Skip to main content
See every side of every news story
Published loading...Updated

Google: Spyware Vendors, China-Linked Spies Led 0-Day Abuse

Google Threat Intelligence Group tracked 90 zero-day exploits in 2025, with 48% targeting enterprise security and networking devices lacking endpoint detection and response coverage.

  • Last year, Google Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in the wild, a 15% rise from 2024 and split into 47 end-user and 43 enterprise hits.
  • Commercial surveillance vendors such as NSO Group, Intellexa, and Candiru led the shift as attackers focused on enterprise infrastructure including edge devices, security appliances, and networking equipment.
  • GTIG attributed 42 of the zero-days to identifiable actor types, including 15 exploited by CSVs, while Microsoft was the top vendor hit with 25 zero-days last year.
  • About half of the exploited bugs affected protective devices, impacting Harvard University and Envoy; GTIG mitigation recommendations include reducing attack surfaces and rapid patching.
  • Google reports that memory-safety issues accounted for 35% of exploited zero-day vulnerabilities last year, with nine zero-days exploited by financially motivated actors, and Sadowski said, 'In particular, PRC-nexus espionage groups exploited the highest number of enterprise tech zero-days we attributed.
Insights by Ground AI

14 Articles

Google has just released its annual report on zero-day faults. In 2025, its intelligence team counted 90 exploited vulnerabilities before being corrected. Nearly half were for corporate equipment, a record, and spyware sellers are ranked first. 90 faults, 43 against companies The Google Threat Intelligence Group followed 90 zero-day faults exploited in nature in 2025, compared to 78 in 2024 and 100 in 2023. The overall figure remains within the …

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in on Thursday, March 5, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal