Storia
luglio 31, 2026
Google’s AI bug bonanza is making Chrome safer — and forcing updates to speed up
Google announced that it fixed over 1,000 security bugs in Chrome in June, more than in the previous two years combined. The company attributed the significant increase in its bug-patching rate to the use of internal AI tools for security analysis.
Google says AI has turned Chrome security into a numbers game at industrial scale. The upside is obvious: far more bugs are getting caught. The catch is that the browser’s update machinery may now have to move just as fast as the threat.
In June alone, Google says it fixed 1,072 security bugs across the last two Chrome releases — more than the 1,036 patched in the previous 23 versions combined.1 That eye-popping jump is being framed as proof that internal AI tools are dramatically accelerating vulnerability discovery, not just inside Google but across the industry.
The bullish case is straightforward. As TechCrunch reports, Google argues AI has "fundamentally shifted the economics of cybersecurity," turning bug hunting into an "automated, industrial-scale operation."1 In that view, more bugs found does not mean Chrome is suddenly less secure; it means the company is getting better at uncovering old weaknesses before attackers do. Google also says models like Gemini are helping it "preemptively fix vulnerabilities" and "outpace" adversaries.1
But there is a more anxious reading of the same data. If defenders can use AI to find flaws faster, attackers can too. Ars Technica notes that Google is already responding by rethinking how Chrome ships patches, including pilots for twice-weekly updates and mechanisms that could install fixes with less user friction — even without a full restart in some cases.2 That is less a victory lap than an admission that the old release cadence may not hold in an AI-accelerated threat environment.
The broader pattern matters. Microsoft has also pointed to AI after a spike in security patches, suggesting this is not a Chrome-only anomaly.1 So the real story is not just that Google fixed a record number of bugs. It is that AI may be compressing the entire security cycle: find faster, patch faster, ship faster — or fall behind.2