Pwn2Own Ireland 2026 Day One: Seven of 20 Listed Entries Were Collisions, and OpenAI Codex Fell to Argument Injection
Security / news
Pwn2Own Ireland 2026 Day One: Seven of 20 Listed Entries Were Collisions, and OpenAI Codex Fell to Argument Injection
Samsung's Galaxy S26 was hit three times, Sonos and Philips Hue each twice or more, and a Google Pixel 10 attempt ran out of time. Vendors get 90 days before details go public.

Pwn2Own Ireland 2026 opened on October 6 with 15 successful attempts and 5 failures among the 20 entries listed in the Zero Day Initiative's day-one results post. Seven of the successes were collisions, meaning the researcher used a bug the vendor or another entrant already had, which cut the payout. The post's own intro says 21 entries took the stage, so one row is missing from the version this report read.
The most consequential single result for developers was OpenAI Codex. Ikotas Labs Inc. earned $40,000 and 4 Master of Pwn points for an argument injection bug in it, according to ZDI.
Payouts by target
Summing ZDI's rows by target gives the picture below. The 20 listed rows total $368,500. BleepingComputer reports $388,500 and 32 zero-days for the day, a $20,000 gap that is consistent with the missing 21st entry but which neither source explains.
- Sonos Era 30068K USD
- Philips Hue Bridge Pro58K USD
- Samsung Galaxy S2658K USD
- LiteLLM55K USD
- OpenAI Codex40K USD
- Oracle Autonomous AI Database40K USD
- Lexmark CX532adwe30K USD
- Garmin Index BPM20K USD
Source: Zero Day Initiative, Pwn2Own Ireland 2026 Day One Results, accessed 2026-10-06
Clean wins, collisions and failures
Eight entries were clean successes. McCaulay Hudson (@_McCaulay) took $50,000 for the Sonos Era 300, Taisic Yun of Xint took $40,000 for LiteLLM, and VinSOC took $40,000 each for the Philips Hue Bridge Pro and the Oracle Autonomous AI Database. BleepingComputer says the Hue Bridge Pro result chained seven zero-days and the Oracle result five.
The collisions are where payouts shrank. Nguyen Thanh Dat of Viettel collected $31,250 on the Galaxy S26, Interrupt Labs $15,750 and Ikotas Labs $11,000 on the same phone. A second LiteLLM entry from Out of Bounds paid $15,000, against $40,000 for the clean one.
The five failures were the Brother MFC-L8970CDW (Ikotas Labs), the Lexmark CX532adwe (Team T-X Lab), the Garmin Index BPM (Aaron Christophel of Summoning Team), the Google Pixel 10 (White Noise Club) and Chroma (VinSOC). The Pixel team could not get its exploit working in the time allowed, ZDI wrote.

What happens to the bugs
Pwn2Own is run by ZDI, and BleepingComputer says vendors get 90 days to patch before the details are made public. None of the day-one bugs has a CVE or a vendor fix in the sources read, so nobody running these products can act yet beyond keeping them updated.
The Pixel 10 attempt is worth setting beside the site's earlier report that GrapheneOS says the Pixel 11 lacks memory tagging: a failed entry is not proof of hardening, only of one team's time limit. The Codex result sits beside OpenAI's own rating of GPT-6.1 Sol as Critical in cybersecurity, a reminder that agent tooling is now a target class in its own right.
Day two follows, and the next dated milestone is the end of the 90-day window for each bug.
Sources
More in Security
- 01Atlassian CVE-2026-21589: A 9.3 File-Access Flaw Hits Every Data Center Version of Eight ProductsAn unauthenticated request can read a file from the web root if the attacker already knows its exact path. Atlassian reports no exploitation and has released fixes for each product line.
- 02WordPress CVE-2026-87902: A Page-Template Bug in Every Release Since 4.7, Patched in 7.1.2The 9.2 rating describes a file include; code execution needs a theme folder starting with page- and a PHP setting, but probes began five hours after the patch.
- 03Citrix's September 27 NetScaler Fix Does Not Cover CVE-2026-88779, Now on CISA's Exploited ListBuilds that closed two exploited zero-days stay vulnerable to a SAML flaw that CISA added on October 4 with a three-day deadline.
- 04FortiMail CVE-2026-104286: Exploited 9.8 Flaw Lets Unauthenticated Requests Write FilesFortinet's advisory lists a workaround and fixed builds for three release branches; the 7.2 branch gets none.