:46 PM PT

<strong>PWNOOWN BERLIN 2026: 24 ZERO-DAYS DEMONSTRATED IN LIVE COMPETITION — VENDOR NOTIFICATION INCOMPLETE</strong>

BLUF: Zero Day Initiative’s Pwn2Own Berlin 2026 concluded with 24 newly discovered 0-day vulnerabilities publicly demonstrated across AI databases, coding agents, local inference engines, and NVIDIA products. Specific vulnerability details and affected vendors remain incomplete in available sources; immediate vendor disclosures are in progress but full proof-of-concepts and technical details are under embargo. Monitor ZDI’s coordinated disclosure calendar and vendor security advisories for 90-day notification/patch windows.


DETAILS

  • Event scope: Pwn2Own Berlin 2026 (22 research teams, live stage demonstrations) awarded $523,000 for 24 unique 0-days across four categories: AI Databases, Coding Agents, Local Inference systems, and NVIDIA products.
  • Demonstrated live: Exploits validated and executed on stage by researchers including DEVCORE and other top-tier security teams; all 24 vulnerabilities confirmed as novel and previously unknown to vendors.
  • Categories attacked: Vulnerability distribution spans emerging attack surface (AI/ML inference, LLM-based coding assistants) plus established NVIDIA infrastructure — indicates systematic targeting of the AI/ML stack.
  • Vendor notification: ZDI coordinates 90-day responsible disclosure with affected vendors. Specific CVE assignments, patches, and public advisory dates not yet published in available sources.
  • Status: Day One through Day Three results archived; full technical writeups and proof-of-concepts remain embargoed pending vendor patch delivery.

IMPACT

  • AI/ML vendors and infrastructure operators: Any organization running AI databases, coding agents (e.g., GitHub Copilot-like systems), or local inference engines should assume at least one vulnerability affects their stack until vendor advisories clarify scope.
  • NVIDIA ecosystem: GPU-powered inference and data-center deployments require patch assessment once NVIDIA disclosures are published.
  • Software supply chain: Organizations consuming LLM-based coding tools or embedding inference engines in products are indirect consumers of risk until patches are available.
  • Timeline: 90-day window from ZDI coordination start (typically contest end date) to vendor patch availability; public advisories expected within this window.

RECOMMENDED ACTIONS

  1. Monitor ZDI disclosures — Subscribe to Zero Day Initiative’s advisory calendar (zerodayinitiative.com) for Day One/Two/Three vulnerability notices as they publish.
  2. Vendor communication: Contact AI database, inference, and NVIDIA product vendors with a request for security advisory status and patch timelines for Pwn2Own Berlin 2026 findings.
  3. Inventory risk: Audit your infrastructure for affected products (AI Databases, coding agents, inference systems, NVIDIA GPUs) to prepare for remediation once patches are available.
  4. Patch windows: Plan for updates within the 90-day ZDI disclosure window (early October 2026 through early January 2027, approximate).

SOURCES

  • Zero Day Initiative, Pwn2Own Berlin 2026 — Day One Results (published September 2026, full technical details embargoed pending vendor coordination)
  • Related context: Pwn2Own Berlin 2026 Day Two/Three results published; full findings under ZDI coordinated disclosure

LIMITATION: Specific CVE identifiers, vulnerable products, and proof-of-concept details are not yet public. This alert reflects confirmed participation and prize allocation; detailed remediation guidance will follow vendor advisories.


Recent high-severity events at publish time:

Recent high-severity events