Anthropic's free OSS Scanner runs AI-only vulnerability scans on opted-in open-source projects
Overview
Anthropic is launching OSS Scanner, an opt-in service that runs periodic security scans of enrolled open-source projects using its strongest models at no cost.
Its outputs are fully model-generated without human review, so some reports may be incorrect or invalid, though a pilot found 85 of 97 checked critical and high-severity findings met Anthropic's disclosure bar. Core maintainers of eligible projects can enroll through a GitHub pull request.
Written by AI from one article, by Anthropic Research
Check the sources:
Developments
2 developments
- Oct 8, 5:04 PM ET · 1 articleAnthropic launches Anthropic Cyber Mission to secure critical infrastructure and open-source softwareAnthropic: Anthropic launches Cyber Mission to secure critical infrastructure and open source
- Oct 8, 12:00 AM ET · 4 articlesAnthropic launches OSS Scanner, free AI vulnerability scans for open-source projectsAnthropic Research: Anthropic launches OSS Scanner, a free AI vulnerability scanner for open-source projects
Article timeline
Follow the coverage from different perspectives. Times are ET.
- The Verge · AIAnthropic launches free OSS Scanner for open-source security vulnerability reports
AIAnthropic has launched OSS Scanner, a free opt-in service that gives open-source projects periodic security scans by its strongest models, including Claude Mythos. The reports are fully model-generated without human review or triage, so they may be incorrect or invalid.
- AnthropicAnthropic launches OSS Scanner to find open-source software vulnerabilities
AIAnthropic is launching OSS Scanner, a service that uses its frontier models to periodically scan opted-in open-source projects for vulnerabilities at no cost. Its reports provide a proof-of-concept, an explanation, and a suggested fix.
- AnthropicAnthropic launches Cyber Mission to secure critical infrastructure and open source
AIAnthropic has launched the Anthropic Cyber Mission, a new effort aimed at securing critical infrastructure and open-source software. The post links to a company news page with further details.
- Anthropic ResearchAnthropic launches OSS Scanner, a free AI vulnerability scanner for open-source projects
AIAnthropic is launching OSS Scanner, an opt-in service that runs periodic security scans of enrolled open-source projects using its strongest models at no cost. Its outputs are fully model-generated without human review, so some reports may be incorrect or invalid, though a pilot found 85 of 97 checked critical and high-severity findings met Anthropic's disclosure bar. Core maintainers of eligible projects can enroll through a GitHub pull request.
- Anthropic NewsroomPickAnthropic launches Cyber Mission with infrastructure defense and free OSS Scanner
AIAnthropic has launched the Anthropic Cyber Mission, which starts with the Critical Infrastructure Defense Program for operational technology and OSS Scanner for open-source projects. The defense program brings frontier Claude models, on-site engineers and threat research to trusted providers such as Accenture, CrowdStrike and Palo Alto Networks. OSS Scanner gives enrolled open-source projects periodic free scans from its strongest models, with reports sent without human review and an expected true-positive rate above 90%.
Heat trend
Not enough continuous observations to show a trend yet.