Informational impact3/100
AI confidence8/100
Risk contextMediumOperational, security or regulatory context
AI-ASSISTED
Verify with sourceStory summary
A Milan-based startup claims it discovered a full-takeover vulnerability in macOS using ChatGPT, but was unable to report it to Apple because it hit Apple's new submission cap. The flaw is described as a $200K exploit that remained unreported due to the submission limit.
Why it matters
The story highlights potential gaps in vendor vulnerability disclosure processes, particularly as AI tools become more prevalent in security research. It raises questions about how submission caps may affect timely reporting of critical flaws.
Key points
- Milan startup found macOS full-takeover flaw using ChatGPT
- Apple's new submission cap prevented the flaw from being reported
- The exploit is valued at approximately $200K
- The vulnerability remained unreported due to the cap
Supported by supplied text
- A Milan startup claims it found a full-takeover flaw in macOS using ChatGPT
- Apple has a new submission cap
- The startup hit the submission cap before it could file the flaw
- The flaw is described as a $200K exploit
Not established
- Whether the vulnerability actually exists or was independently verified
- The technical details of the exploit
- Whether Apple has acknowledged or responded to the claim
- The exact nature and scope of Apple's submission cap
Market context: unknown
AI output is based only on the stored feed text and may be incomplete or incorrect. It is not investment advice. Verify important claims at the original source.





