Google DeepMind Minds the Patch with AI Flaw-Fixing Scheme
CodeMender has generated 72 verified security patches for open-source projects using AI-driven analysis, with all patches undergoing human review before release.
- On October 6, Google DeepMind announced CodeMender, an AI agent built on Gemini Deep Think that automatically patches critical software vulnerabilities.
- Developers face time-consuming bug hunts, and Google said attackers use AI for faster attacks, prompting AI-driven defenses to improve vulnerability detection and fixing.
- Using static and dynamic analysis, CodeMender leverages differential testing, fuzzing, SMT solvers, a multi-agent architecture, and an automatic validation framework to self-correct before finalizing patches, DeepMind says.
- Highlighting real-world impact, in six months CodeMender upstreamed 72 security fixes to open-source projects and applied-fbounds-safety annotations to libwebp, linked to the 2023 zero-click iOS exploit.
- While still a research project, DeepMind says CodeMender patches are reviewed by human researchers and plans outreach to open-source maintainers, AI VRP launch, SAIF 2.0 expansion, and technical papers.
13 Articles
13 Articles
Google DeepMind’s CodeMender AI Autonomously Detects and Patches Vulnerabilities
In a significant leap for cybersecurity, Google’s DeepMind has introduced CodeMender, an artificial intelligence agent designed not only to detect vulnerabilities in software code but also to autonomously rewrite and patch them. This innovation, detailed in a recent report by The Hacker News, represents a paradigm shift in how developers and security teams approach code maintenance. Traditionally, identifying bugs has relied on human experts or …


Google's New AI Doesn't Just Find Vulnerabilities — It Rewrites Code to Patch Them
Google's DeepMind division on Monday announced an artificial intelligence (AI)-powered agent called CodeMender that automatically detects, patches, and rewrites vulnerable code to prevent future exploits. The efforts add to the company's ongoing efforts to improve AI-powered vulnerability discovery, such as Big Sleep and OSS-Fuzz. DeepMind said the AI agent is designed to be both reactive and
Googles CodeMender is designed to automatically find and fix security flaws in software
Google DeepMind has launched a new research project using artificial intelligence to detect, fix, and eventually prevent entire classes of software vulnerabilities. According to the company, CodeMender has already delivered dozens of patches to open-source projects. The article Googles CodeMender is designed to automatically find and fix security flaws in software appeared first on THE DECODER.
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium