Google's AI security pipeline fixed 1,072 Chrome bugs including 13-year-old sandbox escape
Google's Chrome security team used AI agents to discover 1,072 vulnerabilities across recent browser releases, including a 13-year-old sandbox escape in the V8 engine, by automating vulnerability detection, triage, and fix generation. The team deployed LLM-powered tools in early 2026 that found bugs with higher efficiency and fewer false positives than prior methods, while simultaneously automating triage workflows that previously required 5-30 minutes per bug. As a result, Chrome is shifting to two security releases per week and piloting dynamic patching to eliminate restart requirements, compressing the window between vulnerability discovery and user protection.
Why it matters
Google said its AI security pipeline helped fix 1,072 Chrome bugs and found a 13-year-old sandbox escape.