Security audit: autonomous research program XBOW credited with ~12 upstream bug fixes
moyix · x · 2026-09-23
An independent security audit rediscovered several bugs (12 leads) that had already been found and fixed upstream. Upstream fixed them in a heavy wave between April–August 2026, with most fixes credited to an autonomous research program called XBOW and only one to a human — a notable example of autonomous security research in practice.
More from coding & agent
- Browser Use Bench v2: GPT-6 Sol scores 66.9, beating Opus 5.5 at 3.5x lower cost — airesearch12 · 2026-09-23
- China's AI coding assistant disables features after code data loss found in security audit — pstAsiatech · 2026-09-23
- Rogo Co-founder: Finance Is the Best Fit for 10,000-Agent Swarms Where One Insight Is Worth $50k — rohanpaul_ai · 2026-09-23
- Miles Brundage notes Claude Code mode lets you 'show more' but not 'show less' — Miles_Brundage · 2026-09-23
- jev-gc: reversible context garbage collection for long-running AI agents — Maleficent_College57 · 2026-09-23
- Devs call Effect + Alchemy + Cloudflare a 'superpowers stack' made 100x easier by AI coding — samgoodwin89 · 2026-09-23