惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
MyScale Blog
MyScale Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
人人都是产品经理
人人都是产品经理
C
Check Point Blog
宝玉的分享
宝玉的分享
B
Blog RSS Feed
博客园 - 三生石上(FineUI控件)
量子位
Martin Fowler
Martin Fowler
酷 壳 – CoolShell
酷 壳 – CoolShell
Jina AI
Jina AI
IT之家
IT之家
阮一峰的网络日志
阮一峰的网络日志
博客园 - 叶小钗
J
Java Code Geeks
The Cloudflare Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
腾讯CDC
P
Proofpoint News Feed
美团技术团队
H
Help Net Security
B
Blog
博客园_首页

Help Net Security

Your work apps are quietly handing 19 data points to someone ChatGPT advanced account security adds passkeys and hardware keys Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for months Automating Pentest Delivery: A Step-by-Step Guide - PlexTrac Open-source privacy proxy masks PII before prompts reach external AI services Shadow AI risks deepen as 31% of users get no employer training Identity is the control plane for distributed infrastructure AI traffic is getting bigger, louder, and less predictable New infosec products of the month: April 2026 cPanel zero-day exploited for months before patch release (CVE-2026-41940) Cisco releases open-source toolkit for verifying AI model lineage Met Police face criticism for using AI to spy on their own officers Nine-year-old Linux kernel flaw enables reliable local privilege escalation (CVE-2026-31431) Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security IP Fabric MCP server adds governance and control to enterprise AIOps workflows - Help Net Security Google brings instant email verification to Android, no OTP needed - Help Net Security If cyber espionage via HDMI worries you, NCSC built a device to stop it - Help Net Security Apple fixes iPhone bug that let FBI retrieve deleted Signal messages(CVE-2026-28950) - Help Net Security GopherWhisper APT group hides command and control traffic in Slack and Discord - Help Net Security OpenAI tackles a bad habit people have when interacting with AI - Help Net Security A year in, Zoom's CISO reflects on balancing security and business - Help Net Security Scenario: Open-source framework for automated AI app red-teaming - Help Net Security GDPR works, but only where someone enforces it - Help Net Security Ransomware, fraud, and lawsuits drive cyber insurance claims to new peaks - Help Net Security Google’s Workspace Intelligence promises privacy while running on your data - Help Net Security Cyberattack on French government agency triggers phishing alert - Help Net Security Claude Mythos finds 271 Firefox flaws, Mozilla believes zero-days are numbered - Help Net Security Prove Identity Platform connects verification, authentication, and fraud prevention - Help Net Security New Mirai variants target routers and DVRs in parallel campaigns - Help Net Security Acronis GenAI Protection gives MSPs control over AI usage and data risks - Help Net Security
Aqua Compass MCP server enables real-time investigation a...
Industry New · 2026-04-23 · via Help Net Security

Aqua Security has announced Aqua Compass, a Model Context Protocol (MCP) server that enables agentic investigation, containment and remediation of runtime incidents, and new runtime risk dashboards. These capabilities help security teams move beyond identifying risk and focus on containing threats in running applications.

The announcement builds on Aqua’s Secure AI capabilities, extending the company’s AI innovation from protecting AI applications to applying AI directly to runtime security operations.

Cloud native development and AI-generated code are dramatically increasing the number of vulnerabilities reaching production environments, while attackers are automating exploitation and compromising systems within minutes. Many organizations now face a growing problem: They can see the risk, but they cannot fix it fast enough.

Aqua Compass addresses this challenge by introducing an MCP server embedded directly within Aqua’s runtime security workflows. Through the MCP interface, customers can build AI agents that interact with Aqua’s runtime intelligence and enforcement controls without leaving the environments they already operate in. These agentic workflows enable teams to move from alert to action in seconds, as agents analyze activity, contain vulnerabilities, recommend remediation steps, and support execution with a human in the loop to oversee decisions and maintain control without slowing the response.

Aqua Compass is able to analyze live malware attacks inside a containerized workload, identify the malicious behavior, and recommend specific steps to isolate the compromised pod. The workflow then generates a hardened runtime policy scoped to the affected namespace, immediately blocking similar behavior. Compass enables teams to respond with the speed and precision typically associated with highly experienced analysts.

As security teams rapidly shift toward agentic automation to stay ahead of attackers, organizations can begin building security agents on top of Aqua Compass today.

“The industry spent the last decade building visibility into cloud environments, but visibility alone does not stop attacks,” said Mike Dube, CEO of Aqua Security.

“Vulnerabilities are being exploited faster than organizations can remediate them, which means the old model is becoming obsolete. The future of cloud is autonomous runtime security. With more than a decade of embedding enforcement directly inside production workloads and patented innovations in runtime security, Aqua is uniquely positioned to secure cloud native environments today and into the future,” Dube continued.

Alongside Compass, Aqua also introduced a new suite of runtime risk dashboards that convert vulnerabilities and misconfigurations into customer-quantified monetary exposure. As runtime controls are enforced, that exposure is continuously recalculated, allowing security teams to measure how risk is being reduced in production environments.

By correlating runtime activity, vulnerabilities, and enforcement outcomes, the dashboards translate Aqua’s runtime telemetry into operational metrics that show where risk exists and which controls are having the greatest impacts.

These capabilities are made possible by Aqua’s runtime visibility and enforcement architecture, developed over more than eleven years of securing containerized applications in production. Aqua’s agent-based enforcement operates directly inside running workloads, providing sophisticated runtime telemetry and enabling patented enforcement techniques that stop exploitation in real time.

Combined with adversary intelligence from Aqua’s Nautilus research team and telemetry from millions of protected workloads, this foundation allows Aqua to translate runtime activity into meaningful risk insights through its dashboards while enabling Compass to investigate attacks and generate containment policies that can be enforced immediately in production environments.