AuraTracer智迹闻
中文

EVENT DOSSIER

AI accelerated the development of the first zero-click WeChat worm, WeWorm. Tencent has fixed all vulnerabilities.

2026-09-08 17:59 Cybersecurity 🔥 49.3 heat score
2sources
1days unfolding
49.3heat score
4mentions
SummaryAI generated

The cybersecurity company Calif used artificial intelligence to develop the first “zero-click” worm virus, WeWorm, for WeChat, in about two weeks. The virus spreads through WeChat calls and can take just a few seconds to take control of applications and spread to other victims. In July this year, Calif’s team discovered a memory corruption issue in WeChat’s VoIP protocol stack. With AI assistance, they managed to create a remote code execution vulnerability in just two days, and then spent seven days developing the virus. Tencent has confirmed that the vulnerabilities have been fixed on both the client-side (Android 8.0.77, iOS 8.0.76) and server-side, and all users are currently unaffected. Calif noted that AI significantly shortened the development cycle for such large-scale worms; work that previously required a large team to complete over months can now be done with AI.

Related eventsRELATED EVENTS
Key entitiesKEY ENTITIES
CalifIT HomeTencentWeChat

Coverage · reports per dayLANGUAGE SPLIT

Entity relations
Calif × Tencent2Calif × WeChat2Tencent × WeChat2Calif × IT Home1IT Home × Tencent1IT Home × WeChat1

Integrated timelineUNIFIED TIMELINE

  1. 2026-09-08

    安全人员利用 AI 快速开发首个零点击微信蠕虫病毒,相关漏洞现已修复

    网络安全企业 Calif 利用 AI 技术开发出首个零点击微信蠕虫病毒 WeWorm,该漏洞现已修复。WeWorm 通过微信通话传播,仅需数秒即可接管应用并扩散至其他受害者。导致攻击的 VoIP 协议栈内存损坏问题由 Calif 于今年 …

    2 reports

SignalsSIGNALS

Keyword heat
  • WeChat4
  • Calif2
  • Tencent2
  • IT Home1

All reports (2)SOURCES

凤凰网·科技 zh 2026-09-08 08:00

安全人员利用AI快速开发首个零点击微信蠕虫病毒,相关漏洞现已修复

网络安全企业 Calif 利用人工智能技术,在短短两周内开发了首个面向微信的“零点击”蠕虫病毒 WeWorm。该病毒通过微信通话传播,仅需数秒即可无感接管应用并扩散至其他受害者。导致 WeWorm 生效的漏洞现已在客户端(Android 8.0.77, iOS 8.0.76)和服务器端修复,所有用户当前均不受影响。Calif 团队于今年 7 月利用 AI 工具发现微信 VoIP 协议栈内存损坏问题,随后在 AI 辅助下仅用 2 天编写出远程代码执行漏洞,又耗时 7 天完成病毒制作。Calif 指出,如此规模的蠕虫过去需大型团队数月完成,而 AI 已能承担大部分工作。

I IT之家 zh 2026-09-08 17:59

安全人员利用 AI 快速开发首个零点击微信蠕虫病毒,相关漏洞现已修复

网络安全企业 Calif 利用 AI 技术开发出首个零点击微信蠕虫病毒 WeWorm,该漏洞现已修复。WeWorm 通过微信通话传播,仅需数秒即可接管应用并扩散至其他受害者。导致攻击的 VoIP 协议栈内存损坏问题由 Calif 于今年 7 月发现,团队在 AI 辅助下仅用两天编写出远程代码执行漏洞,又耗时七天完成病毒制作。腾讯发言人已确认相关漏洞已在客户端(Android 8.0.77, iOS 8.0.76)及服务器端修复,所有用户当前不受影响。Calif 指出,AI 大幅缩短了此类大规模蠕虫的开发周期,过去需大型团队数月完成的工作如今可由 AI 主导。