vulnerability-detection

Tag

Cards List
#vulnerability-detection

@XAMTO_AI: A two-person security team used AI to find real vulnerabilities in code and earned $250,000 from a single bounty. Now they've open-sourced the system as Open-Kritt. It's not a toy that throws a repo at an AI to search blindly; it's an orchestration platform that turns AI agents into a small security team. Most people just hand an AI a…

X AI KOLs Timeline · 2026-08-02 Cached

Open-Kritt is an open-source security research platform that orchestrates multiple AI agents to analyze code in parallel, automating discovery of real vulnerabilities, and supports deduplication, validation, and prioritization. The team behind it has used it to earn significant bounties and win the Firedancer audit contest.

0 favorites 0 likes
#vulnerability-detection

@lqiao: Open weights are a defender's advantage. dfs-large1 from @depthfirstlabs matches frontier-model performance on vulnerab…

X AI KOLs Timeline · 2026-07-30 Cached

A tweet highlights DepthFirst Labs' new cybersecurity model dfs-large1, which matches frontier-model performance on vulnerability discovery, built on the open GLM-5.2 model with RL post-training on Fireworks AI, arguing that open weights are a defender's advantage.

0 favorites 0 likes
#vulnerability-detection

@Cisco: Why #OpenSource? We're building models to help find vulnerabilities faster. Learn why the U.S. must lead in open-source…

X AI KOLs Timeline · 2026-07-29 Cached

Cisco president Jeetu Patel discusses the importance of open-source AI for building models to find vulnerabilities faster, and shares insights on AI inference trends and cost optimization.

0 favorites 0 likes
#vulnerability-detection

)

TLDR AI · 2026-07-28 Cached

Vercel releases DeepsecBench, a benchmark for evaluating AI models' ability to find cybersecurity vulnerabilities in application code, with findings that open-weight models are becoming more cost-effective for security scanning.

0 favorites 0 likes
#vulnerability-detection

@linuxfoundation: AI is reshaping open source security in two directions. LF Research SVP Hilary Carter on faster vulnerability detection…

X AI KOLs Timeline · 2026-07-27 Cached

AI is transforming open source security by enabling faster vulnerability detection while also introducing new risks through 'vibe coding' that can reintroduce insecure code; Linux Foundation's Hilary Carter discusses this duality.

0 favorites 0 likes
#vulnerability-detection

@GoogleDeepMind: By combining speed and efficiency, 3.5 Flash Cyber lets defense specialists check significantly more code paths. In tes…

X AI KOLs · 2026-07-23 Cached

Google DeepMind's 3.5 Flash Cyber model enables defense specialists to check more code paths and detect complex vulnerabilities missed by standard models, as tested on Google Chrome and Android codebases.

0 favorites 0 likes
#vulnerability-detection

@ash_csx: It’s a lie that only large (closed) can detect cybersecurity vulnerabilities. Basically just part of a narrative meant …

X AI KOLs Timeline · 2026-07-22 Cached

Cisco released Antares, a family of small language models (350M-3B parameters) for detecting cybersecurity vulnerabilities, challenging the narrative that only large closed models can do so.

0 favorites 0 likes
#vulnerability-detection

@OpenAI: Here's how to add the Codex Security plugin in Codex and get started: Add the plugin in Codex. After installation is co…

X AI KOLs · 2026-07-17 Cached

OpenAI's GPT-5.6 Sol achieves state-of-the-art on a cybersecurity benchmark, and the new Codex Security plugin helps teams find, validate, and fix vulnerabilities in real code. This article provides a step-by-step guide to installing and using the plugin in Codex.

0 favorites 0 likes
#vulnerability-detection

Introducing Gemini 3.5 Flash Cyber

Google DeepMind Blog · 2026-07-17 Cached

Google introduces Gemini 3.5 Flash Cyber, a lightweight cybersecurity model fine-tuned for automated vulnerability discovery and patching, offering cost-efficient performance competitive with larger models.

0 favorites 0 likes
#vulnerability-detection

Mantis Skills: Portable Toolkit for Building Security Review Harnesses (GitHub Repo)

TLDR AI · 2026-07-14 Cached

Mantis Skills is a portable toolkit from Google for building security review harnesses using coding agents, enabling automated vulnerability detection, reproduction, and patching across various codebases.

0 favorites 0 likes
#vulnerability-detection

Monetize your OpenClaw

Reddit r/openclaw · 2026-07-12

A new product called CYPHES enables users to monetize their OpenClaw hardware and agents by creating an autonomous labor market focused on cybersecurity vulnerability detection and exploit alerting.

0 favorites 0 likes
#vulnerability-detection

@apivixtls: After reading this article, what I really noticed is not which model is more powerful. The author ran a series of actual security research tests using AI. Semgrep found nothing directly. Strix connected to GLM 5.1 ran for 12 hours, spent nearly 60 million tokens, and still didn't catch the key vulnerability. Cursor with GPT 5.5…

X AI KOLs Timeline · 2026-07-02 Cached

A security researcher tested four AI approaches (Semgrep, GLM 5.1+Strix, Cursor+GPT 5.5, local AI with custom harness) to find a known LFI vulnerability in PHPIPAM. Only the local AI harness consistently succeeded, demonstrating that the harness methodology matters more than the model, and highlighting advantages of local AI for cost, privacy, and flexibility in security research.

0 favorites 0 likes
#vulnerability-detection

@devindesktop: Learn more about our latest launch from Devin Cloud: Security Swarm, powered by Agentic MapReduce. Hand off your findin…

X AI KOLs Following · 2026-07-01 Cached

Devin Cloud launches Security Swarm, using Agentic MapReduce to find security vulnerabilities in codebases, with remediation and fleet management in the Desktop app.

0 favorites 0 likes
#vulnerability-detection

@geekbb: Use Multi-Agent to automatically run the entire CVE mining process, from selecting projects, reviewing code, verifying vulnerabilities to generating ready-to-submit vulnerability reports. https://github.com/larlarua/AutoCVE…

X AI KOLs Timeline · 2026-06-30 Cached

AutoCVE is an open-source tool that uses multi-agent collaboration to automatically complete the entire process from project screening, code audit, vulnerability verification to generating CVE reports, supporting one-click CVE vulnerability mining.

0 favorites 0 likes
#vulnerability-detection

@FinanceYF5: So, either GLM 5.2 is stronger than outsiders think, or the rumors circulating now are misleading. According to WSJ, Zhipu AI's GLM-5.2 can match top US models in certain vulnerability discovery scenarios; and China's 360 Security says its new Tulongf…

X AI KOLs Following · 2026-06-29 Cached

According to a WSJ report, Zhipu AI's GLM-5.2 can match top US models in vulnerability discovery scenarios; 360 Security's new tool Tulongfeng is also comparable to Anthropic's Mythos.

0 favorites 0 likes
#vulnerability-detection

We have Mythos at Home: GLM 5.2 beats Claude in our Cyber Benchmarks

Lobsters Hottest · 2026-06-28 Cached

An open-weight model, GLM 5.2 from Zhipu AI, beats Claude Code in IDOR detection benchmarks at a fraction of the cost, though it still trails Semgrep's purpose-built multimodal pipeline. The article explores how much of vulnerability-detection performance comes from the model versus the harness around it.

0 favorites 0 likes
#vulnerability-detection

@FinanceYF5: 2/ First, look at the numbers Codex Security delivered in three months: 【Scanned 30,000 code repositories】 【Scanned over 30 million commits】 【Over 500,000 vulnerabilities fixed】 This is since the research preview went online in March. At this speed, manual work simply cannot keep up.

X AI KOLs Following · 2026-06-23 Cached

Codex Security has scanned 30,000 code repositories, over 30 million commits, and fixed over 500,000 vulnerabilities in three months, demonstrating the efficiency of AI automation.

0 favorites 0 likes
#vulnerability-detection

@FinanceYF5: 1/AI finding vulnerabilities is no longer the bottleneck. The bottleneck now is: found, but no one fixes. OpenAI today launched the Daybreak expansion plan, aiming to automate patching with AI. A thread to explain clearly

X AI KOLs Following · 2026-06-23 Cached

OpenAI launches Daybreak expansion plan, aiming to automate vulnerability fixes with AI, addressing the current bottleneck in security where vulnerabilities are found but no one fixes them.

0 favorites 0 likes
#vulnerability-detection

Anthropic's open-source framework for AI-powered vulnerability discovery

Hacker News Top · 2026-06-04 Cached

Anthropic has released an open-source reference implementation for autonomous vulnerability discovery and remediation using Claude, featuring a full pipeline (recon → find → verify → report → patch) with sandboxing support. It accompanies Claude Security, a hosted product for managing vulnerabilities across codebases.

0 favorites 0 likes
#vulnerability-detection

@_mattata: Anthropic released a pretty clean code auditing harness for identifying bugs with potential security implications. It’s…

X AI KOLs Timeline · 2026-06-04 Cached

Anthropic released an open-source code auditing reference harness for autonomous vulnerability discovery and remediation using Claude, covering a recon→find→triage→report→patch pipeline, primarily targeting C/C++ memory vulnerabilities. It is a template/reference implementation rather than a production-ready product, with a managed hosted option called Claude Security also available.

0 favorites 0 likes
Next →
← Back to home

Submit Feedback