Qwiet AI Extends Microsoft Support in Platform for Fixing Vulnerabilities - DevOps.com
Briefly

Qwiet AI extended its application security platform with deeper integrations into Azure DevOps, Azure Boards and GitHub. The platform uses AI agents to discover and remediate vulnerabilities in code. Enhancements include webhook notification support, automated data export, expanded secrets configuration and minor UI improvements. Beta observability graphs and reports provide deeper vulnerability trend analysis. AutoFix AI agents now analyze SARIF for non-CPG projects and include policy support for Swift code used in macOS applications. Stuart McClure noted widespread use of Microsoft AI coding tools increases the need for scanning and automated remediation at scale.
Qwiet AI today extended the reach of its application security platform that uses artificial intelligence (AI) agents to discover and remediate vulnerabilities in code to now provide deeper integrations with Azure DevOps, Azure Boards and GitHub platforms from Microsoft. The company has also enhanced its support for webhook notifications, automated data export processes, expanded secrets configuration and made minor user interface (UI) enhancements.
The challenge is that much of that code can contain vulnerabilities because the AI models that were relied on by AI coding tools were trained using examples of flawed code. Unfortunately, too many developers put too much faith in the output of AI coding tools. In some cases, the code created by an AI coding tool might be more secure than the code an inexperienced developer might create, but there is no way to tell without scanning it.
Read at DevOps.com
[
|
]