Elite AI hackers aren’t born. They’re trained.
Dark Reading covered Novee Security's Cordyceps findings, highlighting how attackers can exploit CI/CD workflow weaknesses to hijack repositories at some of the world's largest organizations — no special privileges required.
Novee Security's research on Cordyceps CI/CD vulnerabilities was covered by The Hacker News — exposing how over 300 GitHub repositories, including those of Microsoft, Google, and Cloudflare, are vulnerable to…
Our CEO Ido Geffen explains why more security findings don't automatically mean better protection — and what actually reduces real risk.
Our CEO Ido Geffen was featured in the Forbes Technology Council sharing his insights on AI security testing.
Novee Security found a CVSS 10.0 flaw in Gemini CLI that silently executed attacker-controlled content before sandbox initialization — exposing secrets, credentials, and source code across CI/CD workflows.
Novee Security discovered a CVSS 10.0 flaw in Google's Gemini CLI allowing arbitrary host command execution before sandbox initialization — patched across all affected versions.
Novee Security discovered a critical RCE flaw in Gemini CLI that exposed CI/CD pipelines to supply chain attacks. Google has issued a patch.
SecurityWeek reports on Novee’s launch of autonomous AI red teaming for LLM applications.
Help Net Security reports on Novee’s launch of autonomous AI red teaming for LLM applications.
Get the latest insights on AI, cybersecurity, and continuous pentesting delivered to your inbox