Gemini 3.5 Flash Cyber Spots Vulnerabilities Across Google's Internal Codebases
xennygrimmato_ · x · 2026-07-21
Benchmarks only tell part of the story. Paired with the CodeMender agent, Gemini 3.5 Flash Cyber is already finding and fixing vulnerabilities in Google’s internal codebases, including Chrome, Android, Cloud, Ads, and YouTube.
The model was evaluated on the CyberGym benchmark against hundreds of real-world software vulnerabilities. Leveraging its low cost, CodeMender was configured to call 3.5 Flash Cyber up to five times for a single final report, allowing the overall agent to achieve highly competitive performance.
Related event: Google Launches Gemini 3.6 Flash and Other New Models(59 posts)→
More from coding & agent
- FactoryAI gave back its first millions, then shipped Droid CLI two years later — matanSF · 2026-07-22
- Devin Outposts aims to run AI agents on any machine, from Mac minis to Kubernetes clusters — blaizedsouza · 2026-07-22
- Hermes Agent Refactoring Proposal: Decoupling via Event Bus and Monorepo Slicing — Promptmethus · 2026-07-22
- ty now reads Pydantic config keywords and field metadata — charliermarsh · 2026-07-22
- Pensar Launches AI Security Agent to Autonomously Discover and Patch 0-Days — andriy_mulyar · 2026-07-22
- ty adds first-class Pydantic support, including strict and lax field handling — charliermarsh · 2026-07-22