惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
罗磊的独立博客
雷峰网
雷峰网
量子位
V
Visual Studio Blog
Vercel News
Vercel News
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
The Cloudflare Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
宝玉的分享
宝玉的分享
月光博客
月光博客
Martin Fowler
Martin Fowler
aimingoo的专栏
aimingoo的专栏
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Microsoft Security Blog
Microsoft Security Blog
博客园 - 叶小钗
腾讯CDC
Engineering at Meta
Engineering at Meta
博客园 - Franky
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Y
Y Combinator Blog
Recent Announcements
Recent Announcements
Jina AI
Jina AI
A
About on SuperTechFans

Help Net Security

FIDO Alliance wants to keep AI agents from going rogue on online payments Police arrest 10 suspected members of Black Axe cybercrime gang ShinyHunters claims it stole 1.4 million records from Udemy Sevii unveils Cyber Swarm Defense Mode to stop AI-driven attacks at scale Alleged Chinese hacker extradited to US over cyberattacks targeting COVID-19 research Cequence Agent Personas bring granular control and governance to enterprise AI agents NowSecure MARI gives enterprises evidence-based visibility into third-party mobile app risk The metrics killing your SOC, and what to use instead US state privacy fines reached $3.425 billion in 2025 Canada’s first SMS blaster case leads to three arrests Linux storage management tool Stratis 3.9.0 adds online encryption and cache-less pool startup TLS Connect gives SMBs a right-sized automated tool to manage TLS certificates Aptori expands its platform with autonomous offensive testing to reduce security bottlenecks Your IAM was built for humans, AI agents don’t care The AI criminal mastermind is already hiring on gig platforms 25 open-source cybersecurity tools that don’t care about your budget Product showcase: LuLu reveals unauthorized outbound connections from Mac apps Week in review: Claude Mythos finds 271 Firefox flaws, Vercel breach Users advised to drop passwords and make room for passkeys - Help Net Security Indirect prompt injection is taking hold in the wild - Help Net Security Compromised everyday devices power Chinese cyber espionage operations - Help Net Security New Cisco firewall malware can only be killed by pulling the plug - Help Net Security Meta is overhauling how you sign in, manage settings, and protect your accounts - Help Net Security Ubuntu 26.04 LTS delivers memory-safe system tools and live patching for Arm servers - Help Net Security OpenAI’s GPT-5.5 is out with expanded cybersecurity safeguards - Help Net Security AI is speeding up nation-state cyber programs - Help Net Security A study of 1,000 Android apps finds a privacy policy logging gap - Help Net Security IT spending to hit $6.31 trillion record, thanks to AI - Help Net Security Where AI in CI/CD is working for engineering teams - Help Net Security With AI's help, North Korean hackers stumbled into a near-undetectable attack - Help Net Security
Aqua Compass MCP server enables real-time investigation a...
Industry New · 2026-04-23 · via Help Net Security

Aqua Security has announced Aqua Compass, a Model Context Protocol (MCP) server that enables agentic investigation, containment and remediation of runtime incidents, and new runtime risk dashboards. These capabilities help security teams move beyond identifying risk and focus on containing threats in running applications.

The announcement builds on Aqua’s Secure AI capabilities, extending the company’s AI innovation from protecting AI applications to applying AI directly to runtime security operations.

Cloud native development and AI-generated code are dramatically increasing the number of vulnerabilities reaching production environments, while attackers are automating exploitation and compromising systems within minutes. Many organizations now face a growing problem: They can see the risk, but they cannot fix it fast enough.

Aqua Compass addresses this challenge by introducing an MCP server embedded directly within Aqua’s runtime security workflows. Through the MCP interface, customers can build AI agents that interact with Aqua’s runtime intelligence and enforcement controls without leaving the environments they already operate in. These agentic workflows enable teams to move from alert to action in seconds, as agents analyze activity, contain vulnerabilities, recommend remediation steps, and support execution with a human in the loop to oversee decisions and maintain control without slowing the response.

Aqua Compass is able to analyze live malware attacks inside a containerized workload, identify the malicious behavior, and recommend specific steps to isolate the compromised pod. The workflow then generates a hardened runtime policy scoped to the affected namespace, immediately blocking similar behavior. Compass enables teams to respond with the speed and precision typically associated with highly experienced analysts.

As security teams rapidly shift toward agentic automation to stay ahead of attackers, organizations can begin building security agents on top of Aqua Compass today.

“The industry spent the last decade building visibility into cloud environments, but visibility alone does not stop attacks,” said Mike Dube, CEO of Aqua Security.

“Vulnerabilities are being exploited faster than organizations can remediate them, which means the old model is becoming obsolete. The future of cloud is autonomous runtime security. With more than a decade of embedding enforcement directly inside production workloads and patented innovations in runtime security, Aqua is uniquely positioned to secure cloud native environments today and into the future,” Dube continued.

Alongside Compass, Aqua also introduced a new suite of runtime risk dashboards that convert vulnerabilities and misconfigurations into customer-quantified monetary exposure. As runtime controls are enforced, that exposure is continuously recalculated, allowing security teams to measure how risk is being reduced in production environments.

By correlating runtime activity, vulnerabilities, and enforcement outcomes, the dashboards translate Aqua’s runtime telemetry into operational metrics that show where risk exists and which controls are having the greatest impacts.

These capabilities are made possible by Aqua’s runtime visibility and enforcement architecture, developed over more than eleven years of securing containerized applications in production. Aqua’s agent-based enforcement operates directly inside running workloads, providing sophisticated runtime telemetry and enabling patented enforcement techniques that stop exploitation in real time.

Combined with adversary intelligence from Aqua’s Nautilus research team and telemetry from millions of protected workloads, this foundation allows Aqua to translate runtime activity into meaningful risk insights through its dashboards while enabling Compass to investigate attacks and generate containment policies that can be enforced immediately in production environments.