Pasqualepillitteri.It Visa Open-Sources AI Tool After Identifying 10,000 Vulnerabilities
Article Content
- •Visa has open-sourced its AI tool to combat over 10,000 identified vulnerabilities.
- •The Visa Vulnerability Agentic Harness employs AI to discover and fix security flaws.
- •Rajat Taneja warns of the growing threat from autonomous cyberattacks.
Visa has open-sourced its AI-based framework, the Visa Vulnerability Agentic Harness (VVAH), to address over 10,000 vulnerabilities identified by Anthropic's Mythos AI model. The VVAH is designed to discover, verify, and fix security flaws in software while maintaining human oversight. This initiative comes amid growing concerns over the risks posed by advanced AI and potential autonomous cyberattacks. Visa processes around one billion payments daily, making its security critical to the global financial system. Rajat Taneja, Visa's President of Technology, emphasized the need for agentic defenses in response to evolving threats. The tool is available on GitHub under an Apache 2.0 license, requiring Python 3.11 and an Anthropic API key for operation. The vulnerabilities identified were of high severity, highlighting the urgency for improved security measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Common questions
What vulnerabilities were identified?
How does the VVAH work?
What is the significance of this release?
Continue Reading
GLM-5.3 Model Raises Cybersecurity Concerns Due to Exploit Capabilities The GLM-5.3 model, released by Z.ai, can autonomously build cyber exploits similar to Anthropic's Claude Mythos Preview. Unlike Mythos, GLM-5.3 lacks effective safeguards, allowing attackers to bypass its defenses in 64% to 100% of cases. The model has been evaluated by NIST’s CAISI, which found it to be the most…
HackerOne Discovers Critical RCE Vulnerability Using AI HackerOne has identified and patched a critical remote code execution (RCE) vulnerability in its production environment, which was detected by Anthropic's Claude Mythos 5 AI model during a 30-day experiment under Project Glasswing. The vulnerability stemmed from three individually safe code changes that, when…