Quoting Calif Research

Simon Willison's Blog News

Summary

Calif Research demos WeWorm, a zero-click worm spreading through WeChat calls, with AI enabling rapid exploit development.

No content available
Original Article
View Cached Full Text

Cached at: 09/10/26, 02:14 AM

# A quote from Calif Research Source: [https://simonwillison.net/2026/Sep/10/calif-research/](https://simonwillison.net/2026/Sep/10/calif-research/) 10th September 2026 > Today, we're releasing a demo of WeWorm, the first zero\-click worm to spread through WeChat calls across iOS and Android\. \[\.\.\.\] The victim does not need to answer the call, or interact with their phone at all\. Even if they do answer, they hear nothing, and the exploit still succeeds\. \[\.\.\.\] Working with AI, our team found the bug and wrote the first remote code execution \(RCE\) exploit in about two days\. Building the worm took one more week\. A worm at this scale used to be the kind of thing that took a larger team months\. AI can already do most of the work here\. Our team provided the judgment about what to target and how to test it safely\. —[Calif Research](https://calif.io/research/weworm),WeWorm

Similar Articles

AI Worming through Word

Simon Willison's Blog

Håkon Måløy discovered a prompt injection variant that turns into a self-replicating worm in Microsoft Word's Copilot, propagating hidden instructions across documents. Microsoft had 144 days to fix but no full mitigation.

Adaptive Agentic Worms (8 minute read)

TLDR AI

Researchers have demonstrated adaptive computer worms powered by open-weight LLMs that can generate target-specific attacks and self-replicate, using stolen compute to evade conventional AI safeguards.

The First AI Worm

Reddit r/AI_Agents

The article describes Rook, a portable bug hunting harness that could be repurposed as an AI worm, capable of self-modification and autonomous reasoning. The author warns that such AI worms are inevitable and defenders should prepare now.