# Calif Research Claims AI-Assisted WeWorm Zero-Click WeChat Worm

DevFeed: [Calif Research Claims AI-Assisted WeWorm Zero-Click WeChat Worm](<https://devfeed.tech/articles/quoting-calif-research-31157.md>)

Original publisher: [Read original article](<https://simonwillison.net/2026/Sep/10/calif-research/>)

Author: Simon Willison

Published: 2026-09-10T00:56:41Z

Content type: news

Language: en

Sources: [Simon Willison's Weblog](<https://devfeed.tech/sources/simon-willison-s-weblog.md>)

Topics: [ai security](<https://devfeed.tech/topics/ai-security.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Android](<https://devfeed.tech/topics/android.md>), [iOS](<https://devfeed.tech/topics/ios.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-2-236](<https://devfeed.tech/tags/ai-2-236.md>), [ai-security-research](<https://devfeed.tech/tags/ai-security-research.md>), [ai-security-research-42](<https://devfeed.tech/tags/ai-security-research-42.md>), [generative-ai](<https://devfeed.tech/tags/generative-ai.md>), [generative-ai-1-982](<https://devfeed.tech/tags/generative-ai-1-982.md>), [llms](<https://devfeed.tech/tags/llms.md>), [llms-1-948](<https://devfeed.tech/tags/llms-1-948.md>), [security](<https://devfeed.tech/tags/security.md>), [security-634](<https://devfeed.tech/tags/security-634.md>)

## AI overview

A post quoting Calif Research's claims about a WeWorm demo: a zero-click worm targeting WeChat calls on iOS and Android. The quoted researchers say AI helped them find a bug and develop a remote code execution exploit.

## Source excerpt

Today, we're releasing a demo of WeWorm, the first zero-click worm to spread through WeChat calls across iOS and Android. [...] The victim does not need to answer the call, or interact with their phone at all. Even if they do answer, they hear nothing, and the exploit still succeeds. [...] Working with AI, our team found the bug and wrote the first remote code execution (RCE) exploit in about two days. Building the worm took one more week. A worm at this scale used to be the kind of thing that took a larger team months. AI can already do most of the work here. Our team provided the judgment about what to target and how to test it safely. -- Calif Research, WeWorm Tags: ai-security-research, ai, llms, security, generative-ai