vulnerability-scanning

Tag

Cards List
#vulnerability-scanning

The Era of Software Quality, or the Era of Ostriches?

Lobsters Hottest ↗ · yesterday Cached

GNOME developer Michael Catanzaro argues that AI vulnerability scanning is now essential for maintaining secure, high-quality open-source software, noting that AI-generated vulnerability reports have improved dramatically in 2026 despite still causing issues like verbose or occasionally fabricated reports.

0 favorites 0 likes
#vulnerability-scanning

Suppress vulnerabilities applying Kubernetes context to scans

Hacker News Top ↗ · 2026-09-17 Cached

Vex8s is an experimental tool that generates VEX documents by analyzing Kubernetes security contexts and vulnerability data with an embedded ML model to determine which CVEs are actually exploitable in a cluster.

0 favorites 0 likes
#vulnerability-scanning

"Greg Brockman says OpenAI pointed Astra at its own systems until it ran out of vulnerabilities to find: "We took 25% of our production engineers and said, 'Sorry, all your projects are on hold. You are now defending. You are now up-leveling our security architecture. You're going to use the..."

Reddit r/singularity ↗ · 2026-09-14

Greg Brockman describes how OpenAI used the Astra model to identify and fix critical vulnerabilities in their systems, highlighting a continuous AI-driven security loop and declaring the AGI era.

0 favorites 0 likes
#vulnerability-scanning

@Kanojiyaaakash1: I gave Cline Desktop app a repo with 3 intentional vulnerabilities. Hardcoded password. SQL injection. Shell injection.…

X AI KOLs Following ↗ · 2026-09-14 Cached

The tweet demonstrates how Cline Desktop, an open-source app for open-weight models, automatically scanned and fixed intentional vulnerabilities in a codebase using a scheduled agent, showcasing AI coding agents as autonomous teammates.

0 favorites 0 likes
#vulnerability-scanning

I Let an AI Agent Hack All My Gadgets—and I’d Do It Again

Wired ↗ · 2026-09-09 Cached

The author experimented with a de-aligned AI agent from Abliteration AI to hack their own home network, uncovering vulnerabilities and exploring implications for AI-driven cybersecurity threats and defenses.

0 favorites 0 likes
#vulnerability-scanning

The Powerful Chinese Model Experts Warned About—and Waited for—Is Here

Wired ↗ · 2026-08-18 Cached

Z.ai has released GLM 5.3, a powerful open-weight AI model for coding and cybersecurity tasks, comparable to leading models from Anthropic and OpenAI, with potential applications in defensive security and concerns about misuse.

0 favorites 0 likes
#vulnerability-scanning

We eliminated 1,400 CVEs in NanoClaw's container images

Hacker News Top ↗ · 2026-08-13 Cached

Echo and NanoClaw collaborated to eliminate 1,400 CVEs in NanoClaw's container images through scanning, patching, and backporting fixes. The article details their agentic hardening process, including safe version bumps and manual patch research.

0 favorites 0 likes
#vulnerability-scanning

@GitHub_Daily: When doing security testing, dozens of vulnerability types like SQL injection, XSS, and SSRF, manually checking each one is very time-consuming. Deep Eye uses AI-driven penetration testing, can integrate with more than 10 model services, and automatically generates test plans. Covers more than 45 vulnerability detection types, first identifying what technology and protection the target site uses...

X AI KOLs Timeline ↗ · 2026-08-13 Cached

Deep Eye is an AI-driven penetration testing tool that can integrate with multiple model services, automatically generate test plans, cover over 45 vulnerability detection types, and support compliance report generation.

0 favorites 0 likes
#vulnerability-scanning

A Filtering engine and DB for unpropagated kernel security patches

Lobsters Hottest ↗ · 2026-07-16 Cached

A filtering engine and database that scans public kernel commits to identify security patches that have not yet been propagated to stable branches, helping developers track potential vulnerabilities.

0 favorites 0 likes
#vulnerability-scanning

@elder_plinius: INTRODUCING: T3MP3ST!!! AUTONOMOUS HACKBOT STRIKE FORCE BRING THE STORM your favorite coding agent is now a full-stack …

X AI KOLs Timeline ↗ · 2026-07-05 Cached

T3MP3ST is an open-source harness that turns AI coding agents like Claude Code and Codex into autonomous red team tools, achieving high pass rates on security benchmarks and real CVE detection.

0 favorites 0 likes
#vulnerability-scanning

Introducing Devin Security Swarm (3 minute read)

TLDR AI ↗ · 2026-07-03 Cached

Cognition introduces Devin Security Swarm, a new tool for finding security vulnerabilities using an Agentic MapReduce architecture, achieving higher accuracy and lower cost than alternatives.

0 favorites 0 likes
#vulnerability-scanning

@charliermarsh: Announcing uv audit: native support for vulnerability scanning across your project's dependencies

X AI KOLs Following ↗ · 2026-06-16 Cached

Charlie Marsh announces uv audit, a native vulnerability scanning feature for project dependencies in the uv package manager.

0 favorites 0 likes
#vulnerability-scanning

@PrajwalTomar_: You don't understand how BIG this is. The same OWASP security audit that used to take a consultant 3 days now happens i…

X AI KOLs Following ↗ · 2026-05-29 Cached

AI can now complete OWASP security audits in 30 seconds instead of three days, using a single prompt to identify vulnerabilities like SQL injection, XSS, and broken authentication.

0 favorites 0 likes
#vulnerability-scanning

Welcome to the Strip Mining Era of OSS Security

Hacker News Top ↗ · 2026-05-15 Cached

The article discusses the rise of LLM-powered automated vulnerability scanning for open source code, leading to a significant increase in security reports, and coins this trend as the 'strip mining era of open source security'. It highlights the shift in both volume and quality of reports observed by Metabase and others starting in early 2026.

0 favorites 0 likes
#vulnerability-scanning

Mythos finds a curl vulnerability

Lobsters Hottest ↗ · 2026-05-11 Cached

Daniel Stenberg reports that Anthropic's Mythos AI model identified a vulnerability in curl, highlighting the growing role of advanced AI in security auditing while noting initial access hurdles via the Linux Foundation.

0 favorites 0 likes
#vulnerability-scanning

Defense in Depth: A Practical Guide to Python Supply Chain Security

Lobsters Hottest ↗ · 2026-04-19 Cached

A practical guide to securing Python supply chains through layered defenses including linting with Ruff, dependency pinning with hashes, vulnerability scanning with pip-audit, SBOM generation, and Trusted Publishing with OIDC attestations.

0 favorites 0 likes
#vulnerability-scanning

aquasecurity/trivy

GitHub Trending (daily) ↗ · 2026-06-03 Cached

Trivy is a comprehensive, open-source security scanner by Aqua Security that detects vulnerabilities, misconfigurations, secrets, and license issues across containers, filesystems, git repos, and Kubernetes.

0 favorites 0 likes
← Back to home

Submit Feedback