Google CodeMender becomes a fully managed enterprise AI code security agent in Google Cloud
Security Tool/Service
Summary
Hide ▲
Show ▼
Google CodeMender has moved from research into a fully managed enterprise AI code security agent inside Google Cloud, expanding automated vulnerability discovery and remediation for development teams. The service now verifies exploitability with customer-managed sandbox PoC runs and delivers tested fixes for review, reducing the gap between detection and patching. It is available through the Gemini Enterprise Agent Platform and Google AI Threat Defense, making the capability available across managed cloud and developer workflows.
Related Happenings
Google DeepMind launches Gemini 3.5 Flash Cyber via CodeMender for vulnerability discovery and patching
Security Tool/Service
H score26
First: 21.07.2026 18:09
Last: 21.07.2026 18:09
Sources 1
About this happening:
Google DeepMind released Gemini 3.5 Flash Cyber, a security-focused model built to discover, validate, and patch vulnerabilities faster. The capability is being delive...
Google DeepMind launches Gemini 3.5 Flash Cyber via CodeMender for vulnerability discovery and patching
Security Tool/ServiceAbout this happening: Google DeepMind released Gemini 3.5 Flash Cyber, a security-focused model built to discover, validate, and patch vulnerabilities faster. The capability is being delive...
Bandcampro's Gemini CLI-run disposable C&C model for AI-assisted cybercrime
Threat Actor Meta
H score36
First: 20.07.2026 12:07
Last: 20.07.2026 12:07
Sources 1
About this happening:
Researchers found bandcampro outsourcing botnet and C&C operations to Google Gemini CLI, turning core operator work into a more disposable and replicable AI-as...
Bandcampro's Gemini CLI-run disposable C&C model for AI-assisted cybercrime
Threat Actor MetaAbout this happening: Researchers found bandcampro outsourcing botnet and C&C operations to Google Gemini CLI, turning core operator work into a more disposable and replicable AI-as...
HalluSquatting indirect prompt-injection attack on AI coding assistants
Technical Analysis
H score3
First: 08.07.2026 18:07
Last: 08.07.2026 18:07
Sources 1
About this happening:
Researchers demonstrated HalluSquatting, an indirect prompt-injection technique that can push AI coding assistants to fetch attacker-controlled resources and execute code....
HalluSquatting indirect prompt-injection attack on AI coding assistants
Technical AnalysisAbout this happening: Researchers demonstrated HalluSquatting, an indirect prompt-injection technique that can push AI coding assistants to fetch attacker-controlled resources and execute code....
OpenClaw phishing simulations expose AI agent identity-verification failures
Technical Analysis
H score23
First: 10.06.2026 00:20
Last: 10.06.2026 00:20
Sources 1
About this happening:
Researchers found that OpenClaw email agents could be manipulated by phishing simulations, exposing gaps in sender verification and risky handling of sensitive data. I...
OpenClaw phishing simulations expose AI agent identity-verification failures
Technical AnalysisAbout this happening: Researchers found that OpenClaw email agents could be manipulated by phishing simulations, exposing gaps in sender verification and risky handling of sensitive data. I...
Enterprise AI guardrails for shadow AI and personal-account exposure
Defensive Guidance
H score6
First: 28.05.2026 14:30
Last: 28.05.2026 14:30
Sources 1
About this happening:
Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...
Enterprise AI guardrails for shadow AI and personal-account exposure
Defensive GuidanceAbout this happening: Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...
Timeline
-
22.07.2026 13:30 2 articles · 1h ago
Google makes CodeMender available as a managed enterprise AI code security agent
Initial DisclosureGoogle expanded CodeMender from a research project into a fully managed enterprise AI code security agent in Google Cloud. Enterprise customers can access it through the Gemini Enterprise Agent Platform and Google AI Threat Defense, use it from local developer environments through a CLI and tools such as VS Code and the Antigravity desktop app, and rely on sandboxed PoC exploit verification, tested fix generation, policy checks, and multi-model support including Gemini 3.5 Flash, Gemini 3.1 Pro, Gemini 3 Flash, and the limited-access Gemini 3.5 Flash Cyber model.
Show sources
- Google Makes CodeMender Available as Managed AI Security Agent — www.infosecurity-magazine.com — 22.07.2026 13:30
- Google Makes CodeMender Available as Managed AI Security Agent — www.infosecurity-magazine.com — 22.07.2026 13:30