惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Last Week in AI
Last Week in AI
D
DataBreaches.Net
腾讯CDC
Recent Announcements
Recent Announcements
有赞技术团队
有赞技术团队
A
About on SuperTechFans
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Google DeepMind News
Google DeepMind News
Microsoft Security Blog
Microsoft Security Blog
云风的 BLOG
云风的 BLOG
罗磊的独立博客
月光博客
月光博客
MyScale Blog
MyScale Blog
U
Unit 42
Martin Fowler
Martin Fowler
Stack Overflow Blog
Stack Overflow Blog
T
Tailwind CSS Blog
Engineering at Meta
Engineering at Meta
N
Netflix TechBlog - Medium
G
Google Developers Blog
博客园 - 【当耐特】
D
Docker
I
InfoQ
雷峰网
雷峰网

Help Net Security

Your work apps are quietly handing 19 data points to someone ChatGPT advanced account security adds passkeys and hardware keys Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for months Automating Pentest Delivery: A Step-by-Step Guide - PlexTrac Open-source privacy proxy masks PII before prompts reach external AI services Shadow AI risks deepen as 31% of users get no employer training Identity is the control plane for distributed infrastructure AI traffic is getting bigger, louder, and less predictable New infosec products of the month: April 2026 cPanel zero-day exploited for months before patch release (CVE-2026-41940) Cisco releases open-source toolkit for verifying AI model lineage Met Police face criticism for using AI to spy on their own officers Nine-year-old Linux kernel flaw enables reliable local privilege escalation (CVE-2026-31431) Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security IP Fabric MCP server adds governance and control to enterprise AIOps workflows - Help Net Security Google brings instant email verification to Android, no OTP needed - Help Net Security If cyber espionage via HDMI worries you, NCSC built a device to stop it - Help Net Security Apple fixes iPhone bug that let FBI retrieve deleted Signal messages(CVE-2026-28950) - Help Net Security GopherWhisper APT group hides command and control traffic in Slack and Discord - Help Net Security OpenAI tackles a bad habit people have when interacting with AI - Help Net Security A year in, Zoom's CISO reflects on balancing security and business - Help Net Security Scenario: Open-source framework for automated AI app red-teaming - Help Net Security GDPR works, but only where someone enforces it - Help Net Security Ransomware, fraud, and lawsuits drive cyber insurance claims to new peaks - Help Net Security Google’s Workspace Intelligence promises privacy while running on your data - Help Net Security Cyberattack on French government agency triggers phishing alert - Help Net Security Claude Mythos finds 271 Firefox flaws, Mozilla believes zero-days are numbered - Help Net Security Prove Identity Platform connects verification, authentication, and fraud prevention - Help Net Security New Mirai variants target routers and DVRs in parallel campaigns - Help Net Security Acronis GenAI Protection gives MSPs control over AI usage and data risks - Help Net Security
Aqua Compass MCP server enables real-time investigation a...
Industry New · 2026-04-23 · via Help Net Security

Aqua Security has announced Aqua Compass, a Model Context Protocol (MCP) server that enables agentic investigation, containment and remediation of runtime incidents, and new runtime risk dashboards. These capabilities help security teams move beyond identifying risk and focus on containing threats in running applications.

The announcement builds on Aqua’s Secure AI capabilities, extending the company’s AI innovation from protecting AI applications to applying AI directly to runtime security operations.

Cloud native development and AI-generated code are dramatically increasing the number of vulnerabilities reaching production environments, while attackers are automating exploitation and compromising systems within minutes. Many organizations now face a growing problem: They can see the risk, but they cannot fix it fast enough.

Aqua Compass addresses this challenge by introducing an MCP server embedded directly within Aqua’s runtime security workflows. Through the MCP interface, customers can build AI agents that interact with Aqua’s runtime intelligence and enforcement controls without leaving the environments they already operate in. These agentic workflows enable teams to move from alert to action in seconds, as agents analyze activity, contain vulnerabilities, recommend remediation steps, and support execution with a human in the loop to oversee decisions and maintain control without slowing the response.

Aqua Compass is able to analyze live malware attacks inside a containerized workload, identify the malicious behavior, and recommend specific steps to isolate the compromised pod. The workflow then generates a hardened runtime policy scoped to the affected namespace, immediately blocking similar behavior. Compass enables teams to respond with the speed and precision typically associated with highly experienced analysts.

As security teams rapidly shift toward agentic automation to stay ahead of attackers, organizations can begin building security agents on top of Aqua Compass today.

“The industry spent the last decade building visibility into cloud environments, but visibility alone does not stop attacks,” said Mike Dube, CEO of Aqua Security.

“Vulnerabilities are being exploited faster than organizations can remediate them, which means the old model is becoming obsolete. The future of cloud is autonomous runtime security. With more than a decade of embedding enforcement directly inside production workloads and patented innovations in runtime security, Aqua is uniquely positioned to secure cloud native environments today and into the future,” Dube continued.

Alongside Compass, Aqua also introduced a new suite of runtime risk dashboards that convert vulnerabilities and misconfigurations into customer-quantified monetary exposure. As runtime controls are enforced, that exposure is continuously recalculated, allowing security teams to measure how risk is being reduced in production environments.

By correlating runtime activity, vulnerabilities, and enforcement outcomes, the dashboards translate Aqua’s runtime telemetry into operational metrics that show where risk exists and which controls are having the greatest impacts.

These capabilities are made possible by Aqua’s runtime visibility and enforcement architecture, developed over more than eleven years of securing containerized applications in production. Aqua’s agent-based enforcement operates directly inside running workloads, providing sophisticated runtime telemetry and enabling patented enforcement techniques that stop exploitation in real time.

Combined with adversary intelligence from Aqua’s Nautilus research team and telemetry from millions of protected workloads, this foundation allows Aqua to translate runtime activity into meaningful risk insights through its dashboards while enabling Compass to investigate attacks and generate containment policies that can be enforced immediately in production environments.