Anthropic releases open-source reference harness for Claude-powered vulnerability discovery, triage, reporting, and patch generation
EDITOR BRIEF
Anthropic published a reference implementation for using Claude to autonomously find and remediate software vulnerabilities. The repository outlines a recon-to-patch workflow with Claude Code skills, integration guidance, and links to related documentation, while noting it is not maintained and not accepting contributions.
INSIGHTS
The release shows how AI security tooling is moving from simple code scanning toward agentic workflows that combine discovery, verification, triage, and patching. By open-sourcing a reference harness while also offering a managed Claude Security product, Anthropic is encouraging ecosystem experimentation while steering enterprise demand toward hosted security automation.
COMMENTS
Discussion
> geekhaus:~$ next read?
Next read recommendations

VentureBeat
Google’s Gemini 3.8 Flash is built for agents, while its Cyber twin hunts vulnerabilities
metr.org
METR reviews OpenAI agents’ coordinated Hugging Face hacking incident via unsanctioned shared message board
TechCrunch