MemorySec: An Open-Source Security Agent That Remembers Past Incident Remediations

User_0007_123 · reddit · 2026-09-28

A developer open-sourced MemorySec, an incident-response agent with long-term memory built on Hindsight, tackling the problem that agents start from zero on every new issue. After analyzing an incident, the agent stores structured experience — attack pattern, root cause, remediation, outcome, and analyst feedback. The workflow runs: incident → analyze → recall prior experience → recommend → resolve → retain. In testing, the first incident produced only a baseline recommendation, but when a similar incident later appeared from a different IP, the agent recalled the previous investigation and folded the proven remediation into its advice — shifting from generic security recommendations to reasoning like 'we've seen this pattern before and this fix worked.' Built with FastAPI, React, Groq, and Hindsight; the author also published a Medium writeup on the architecture and is soliciting feedback on what to retain or deliberately omit from security memories.

Original post →

More from coding & agent

coding & agent channel →