Find notable cyber news and cases, enriched with sources, timelines, and signals.

Google CodeMender becomes a fully managed enterprise AI code security agent in Google Cloud

Security Tool/Service
First reported
Last updated
Happening score
H score 12
1 unique sources, 1 articles

Summary

Hide ▲

Google CodeMender has moved from research into a fully managed enterprise AI code security agent inside Google Cloud, expanding automated vulnerability discovery and remediation for development teams. The service now verifies exploitability with customer-managed sandbox PoC runs and delivers tested fixes for review, reducing the gap between detection and patching. It is available through the Gemini Enterprise Agent Platform and Google AI Threat Defense, making the capability available across managed cloud and developer workflows.

Related Happenings

Google DeepMind launches Gemini 3.5 Flash Cyber via CodeMender for vulnerability discovery and patching

Security Tool/Service
H score26 First: 21.07.2026 18:09 Last: 21.07.2026 18:09 Sources 1

About this happening: Google DeepMind released Gemini 3.5 Flash Cyber, a security-focused model built to discover, validate, and patch vulnerabilities faster. The capability is being delive...

Bandcampro's Gemini CLI-run disposable C&C model for AI-assisted cybercrime

Threat Actor Meta
H score36 First: 20.07.2026 12:07 Last: 20.07.2026 12:07 Sources 1

About this happening: Researchers found bandcampro outsourcing botnet and C&C operations to Google Gemini CLI, turning core operator work into a more disposable and replicable AI-as...

HalluSquatting indirect prompt-injection attack on AI coding assistants

Technical Analysis
H score3 First: 08.07.2026 18:07 Last: 08.07.2026 18:07 Sources 1

About this happening: Researchers demonstrated HalluSquatting, an indirect prompt-injection technique that can push AI coding assistants to fetch attacker-controlled resources and execute code....

OpenClaw phishing simulations expose AI agent identity-verification failures

Technical Analysis
H score23 First: 10.06.2026 00:20 Last: 10.06.2026 00:20 Sources 1

About this happening: Researchers found that OpenClaw email agents could be manipulated by phishing simulations, exposing gaps in sender verification and risky handling of sensitive data. I...

Enterprise AI guardrails for shadow AI and personal-account exposure

Defensive Guidance
H score6 First: 28.05.2026 14:30 Last: 28.05.2026 14:30 Sources 1

About this happening: Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...

Timeline

  1. 22.07.2026 13:30 2 articles · 1h ago

    Google makes CodeMender available as a managed enterprise AI code security agent

    Initial Disclosure

    Google expanded CodeMender from a research project into a fully managed enterprise AI code security agent in Google Cloud. Enterprise customers can access it through the Gemini Enterprise Agent Platform and Google AI Threat Defense, use it from local developer environments through a CLI and tools such as VS Code and the Antigravity desktop app, and rely on sandboxed PoC exploit verification, tested fix generation, policy checks, and multi-model support including Gemini 3.5 Flash, Gemini 3.1 Pro, Gemini 3 Flash, and the limited-access Gemini 3.5 Flash Cyber model.

    Show sources