Google's Small AI Identified 55 Security Flaws in V8 Engine
Google DeepMind's new small-scale AI model, Gemini 3.5 Flash Cyber, has identified 55 unique vulnerabilities in the Chrome browser's V8 JavaScript engine, outperforming larger models in the task.

What happened?
Google DeepMind has introduced Gemini 3.5 Flash Cyber, a specialised AI model developed to detect software vulnerabilities. The model identified 55 unique confirmed flaws in the Chrome browser's V8 JavaScript engine. This occurred during a fixed number of queries, where it outperformed both the larger Gemini 3.5 Flash and Claude Opus 4.6.
Key facts
| Antal unika sårbarheter i V8 | 55 |
|---|---|
| Lanseringsdatum | 21 juli 2026 |
| Modellens namn | Gemini 3.5 Flash Cyber |
| Tillgänglighet | Regeringar och betrodda partners via pilotprogram |
”Finding deep-seated flaws requires exploring an immense execution search space. Relying on a single, expensive call to a massive language model can create a bottleneck.”
Why it matters
The achievement is remarkable as it challenges the prevailing view that more complex security tasks require larger and more expensive AI models. Google DeepMind argues that their strategy involving a smaller, specialised model is more efficient, as it avoids bottlenecks that arise when using large models for deep-dive bug hunting.
Who is affected?
This development impacts software developers through improved security testing tools. Companies such as Google benefit from increased system security. Access to the model is restricted to governments and trusted partners, primarily affecting these entities.
What else you should know
The model is not available for general sale, but is instead distributed through a pilot programme to governments and selected partners via the Google CodeMender agent.
Quick answers about this story
Vad har hänt?
När hände det?
Varför spelar det roll?
Vilka bolag berörs?
The link opens in a new window and leads to the publisher's own site.
Källan har spårats automatiskt från utgivaren via Aheadlines signalkedja.
AI-verktyg i artikeln
Topics
Get similar news straight to your inbox
The reader's room
Send in a question or an addition. The newsroom reads everything before it's published and replies when relevant. No AI-generated text – just people.
Sign in to submit a comment or question.
Read the article through your role
- Assess technical risk: model choice, vendor lock-in, data flow and running cost.
- Update the architecture doc if new APIs or regulations touch production.
- Ensure observability + rollback plan before rolling out to production.
Generated angle — not editorial analysis of "Google's Small AI Identified 55 Security Flaws in V8 Engine"