Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
  • Home
  • Attack Feeds
  • Anthropic rolls out embedded security scanning for Claude   – CyberScoop
AttackFeed by Joe Wagner | Anthropic rolls out embedded security scanning for Claude   - CyberScoop

Anthropic rolls out embedded security scanning for Claude   – CyberScoop

Posted on February 20, 2026 By djohnson
Attack Feeds

Anthropic is rolling out a new security feature for Claude Code that can scan a user’s software codebases for vulnerabilities and suggest patching solutions.

The company announced Friday that Claude Code Security will initially be available to a limited number of enterprise and team customers for testing. That follows more than a year of stress-testing by the internal red teamers, competing in cybersecurity Capture the Flag contests and working with Pacific Northwest National Laboratory to refine the accuracy of the tool’s scanning features.

Large language models have shown increasing promise at both code generation and cybersecurity tasks over the past two years, speeding up the software development process but also lowering the technical bar required to create new websites, apps and other digital tools.

“We expect that a significant share of the world’s code will be scanned by AI in the near future, given how effective models have become at finding long-hidden bugs and security issues,” the company wrote in a blog post.

Those same capabilities also let bad actors scan a victim’s IT environment faster to find weaknesses they can exploit. Anthropic is betting that as  “vibe coding” becomes more widespread, the demand for automated vulnerability scanning will pass the need for manual security reviews.

As more people use AI to generate their software and applications, an embedded vulnerability scanner could potentially reduce the number of vulnerabilities that come with it. The goal is to reduce large chunks of the software security review process to a few clicks, with the user approving any patching or changes prior to deployment.

Anthropic claims that Claude Code Security “reads and reasons about your code the way a human researcher would,” showing an understanding of how different software components interact, tracing the flow of data and catching major bugs that can be missed with traditional forms of static analysis.

“Every finding goes through a multi-stage verification process before it reaches an analyst. Claude re-examines each result, attempting to prove or disprove its own findings and filter out false positives,” the company claimed. “Findings are also assigned severity ratings so teams can focus on the most important fixes first.”

Threat researchers have told CyberScoop that while the cybersecurity capabilities have clearly improved in recent years, they tend to be most effective at finding lower impact bugs, while experienced human operators are still needed in many organizations to manage the model and deal with higher-level threats and vulnerabilities.

But tools like Claude Opus and XBOW have shown the ability to unearth hundreds of software vulnerabilities, in some cases making the discovery and patching process exponentially faster than it was under a team of humans.

Anthropic said Claude Opus 4.6 is “notably better” at finding high-severity vulnerabilities than past models, in some cases identifying flaws that “had gone undetected for decades.”

Interested users can apply for access to the program. Anthropic clarifies on its sign up page that testers must agree to only use Claude Code Security on code their company owns and “holds all necessary rights to scan,” not third-party owned or licensed code or open source projects.

The post Anthropic rolls out embedded security scanning for Claude  appeared first on CyberScoop.

  –

Read More  – CyberScoop 

Post navigation

❮ Previous Post: ‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA  – Krebs on Security
Next Post: Spanish police say they have arrested hacker who booked luxury hotel rooms for just one cent  – GRAHAM CLULEY ❯

You may also like

AttackFeed by Joe Wagner | White House cyber official: identity security matters more than ever in the age of AI  - CyberScoop
Attack Feeds
White House cyber official: identity security matters more than ever in the age of AI  – CyberScoop
May 14, 2026
AttackFeed by Joe Wagner | Cal AI, New Owner of MyFitnessPal, Hit by Alleged Breach of 3 Million Users  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Cal AI, New Owner of MyFitnessPal, Hit by Alleged Breach of 3 Million Users  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 10, 2026
AttackFeed by Joe Wagner | Best Tools for Test Data Management to Accelerate QA Teams in 2026  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Best Tools for Test Data Management to Accelerate QA Teams in 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More
February 10, 2026
AttackFeed by Joe Wagner | Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active Exploitation  - The Hacker News
Attack Feeds
Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active Exploitation  – The Hacker News
April 17, 2026
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.