# The day after the zero-days

DevFeed: [The day after the zero-days](<https://devfeed.tech/articles/the-day-after-the-zero-days-10852.md>)

Original publisher: [Read original article](<https://blog.apnic.net/2026/08/28/the-day-after-the-zero-days/>)

Author: Niels Provos

Published: 2026-08-28T04:42:57Z

Content type: opinion

Language: en

Sources: [APNIC Blog](<https://devfeed.tech/sources/apnic-blog.md>)

Topics: [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Orchestration](<https://devfeed.tech/topics/orchestration.md>), [Security](<https://devfeed.tech/topics/security.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Code](<https://devfeed.tech/topics/code.md>), [spoofing](<https://devfeed.tech/topics/spoofing.md>), [anthropic](<https://devfeed.tech/topics/anthropic.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Frontier Model](<https://devfeed.tech/topics/frontier-model.md>)

Tags: [agent](<https://devfeed.tech/tags/agent.md>), [ai](<https://devfeed.tech/tags/ai.md>), [anthropic](<https://devfeed.tech/tags/anthropic.md>), [guest-post](<https://devfeed.tech/tags/guest-post.md>), [model](<https://devfeed.tech/tags/model.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [security](<https://devfeed.tech/tags/security.md>), [spoofing](<https://devfeed.tech/tags/spoofing.md>), [tech-matters](<https://devfeed.tech/tags/tech-matters.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>), [workflow](<https://devfeed.tech/tags/workflow.md>)

## AI overview

The article reflects on three decades of vulnerability research, contrasting a historically manual TCP source-routing spoofing discovery with an AI-assisted discovery of a long-standing OpenBSD kernel bug. It argues that vulnerability discovery is primarily an orchestration problem, demonstrates the capability with the open-source IronCurtain framework and several language models, and warns that defenders and attackers should assume capability parity.

## Source excerpt

Guest Post: Patching faster cannot keep up with AI-driven discovery. Leverage structural invariants to make bug classes irrelevant.