I found a WordPress RCEs with GPT5.6 and $25

Other: AI-powered security research(slcyber.io)view on HackerNews
AI-powered security researchOpenAI GPT5.6 Sol UltraWordPress RCEbatch API validation bugmalicious changesetsecurity researchvulnerability discovery.

Author: infosecau

Date: 7/20/2026

Article Summary:
A security researcher used OpenAI's GPT5.6 Sol Ultra to discover a pre-authentication RCE in WordPress by adapting a prompt from OpenAI, and then used the same model to escalate the vulnerability to RCE. The researcher found a bug in the batch API validation process, and then used the model to craft a payload that exploited the bug and executed a malicious changeset.