כתבה
MarkTechPost ·
Google Open-Sources Mantis: A Modular Skills Toolkit That Lets Coding Agents Find, Reproduce and Patch Vulnerabilities
תקציר מקורי באנגליתGoogle has open-sourced Mantis , a stack-agnostic toolkit of security review skills that lets an AI coding agent run the whole vulnerability lifecycle. It finds a suspected flaw, strips the false positives, reproduces the bug inside a sandbox, writes a minimal patch, re-attacks that patch, and scores the residual risk. Mantis is not a scanner you aim at a repository and walk away from. It is a set of slash commands your existing coding agent loads, plus a strict set of rules about where that agent is allowed to execute code. Is it deployable? Yes for local and internal evaluation, not yet for production. You can clone it today and run it with Gemini CLI , Antigravity CLI, the Google ADK, or any comparable agent framework. The pipeline Mantis publishes each stage as a separate skill directo
קרא במקור המקורי
marktechpost.com
פתח כתבה מקורית