惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
V2EX - 技术
V2EX - 技术
Jina AI
Jina AI
有赞技术团队
有赞技术团队
美团技术团队
月光博客
月光博客
Apple Machine Learning Research
Apple Machine Learning Research
博客园 - 三生石上(FineUI控件)
V
V2EX
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
腾讯CDC
人人都是产品经理
人人都是产品经理
Security Latest
Security Latest
C
CERT Recently Published Vulnerability Notes
P
Privacy International News Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
宝玉的分享
宝玉的分享
罗磊的独立博客
J
Java Code Geeks
博客园 - Franky
V
Vulnerabilities – Threatpost
C
CXSECURITY Database RSS Feed - CXSecurity.com
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
小众软件
小众软件
P
Privacy & Cybersecurity Law Blog
量子位
T
Threatpost
T
Tailwind CSS Blog
V
Visual Studio Blog
C
Cisco Blogs
雷峰网
雷峰网
博客园 - 【当耐特】
T
Tor Project blog
T
The Exploit Database - CXSecurity.com
Simon Willison's Weblog
Simon Willison's Weblog
www.infosecurity-magazine.com
www.infosecurity-magazine.com
博客园_首页
H
Heimdal Security Blog
Security Archives - TechRepublic
Security Archives - TechRepublic
博客园 - 聂微东
爱范儿
爱范儿
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Hugging Face - Blog
Hugging Face - Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
Threat Research - Cisco Blogs
T
Troy Hunt's Blog
H
Hacker News: Front Page
T
Tenable Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint

The New Stack | DevOps, Open Source, and Cloud Native News

Agentic development hinges on verification. For cloud-native software, that is a runtime problem. AI agents need infrastructure: Why Europe’s regional cloud strategy matters Transform your AI coding agent into a deterministic Java Spring expert WeAreDevelopers is coming to the US to give unsung developers a bigger voice Cleaner AI training data, fewer bugs: Sonar’s SonarSweep explained Observability overload is drowning engineers Google’s DiffusionGemma is 4x faster than its other Gemma models Fable 5: Guardrails and burn rate are annoying users, who say it’s still better than Opus 4.8 The Anthropic leader who built Claude Code says he ditched prompting — now he just writes loops. AWS can now mathematically prove your VMs are isolated Microsoft pulled 73 GitHub repos after malware attack — but still won’t say who’s compromised Databricks wants to kill the “email me a file” problem for AI agent skills Ramp bets forward deployed engineers can do what off-the-shelf finance AI can’t Git real: AI agents aren’t just for solo developers anymore Anthropic launches Claude Mythos/Fable 5, but you better try it soon Spring is 23 years old. AI just made it a security emergency. This AI agent startup ditched Anthropic for DeepSeek — and says it’s saving millions When your data model is the bottleneck: lessons from Medium’s feature store How long before we stop reading the code? The tokenmaxxing party is over, and Revenium is mopping up How AI is solving the memory crunch it created Microsoft’s pitch to enterprises: Ditch Azure Repos for GitHub, despite its rocky reliability record Claude Code’s biggest upgrade yet ran 5 agents at once — here’s what happened Why Anthropic just doubled Claude Cowork limits at no charge For years, Apache Cassandra handed this work to your team — 6.0 takes it back “A dangerous combination”: The 2 factors that can “corrupt” AI agent workflows With Foundry, Microsoft bets the enterprise AI battle is about reliability, not capability Microsoft unlocks Visual Studio for developers left behind by its own AI AI teams now deploy 1,000 times a month. Your pipeline wasn’t built for that. Microsoft just made the agent runtime free — and kept everything around it “Whoever builds the most joyous product wins”: The agent war begins Netlify CTO Dana Lawson: Writing code is no longer the job From Jupyter Notebook to production: How to ship AI systems that actually work OpenClaw used Gavriel Cohen’s code and exposed the AI Agent accountability problem Replit shows how vibe coding is getting its own financial stack — and a path to profit Cloudflare aqui-hires VoidZero: Did a piece of the open web just stabilize, or become more brittle? Cursor cuts prices and adds enterprise spend controls amid “tokenomics” reckoning Google Gemma 4 12B nearly matches 26B benchmarks — and runs on your laptop Snowflake thinks it knows what’s really slowing developers down Autonomous agents have met their biggest challenge yet: The database. Why agentic AI makes the ops platform the most important layer in the enterprise How to dramatically improve enterprise security alert tuning to battle cyberattacks Why the need for humans won’t disappear in the age of autonomous databases How to secure Kubernetes in the age of AI workloads Asana says its new AI “chief of staff” turns your Slack chaos into trackable work Nvidia’s best model is now live Mate Security’s Asaf Wiener made every backend engineer a model router. He’s right to. The AI cost crisis finally has a watchdog — just not the companies causing it How to get operational data off the factory floor without creating an IT breach Why CPUs still matter in the age of AI agents Rayfin: Microsoft’s answer to the gap between vibe coding and enterprise production Microsoft bets the enterprise AI race will be won on data context, not model power “A successful attack could be catastrophic”: Anthropic gives more groups access to Claude Mythos How GitHub plans to win developers back Microsoft really, really, really wants developers to love Windows again With Intelligent Terminal, Microsoft is reinventing the Windows terminal Microsoft debuts “Scout” at Build, a new personal agent for work OpenAI’s Codex adds new tools — Sites, Annotations, more plugins — for knowledge workers GitHub Copilot’s usage-based billing is live: Here’s what you need to know OpenAI, Anthropic, Google, Amazon, and xAI all fail on type of attack, study finds JetBrains open-sources Mellum2 to go where Claude Code can’t Claude Code vs. Cursor vs. Codex vs. Antigravity — six months in This coding agent doesn’t want your feedback — it ships without it “Blowing things up”: The one move vendors got wrong on AI agents At Sapphire, SAP makes the case that enterprise AI is a context problem Gavriel Cohen found his own code inside OpenClaw, so he walked away AI retrieval at scale is becoming a systems problem, not a tooling problem The DIY platform trap that’s burning out engineering teams I tested Cursor’s new Jira integration and it’s 5 stars, no notes. Here’s why. Why GPT-5.4, Claude, and Gemini can’t agree on basic, real-world facts Replit’s vibe coding platform just got a Visa-backed identity layer for AI agents — and it changes how agents spend money Opus 4.8 Made Claude Smarter. Token Discipline Got Urgent. Why Linux creator Linus Torvalds gets angry hearing “99% of code is AI” Vendor neutrality isn’t magic: A hard look at the OpenTelemetry ecosystem “The AI did it” won’t save you when EU regulators come knocking The fix for soaring AI cloud bills exists — so why won’t we trust it? Why AWS scrapped OpenSearch’s architecture to chase agent workloads Claude Opus 4.8 is here: effort controls, dynamic workflows, cheaper fast mode, better honesty, less deception Percona celebrates 20th birthday with new foundation — and a goat cake Why OpenAI and Anthropic are hiring forward deployed engineer teams Claw-style AI agents are coming to the enterprise. The governance infrastructure is still catching up. The agentic identity crisis: Why your security isn’t ready for the AI revolution Debugging the undebuggable: building observability into probabilistic AI systems Snowflake commits $6B to AWS as it pushes deeper into AI Why MotherDuck refuses to fork DuckDB Researcher “gave Claude Code ‘ADHD’… and it thinks 2x better now.” Outside experts want more proof. “There is no accountability”: AI coding agents are installing packages no one owns “Tokenmaxxing is real, expensive & it’s spreading”: AI budgets are exploding With Google’s debut, the most important AI agent feature is now the most boring one Why AI agents need a Context Lake Google ranks the best AI for building Android apps, and the winner isn’t Gemini Google pushes Pro, Ultra, and free users from open-source Gemini CLI to closed-source Antigravity CLI The reason enterprise outages almost never start where ops teams think Taming the agentic influx: a blueprint for AI business observability How the AC/DC framework helps teams govern AI coding agents GitLab 19.0 trades its string section for a full DevSecOps orchestra Who’s monitoring the agents? How Jaeger hit 8.6× compression on 10 million spans with ClickHouse What ClickHouse learned from a year of coding with AI agents OpenClaw passed 300,000 GitHub stars. Then Google launched Spark.
AI is shipping code faster than security was built to handle
Darryl K. Taft · 2026-05-29 · via The New Stack | DevOps, Open Source, and Cloud Native News

Snyk has entered the AI-powered penetration testing market with a new product it says addresses the gap in how enterprises find and fix vulnerabilities in an era of AI-generated code and agentic attackers.

The company unveiled Evo Continuous Offensive Security (COS) on Wednesday, positioning it as a continuous alternative to traditional pentesting engagements that average 15 days of coverage per year — leaving a 350-day window during which autonomous attackers can probe application surfaces unimpeded, the company says.

“The attacker side of this equation has already gone agentic — the question is whether you get there first,” said Manoj Nair, Snyk’s chief technology officer, in a statement.

The coverage gap

The timing reflects a broader market shift. According to the 2026 Latio Application Security Report, AI pentesting is now the single most desired emerging capability among application security practitioners. Moreover, The New York Times recently reported that “One Job That Is Growing in the A.I. Era? Cybersecurity Experts.” Indeed, in the article, a headhunter says: “Roles that typically come along every 12 months, we’re seeing those roles come along every week. I think it’s driven by fear and uncertainty in this A.I. arms race.”

The reason is straightforward. AI is shipping code faster than testing schedules were designed to handle, and the vulnerabilities that code carries are increasingly difficult to catch with traditional scanning tools.

Janet Worthington, an analyst at Forrester Research, tells The New Stack that enterprises are compressing development cycles from weeks to hours using AI coding agents, but the applications those agents produce still carry both classic flaws — cross-site scripting, SQL injection, exposed secrets — and AI-specific threats including prompt injection, data leakage, and privilege escalation.

“AI-driven penetration testing is emerging as a critical solution,” Worthington says. “[It is] simulating real-world attacks to expose weaknesses at the speed and scale necessary to combat AI-driven attacks.”

Two classes of vulnerability

In a blog post, Nuno Loureiro, Senior Director of Product Strategy at Snyk, draws a distinction between two classes of vulnerability. The first — heuristic-detectable flaws like SQL injection and XSS — yields reliably to deterministic tools via pattern matching and payload probing. The second class is context-dependent: authorization bypasses, business logic flaws, and chained exploits that can only be found by understanding what an application is actually meant to do, and whether that intent can be subverted.

That second category has historically required human pentesters because no rule or signature can capture intent, Loureiro notes.

“The vulnerability lives in the gap between intended behavior and actual behavior,” Loureiro writes in the post.

His argument is that large language models have now crossed that threshold. Because LLMs can reason about application context, they can exploit a class of vulnerabilities that scanners have always missed.

The platform argument

Snyk’s central competitive claim is that context is what separates production-grade AI pentesting from the point solutions flooding the market. Evo COS ingests signals from across the Snyk platform — existing Static Application Security Testing (SAST) findings, software composition analysis results, prior Dynamic Application Security Testing (DAST) scans, asset inventories — and feeds that intelligence to the AI agent before it sends a single request. The system starts from what Snyk already knows about an application rather than from scratch.

That architectural choice has economic implications as well as technical ones. Pure LLM approaches burn frontier-model compute on brute-force payload enumeration, which deterministic scanning handles faster and more cheaply. Snyk’s design uses deterministic scanning for well-understood vulnerability classes and reserves LLM reasoning for business logic flaws, authorization gaps, and exploit chain construction — where the compute investment is justified.

The product also includes what Snyk calls Agent Red Teaming, targeting the attack surface created by LLM-integrated applications themselves: prompt injection, data exfiltration through model outputs, and jailbreaks that turn AI agents into privileged actors. The system’s recon layer detects LLM components automatically and triggers red teaming when they’re present, which Snyk argues matters because most security teams lack a clear inventory of where AI is running in their production environments.

Output is delivered as exploit chains rather than ranked alert lists — showing how an authorization gap and a logic flaw combine into a high-impact attack path — a design choice driven in part by customer feedback.

“Security teams are drowning in isolated findings,” says Colleen Carroll, senior director and information security officer at Emburse, in a statement. “What Snyk’s continuous offensive security gives you is the narrative — how vulnerabilities chain together, how an attacker actually thinks.”

A crowded market

Snyk’s competitors in this space are many, including Aikido and Beagle Security, which offer continuous AI-powered pentesting. Other competitors include Checkmarx, Veracode, and PortSwigger.

Worthington sees Application Security Posture Management vendors as particularly well-positioned in the AI pentesting race, given their ability to correlate offensive testing results with SAST, DAST, Software Composition Analysis, infrastructure-as-code scans, and cloud security findings — and apply business context to prioritize remediation by actual risk. The differentiator she singles out is automated pull requests that fix vulnerabilities without introducing regressions.

“In the world where Mythos-preview is continuing to find more and more vulnerabilities, enterprises need to act before attackers do,” she tells The New Stack.

Snyk’s move is unlikely to be the last. Worthington says she expects more application security vendors to add AI pentesting to their portfolios as the category matures.

Evo COS is now in early access and has already been deployed with design partners in financial services and enterprise technology. General availability is targeted for Black Hat USA in August 2026, the company says.

YOUTUBE.COM/THENEWSTACK

Tech moves fast, don't miss an episode. Subscribe to our YouTube channel to stream all our podcasts, interviews, demos, and more.

Created with Sketch.