Commodity AI Exploits 84% of CISA KEVs in Under an Hour — Your Patch Window Just Collapsed to Zero
The Data That Changes Your Planning Assumptions
Sequoia-backed cybersecurity startup Buzz published research this week demonstrating that an AI agent — assembled from off-the-shelf Anthropic, OpenAI, and Google models — autonomously exploited 103 of 122 CISA Known Exploited Vulnerabilities without human oversight. Most completed in under an hour. React2Shell, one of 2025's most dangerous flaws, fell in 22 minutes.
This is not Mythos. This is not a restricted frontier model behind a $100M consortium. This was built with commodity API access anyone can purchase today. Co-founders Niv Hoffman and Yair Saban fed the AI agent CISA's public KEV catalog — the same list designed to help defenders prioritize patching — and the agent treated it as a machine-readable target list.
"We're now in this gap where attackers are by default early adopters of AI, and defenders by default aren't — they're risk averse, don't want to touch production much, and that definitely needs to change." — Niv Hoffman, Buzz co-founder
The Exploitation Speed Asymmetry
| Metric | AI Agent (Buzz) | Human Attacker | Defender (Patch) |
|---|---|---|---|
| KEV Exploitation Rate | 84.4% (103/122) | Variable, skill-dependent | N/A |
| Time to Exploit | Under 1 hour (most) | Several days | Days to weeks to patch |
| React2Shell | 22 minutes | Days | Days to weeks |
| Skill Barrier | API key | Advanced skills | Sysadmin + change mgmt |
| Scalability | Massively parallel | Limited by headcount | Limited by headcount |
Separately, the Internet Bug Bounty program paused new submissions this week, explicitly citing that AI-assisted research "radically lowered the cost of vulnerability discovery." The economics of offense have collapsed. Chevron CISO Jon Raper put it bluntly: "Finding vulnerabilities isn't the problem — it's remediating them in time."
The CISA KEV Catalog Paradox
CISA built the KEV catalog to help defenders prioritize. It now equally functions as an AI-readable attack playbook. Buzz literally fed it to their agent. This doesn't mean CISA should stop publishing — transparency still helps — but the window between KEV publication and AI-automated exploitation is now measured in minutes, not days.
What This Means for Your Defense Model
When patching speed can never match exploitation speed, your defensive strategy must shift from "patch before exploit" to "contain during exploit." Microsegmentation, behavioral detection, and automated containment become survival controls, not aspirational improvements. The risk of deploying AI-assisted defense imperfectly is now demonstrably lower than the risk of defending at human speed.
What to do
Pull your current CISA KEV patch coverage report and identify every unpatched KEV in production by end of day Friday
Verify React2Shell remediation across all environments including containers and third-party deployments within 48 hours
Accelerate microsegmentation deployment to critical assets this quarter — prioritize identity infrastructure, databases, and CI/CD
Deploy automated host isolation and network quarantine playbooks for known KEV exploitation signatures this month
Brief the board within two weeks: 'AI has compressed exploitation from days to minutes; our defense model assumes days; we need budget to close this gap'