TrendAI Zero Day Initiative

2.2K Followers
7 Following
1.3K Posts
TrendAI Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
Websitehttps://www.zerodayinitiative.com/
Researchhttps://www.zerodayinitiative.com/blog
Pwn2Ownhttps://www.youtube.com/c/ZeroDayInitiative
Announcing #Pwn2Own Berlin 2026! We've got 10 categories for targets, including an expanded #AI target list. We have 4 AI categories - including coding agents (looking at you #Claude). More than $1,000,000 in cash & prizes available. Read the details at https://www.zerodayinitiative.com/blog/2026/3/11/announcing-pwn2own-berlin-for-2026
Zero Day Initiative — Announcing Pwn2Own Berlin for 2026

If you just want to read the contest rules, click here .   Willkommen zurück, meine Damen und Herren, zu unserem zweiten Wettbewerb in Berlin! That’s correct (if Google translate didn’t steer me wrong). After our inaugural competition last year, Pwn2Own returns to Berlin and Offens

Zero Day Initiative
And don't miss our bug of the month! Each patch Tuesday we'll be selecting our very favorite patch to highlight. This month, it CVE-2026-26144 - a Critical-rated info disclosure in Excel that uses the Copilot Agent to exfiltrate data. Neat! https://youtube.com/shorts/r4EjP3JxYRk?feature=share
Our Bug of the Month - CVE-2026-26144

YouTube
Better late than never, @TheDustinChilds is back with the Patch Report for the March Patch Tuesday release. Ignore the frog in his throat and see what you may otherwise miss in the latest updates from Adobe and Microsoft https://youtu.be/JO6HIzaXkJU
The Patch Report for March 2026

YouTube
Happy Patch Tuesday! The latest security patches from #Adobe and #Microsoft are here. Thankfully, no bugs are listed as being under attack, but there's still some interesting ones in the mix. Join @dustin_childs as he breaks down the March release. https://www.zerodayinitiative.com/blog/2026/3/10/the-march-2026-security-update-review
Zero Day Initiative — The March 2026 Security Update Review

I am back in the friendly confines of the Mid-South headquarters of TrendAI ZDI (a.k.a. my home office), and am all set for the third patch Tuesday of 2026. Take a break from your regularly scheduled activities and let’s take a look at the latest security patches from Adobe and Microsoft. If you’d r

Zero Day Initiative
[ZDI-26-124|CVE-2025-15060] claude-hovercraft executeClaudeCode Command Injection Remote Code Execution Vulnerability (CVSS 9.8; Credit: Peter Girnus of Trend Research) https://zerodayinitiative.com/advisories/ZDI-26-124/
Published | Zero Day Initiative

Heading to the #[un]prompted conference next week? Be sure to catch
@gothburz's talk on "FENRIR: AI Hunting for AI Zero-Days at Scale" His talk shows how we're FENRIR has detected over 100+ CVEs since mid-2025. Don't miss it.
unpromptedcon.org
CVE-2026-20841: Arbitrary Code Execution in the Windows Notepad - The TrendAI Research team takes a deep dive into this recently patched file parsing bug to show you root cause, source code walk through, and provide detection guidance. Read the details at https://www.zerodayinitiative.com/blog/2026/2/19/cve-2026-20841-arbitrary-code-execution-in-the-windows-notepad
Zero Day Initiative — CVE-2026-20841: Arbitrary Code Execution in the Windows Notepad

In this excerpt of a TrendAI Research Services vulnerability report, Nikolai Skliarenko and Yazhi Wang of the TrendAI Research team detail a recently patched command injection vulnerability in the Windows Notepad application. This bug was originally discovered by Cristian Papa and Alasdair Gorniak

Zero Day Initiative
No time to read the blog? Interested in the nuance in this month's release? Or just curious to see if @dustin_childs is still awake in Tokyo? Check out the Patch Report for February, 2026! https://youtu.be/ibKzs_q6OoM
The Patch Report for February 2026

YouTube
Microsoft report six(!) exploits in the wild while Adobe has a small (and relatively quiet) month. Join @TheDustinChilds from Tokyo as he breaks down the release and shows you what to watch for. https://www.zerodayinitiative.com/blog/2026/2/10/the-february-2026-security-update-review
Zero Day Initiative — The February 2026 Security Update Review

I have survived the biggest Pwn2Own ever, but I’m back in Tokyo for the second Patch Tuesday of 2026. My location never stops Patch Tuesday from coming, so let’s take a look at the latest security patches from Adobe and Microsoft. If you’d rather watch the full video recap covering the entire releas

Zero Day Initiative