A researcher finds a WordPress RCE for $500,000 with GPT-5.6 for $25

Ongoing story : Accès contrôlé aux modèles de pointe : habilitation, clés matérielles, juridictions· Part 2/3

Security & TrustSubscribers only 20 h ago8Add to bookmarks

A researcher finds a WordPress RCE for $500,000 with GPT-5.6 for $25
Illustration : Léa Fontaine

The marginal cost of discovering a critical exploit falls below the threshold of an evening of research - the discovery/reward market ratio explodes.

In plain terms. A security researcher (slcyber) claims to have found a remote code execution (RCE) on a WordPress component by prompting GPT-5.6 for approximately $25 in tokens. This type of vulnerability is traded around $500,000 among zero-day brokers. The market premium to discovery cost ratio is now disproportionate - and this is a concrete case that fuels the "controlled access to frontier models" thesis.

Context

The market for critical exploits on large-scale ecosystems (WordPress ~40% of the web) has been structured for years: Zerodium, Crowdfense, and a handful of private brokers publicly quote six-figure bounties for RCEs. Automated fuzzing on PHP code is not new. What is new: the reasoning of an LLM on complex call chains and cross-cutting invariants, precisely where deterministic tools stumbled. The slcyber demonstration comes the same week as the implementation of mandatory hardware passkeys by OpenAI Trusted Access for Cyber (September 1, 2026) - the timing is no longer coincidental.

The Data

  • Market premium claimed in the article: ~$500,000 (historical base Zerodium/brokers on critical WordPress RCE).
  • OpenAI cost of the claimed session: ~$25.
  • Model: GPT-5.6.
  • Technical publication: slcyber.io, 2026-07-20.

Analysis

Three signals combine. First, the variable cost of LLM-assisted auditing falls below that of a monthly subscription - not below the threshold of serious human effort. Second, the WordPress surface remains structurally porous: thousands of plugins, random patch cycles, cross-cutting dependencies. Finally, demand from brokers does not adjust to supply in the short term: as long as the exploitation window remains open, the premiums hold. The direct consequence for frontier access control: the "no offensive security" usage policy becomes ineffective - a researcher with a standard key does what they did yesterday with a pro cybersec budget.

Scenarios

  • Central (60%): The discovery remains isolated over 30 days but triggers a wave of comparable demonstrations; brokers quietly lower their premiums on "LLM-tractable" vulnerabilities.
  • Positive (25%): LLM vendors harden their usage policies on "offensive code" patterns and require specific clearances; assisted discovery shifts mostly to legitimate bug bounties.
  • Negative (15%): Automation lowers the barrier for private/state actors and CMS patching does not keep up - peak of massive compromises.

Implications

For a CISO, the question is no longer "who can find me an RCE" but "at what cost". For a plugin publisher, internal LLM auditing becomes a hygiene factor, not a plus. For AI platforms, the "usage policy" logic gives way to the "hard access control" logic - hardware key, jurisdiction, verified entity (fil frontier-access-control).

To Watch

  • Automattic's response and potential publication of a CVE.
  • Brokers' price adjustments on "LLM-tractable" segments.
  • Possible extension of an OpenAI-type Trusted Access device to Anthropic / Google.
Content reserved for members

Create a free account to access all our content and the weekly review.

Article produced by artificial intelligence, reviewed under human editorial control.

Our newsroom
Your Linux servers, as a desktop.
TermalOSSponsored
Ops, reimagined

Your Linux servers, as a desktop.

Agentless SSH monitoring, a full remote desktop and an AI ops copilot — no agents to install. Everything stays on your machine.

SSHMonitoringAI Ops
Get early access
Was this article helpful?

8 people liked this article

Like
S
Sofia AdlerSecurity & trust
🇬🇧 AI security, model safety, cyber.
Share:
Comments (8)

Sign in to join the discussion.

EcoWarrior99 21 Jul 2026 · 07:54

AI's role in finding vulnerabilities is exciting, but we must ensure it doesn't outpace our ability to patch them responsibly.

J.P.R. 21 Jul 2026 · 10:14

We need clear guidelines on AI's role in vulnerability disclosure to prevent misuse.

ArtLover88 21 Jul 2026 · 12:56

It's crucial to balance AI's speed in finding flaws with our capacity to fix them ethically.

curio_usa 21 Jul 2026 · 07:40

Incredible how AI is democratizing vulnerability discovery. But what about the potential for misuse by malicious actors?

HistoryBuff 2 21 Jul 2026 · 07:24

This is a significant development. I wonder how AI will change the dynamics of bug bounty programs and the roles of human researchers.

GreenThumb 21 Jul 2026 · 07:12

This is a game-changer. I hope AI can help us find vulnerabilities faster, but I'm concerned about the ethical implications of such powerful tools.

Dr. J. 20 Jul 2026 · 12:56

Wow, that's a huge payout for a vulnerability found with AI. I wonder how secure our websites really are if this is the future of exploitation.

TechSavvy 20 Jul 2026 · 12:35

Interesting find, but I wonder about the long-term implications for cybersecurity jobs if AI can outperform humans so easily.

ArtLover88 20 Jul 2026 · 12:18

This is fascinating, but I wonder how this will impact the vulnerability disclosure process and the relationship between researchers and platforms.

FilmBuffNYC 20 Jul 2026 · 12:10

This is a game-changer. I wonder how long until AI becomes the standard for vulnerability research.

Story timeline

Accès contrôlé aux modèles de pointe : habilitation, clés matérielles, juridictions

  1. 1OpenAI imposes hardware keys on its cybersecurity researchers14/07/2026
  2. 2A researcher finds a WordPress RCE for $500,000 with GPT-5.6 for $2520/07/2026
  3. 3GitHub will require 2FA for all developers who commit by September 2, 2026.20/07/2026
Your Linux servers, as a desktop.
TermalOSSponsored
Ops, reimagined

Your Linux servers, as a desktop.

Agentless SSH monitoring, a full remote desktop and an AI ops copilot — no agents to install. Everything stays on your machine.

Get early access
Topics
Explore
Information