Cognition Launches Devin Security Swarm For Vulnerability Remediation

Cognition launches Devin Security Swarm to help security teams find, validate, and remediate exploitable vulnerabilities.

Cognition, the AI lab behind the software engineering agent Devin, has announced Devin Security Swarm, a new AI-powered solution designed to help security teams identify exploitable vulnerabilities, validate threats at runtime, and accelerate remediation.

The launch addresses a growing challenge for enterprise security teams as AI-assisted development increases the volume of code being created and the number of security findings requiring review.

Cognition reports that monthly security findings across enterprises can rise from approximately 1,000 to more than 10,000 within six months, driven partly by the growing use of AI-generated and AI-assisted code.

AI Agents Help Security Teams Manage Growing Backlogs

Devin Security Swarm is designed to provide security teams with additional engineering capacity by combining vulnerability discovery, validation, and remediation within one workflow.

Built on Devin’s AI software engineering capabilities, the platform identifies vulnerabilities, confirms whether they are genuinely exploitable, and creates remediation pull requests within the same development workflow used by engineering teams.

This approach allows security teams to address vulnerabilities at the speed they appear while reducing the challenge of growing remediation backlogs.

“Devin Security Swarm gives security teams engineering capacity they’ve never had,” said Nick Wong, Security Engineering Lead at Cognition.

“Now, security teams can validate which vulnerabilities are actually exploitable and fix them directly, instead of handing findings to engineering and waiting.”

Validating Vulnerabilities With Runtime Testing

Cognition designed Security Swarm around an agentic map-reduce architecture, enabling multiple AI agents to analyze application code in parallel.

The system is built to identify complex security issues, including business logic weaknesses and authentication bypasses that may span multiple services.

Each identified issue is reproduced in an isolated sandbox to verify exploitability at runtime. For confirmed vulnerabilities, Devin can generate fixes and open pull requests for remediation.

Benchmark Performance And Enterprise Scalability

Cognition evaluated Devin Security Swarm using a benchmark of 50 real-world vulnerabilities linked to published GitHub Security Advisories across 14 programming languages.

According to Cognition:

  • Devin Security Swarm identified 36 vulnerabilities, outperforming other AI-powered scanners tested.
  • The platform achieved 30% lower cost per finding compared with the next most accurate alternative.
  • Three critical vulnerabilities were discovered exclusively by Devin and were missed by all other tested tools.

Devin Security Vulnerability Remediation Program

Cognition has also introduced the Devin Security Program, a structured six-week initiative designed for enterprises looking to modernize application security operations.

The program helps organizations assess application security posture, reduce existing vulnerability backlogs, and establish continuous AI-powered vulnerability discovery and remediation workflows.

Devin Security Swarm is available globally for enterprise customers.

Cognition is an applied AI lab building the future of software and is the maker of Devin, the AI software engineer. Learn more at Cognition.ai.

Cognition is an applied AI lab building the future of software and is the creator of Devin, the AI software engineer. Devin supports end-to-end engineering tasks, including planning, coding, testing, and security vulnerability remediation, helping teams increase development capacity and take on more complex projects.

Internal Links URLs
https://security.world/cloud-security/
https://security.world/ai-in-security/

External Links URLs
https://www.cognition.ai/


Frequently Asked Questions (FAQs)

1. What is Devin Security Swarm?
Devin Security Swarm is an AI-powered security solution from Cognition designed to find, validate, and remediate exploitable vulnerabilities.

2. How does Devin Security Swarm help security teams?
It helps security teams identify real threats, confirm exploitability, and create remediation fixes within existing engineering workflows.

3. What makes runtime validation important?
Runtime validation helps distinguish genuine exploitable vulnerabilities from findings that may not represent real security risks.

4. What is the Devin Security Program?
The Devin Security Program is a six-week enterprise initiative designed to assess application security and reduce vulnerability backlogs.

5. Who can use Devin Security Swarm?
The platform is available globally to enterprise customers seeking AI-powered security operations support.

Source: cognition.ai
0 Comments