Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities

July 27, 2026

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

July 27, 2026

SourTrade Malvertising Campaign Secretly Builds Malware in the Browser

July 27, 2026
Facebook X (Twitter) Instagram
Monday, July 27
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities
News

Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities

Team-CWDBy Team-CWDJuly 27, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Google’s DeepMind on Tuesday announced the release of Gemini 3.5 Flash Cyber, a specialized artificial intelligence (AI) model built atop 3.5 Flash that’s designed to discover, validate, and patch vulnerabilities quickly and efficiently.

According to the tech giant, the model will be exclusively available to governments and trusted partners via CodeMender as part of a limited-access pilot program. CodeMender is an AI-powered agent for vulnerability discovery and patching that was unveiled by the company in October 2025.

A Google DeepMind spokesperson told The Hacker News that there are plans to extend the model’s capabilities to include red-teaming features and end-to-end enterprise defense.

The lightweight model, per DeepMind, is both cost-efficient and highly capable alternative to large, costly cybersecurity-focused models. CodeMender can call upon 3.5 Flash Cyber “multiple times at high speed and low cost,” allowing the AI agent to scan more code paths and find vulnerabilities.

The release of 3.5 Flash Cyber comes alongside Gemini 3.6 Flash and 3.5 Flash-Lite, which are optimized for improved coding, knowledge work, and multimodal performance and low-latency tasks, respectively.

“Given the dual-use nature of this technology, we have taken an intentional approach to how we deploy 3.5 Flash Cyber,” Raluca Ada Popa, DeepMind’s Gemini Security Lead, and Four Flynn, vice president of security and privacy at DeepMind, said in a blog post shared with The Hacker News ahead of publication.

“As part of a limited-access pilot program, 3.5 Flash Cyber will be exclusively available to governments and trusted partners via CodeMender, expanding over time. This will give frontline defenders a head start in finding and fixing critical vulnerabilities before they can be exploited, while mitigating against broader misuse.”

Since 3.5 Flash Cyber runs solely inside CodeMender, it’s easy to configure guardrails that specifically enable only the AI agent’s defense functions while disabling other cyber activity, the spokesperson added. This is to prevent scenarios where a model refuses to handle scenarios that prohibit defenders from performing AI-assisted forensic analysis.

In evaluations conducted by the AI research laboratory, 3.5 Flash Cyber has been found to outperform Gemini 3.5 Flash and 3.6 Flash when it comes to unearthing new vulnerabilities in codebases. Additional stress-testing of the model on complex projects like Google Chrome and Apple Safari has revealed it to have “significantly” surpassed Gemini 3.5 Flash, 3.6 Flash, and Anthropic Claude Opus 4.6.

“3.5 Flash Cyber consistently discovered more unique vulnerabilities compared with 3.5 Flash and Claude Opus 4.6,” it pointed out. “When tested on the highly complex V8 JavaScript Engine across a fixed number of invocations, Gemini 3.5 Flash Cyber found 55 unique confirmed issues, compared to 47 found by Gemini 3.5 Flash and 36 found by Opus 4.6, including 10 issues that no other model caught.”

Like in the case of Anthropic and OpenAI, Google has put 3.5 Flash Cyber to the test to uncover remote code execution vulnerabilities in public APIs and a memory-corruption vulnerability in a sensitive production service. The model is also said to have produced a 100% reliable remote-code execution exploit that bypassed standard mitigation techniques like Address Space Layout Randomization (ASLR) and Write XOR Execute (W^X).

Google said it’s separately bringing CodeMender’s foundational capabilities directly to customers with generally available Gemini models through the Gemini Enterprise Agent Platform.

“By powering CodeMender with 3.5 Flash Cyber, we’re providing a highly capable, scalable, and affordable architecture designed to help more defenders secure software,” it added.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleCritical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
Team-CWD
  • Website

Related Posts

News

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

July 27, 2026
News

SourTrade Malvertising Campaign Secretly Builds Malware in the Browser

July 27, 2026
News

Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access

July 27, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Managing risks to your loved one’s digital estate

April 2, 2026

In memoriam: David Harley

November 12, 2025

How cybercriminals are targeting content creators

November 26, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.