CIO Influence
Application Security CIO Influence News Cloud

Cycode Stays Ahead of Next tj-actions Attack with New Runtime Protection and Agentic AI Teammates

Cycode Stays Ahead of Next tj-actions Attack with New Runtime Protection and Agentic AI Teammates

Cycode Complete ASPM

Cycode, the Complete Application Security Posture Management (ASPM) platform, today announced two major advancements to proactively defend against software supply chain threats and the ever-expanding attack surface: real-time runtime protection via CI/MON memory integrity monitoring, and the launch of a first-of-its-kind Application Security Agentic AI framework known as AI Teammates. These innovations mark a significant leap in the industry’s ability to detect, prevent, and respond to sophisticated attacks like the recent tj-actions-style breaches that compromised CI/CD infrastructure and developer credentials.

From Copilot to Crew: Meet Your AI Teammates

Cycode is introducing AI Teammates—a new generation of Agentic AI that augments human-led application security with action-oriented agents for the most common and high-impact workflows. Where previous AI integrations focused on copilots and assistants, Cycode’s AI Teammates operate like members of your security crew: informed, autonomous, and able to carry out tasks across detection, prioritization, and remediation.

Also Read: CoreWeave Launches NVIDIA GB200 Grace Blackwell Systems at Scale

The first cohort of Cycode AI Teammates includes:

  • Risk Intelligence Graph Agent – The agent taps directly into Cycode’s Risk Intelligence Graph (RIG) to provide hard-to-find answers across code repositories, build workflows, secrets, dependencies, cloud assets, and more.
  • Change Impact Analysis Agent – Monitors code changes across pull requests and detects material changes that significantly alter risk posture.
  • Exploitability Agent (SAST & SCA) – Enables security teams and developers to distinguish between theoretical vulnerabilities and truly exploitable ones that are buried in scan results.
  • Fix & Remediation Agent – Goes beyond “suggesting a fix” and instead analyzes the root cause, understands the surrounding context, and proposes code fixes that match your frameworks, coding patterns, and even variable naming.
  • Model Context Protocol (MCP) – The resource and tools layer that equips the AI Teammates with the data and capabilities needed to perform their goal. It enables every teammate to reason with full organizational context, not just isolated files or scan results. Think of it as the “operating system” for your AI teammates.

“As the era of the 10X developer accelerates and ‘vibe coding’ becomes the norm, security teams are drowning in vulnerabilities they can’t keep up with. At Cycode, we believe the answer is smarter, autonomous AI agents that work alongside security teams as teammates identify, prioritize, and fix issues before they become threats,” said Roni Gurvich, Head of AI at Cycode.

Also Read: How Network Tooling Impacts IT Professionals’ Job Performance and Satisfaction

[To share your insights with us as part of editorial or sponsored content, please write to psen@itechseries.com]

Related posts

Windstream Enterprise Debuts Secure Flex Premium with Fortinet for Agile Digital Growth

Business Wire

Detectify Revolutionizes Vulnerability Assessments with Fully Autonomous AI-Built Security Tests

Camunda Streamlines Hybrid Workflows for Process Automation

CIO Influence News Desk