OpenAI launched Codex Security on Friday, an AI security agent that identifies and suggests fixes for vulnerabilities. The feature is in research preview for ChatGPT Pro, Enterprise, Business, and Edu customers through the Codex web, available free for the next month.
“It builds deep context about your project to identify complex vulnerabilities that other agentic tools miss, surfacing higher-confidence findings with fixes that meaningfully improve the security of your system while sparing you from the noise of insignificant bugs,” the company said.
By infosecbulletin
/ Thursday , August 6 2026
Cisco has put out an important update for Cisco IOS XE Software. This update fixes serious security holes that could...
Read More
By infosecbulletin
/ Thursday , August 6 2026
The Open Web Application Security Project (OWASP) has published the Top 10 for LLM Applications 2026. This guide focuses on...
Read More
By infosecbulletin
/ Wednesday , August 5 2026
Greatness has emerged as a phishing-as-a-service platform designed to steal Microsoft 365 access at a time when many organizations assume...
Read More
By infosecbulletin
/ Wednesday , August 5 2026
Bangladesh's National Cyber Security Agency (NCSA) has launched two cybersecurity initiatives: the Cyber Incident Reporting System (CIRS) and the National...
Read More
By infosecbulletin
/ Wednesday , August 5 2026
Cybersecurity Researcher Jeremiah Fowler uncovered and reported to Express VPN a publicly exposed database that was neither password-protected nor encrypted....
Read More
By infosecbulletin
/ Tuesday , August 4 2026
Thousands of data centers are in danger because of a 22-year-old problem in Baseboard Management Controller (BMC) processors, says the...
Read More
By infosecbulletin
/ Tuesday , August 4 2026
In an important move to boost the country's cybersecurity, Bangladesh started the Cyber Incident Reporting System (CIRS) and the National...
Read More
By infosecbulletin
/ Tuesday , August 4 2026
Check Point fixed a flaw that allowed bypassing authentication on its Security Management and Multi-Domain Security Management servers. This issue...
Read More
By infosecbulletin
/ Tuesday , August 4 2026
TP-Link has shared a security warning about a serious problem with its TL-WR940N V6 wireless router. This problem, known as...
Read More
By infosecbulletin
/ Monday , August 3 2026
A cyberattack on the U.K.'s Police National Legal Database (PNLD) has put the contact information of over 100,000 police officers...
Read More
Codex Security is an improvement of Aardvark, launched by OpenAI in private beta in October 2025, designed for developers and security teams to identify and address security vulnerabilities effectively.
In the past 30 days, Codex Security has scanned over 1.2 million commits in external repositories during the beta phase, uncovering 792 critical and 10,561 high-severity vulnerabilities. These issues affect various open-source projects such as OpenSSH, GnuTLS, GOGS, Thorium, libssh, PHP, and Chromium. Here are some examples –
GnuPG – CVE-2026-24881, CVE-2026-24882
GnuTLS – CVE-2025-32988, CVE-2025-32989
GOGS – CVE-2025-64175, CVE-2026-25242
Thorium – CVE-2025-35430, CVE-2025-35431, CVE-2025-35432, CVE-2025-35433, CVE-2025-35434, CVE-2025-35435, CVE-2025-35436
The new version is easier to understand and focuses on clarity:
The AI company states that the latest version of the application security agent uses advanced models and automated checks to reduce false positives and provide clear solutions.
OpenAI’s scans of the same repositories over time have shown improved accuracy and reduced false positive rates, which have dropped by over 50%.
“OpenAI said Codex Security is designed to improve signal-to-noise by grounding vulnerability discovery in system context and validating findings before surfacing them to users” reported by thehackernews.