Reports claim Anthropic’s Claude was used to identify and weaponize CVE-2026-4747, a FreeBSD kernel vulnerability in the RPCSEC_GSS component used for Kerberos authentication in NFS servers. The flaw reportedly allowed an unauthenticated attacker to trigger a stack buffer overflow and gain remote code execution, ultimately obtaining a root shell on unpatched systems. A social media post and a Forbes report both describe the incident as a notable milestone in AI-assisted offensive security, with the advisory crediting Nicholas Carlini using Claude for discovering the bug.
According to the Forbes account, an autonomous AI workflow analyzed the published advisory and produced two working exploits in roughly four hours, moving from vulnerability identification to practical exploitation without the extended manual effort typically required for kernel exploit development. The report argues that this sharply reduces the time between disclosure and weaponization and raises pressure on defenders to accelerate patching, continuous code auditing, and AI-assisted detection and response as similar systems are reportedly being applied to find hundreds of additional high-severity flaws.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
The Forbes article further claimed that the Claude-powered vulnerability research pipeline had since identified 500 additional high-severity vulnerabilities across multiple codebases. No separate dates or affected vendors were provided for those findings.
A public write-up for CVE-2026-4747 described the vulnerable svc_rpc_gss_validate() path in FreeBSD's kgssapi.ko, listed affected FreeBSD versions, and said the issue was fixed by adding a bounds check on oa_length. It also detailed exploitation requirements and a tested multi-round ROP and shellcode chain on FreeBSD 14.4-RELEASE amd64 that could yield a root reverse shell on vulnerable NFS servers.
A subsequent report said an autonomous Claude-based agent analyzed the newly disclosed vulnerability and, within about four hours of the advisory, produced two working exploits that achieved a root shell on unpatched FreeBSD systems. The article framed this as a milestone in AI-driven offensive cyber capability.
A FreeBSD security advisory disclosed CVE-2026-4747 in the RPCSEC_GSS module used for Kerberos authentication in NFS servers. The advisory credited Nicholas Carlini using Anthropic's Claude for discovering the flaw, which could allow unauthenticated remote code execution via a stack buffer overflow.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
7 references tracked. Mallory keeps watching after this page renders.
flyingpenguin.com
Open sourcegithub.com
Open sourceforbes.com
Open sourcegithub.com
Open sourceblog.calif.io
Open sourcesentinelone.com
Open sourcefacebook.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.