AI is writing code at machine speed.
Now, your security can close the gap with the Snyk AI Security Fabric.
Learn more about the industry’s first security layer for continuous defense across the entire SLDC here 👉 https://t.co/C5MQ3g8QpA
Open source maintainers drowning in vuln debt?
Snyk: 6 vulns detected for every 1 fixed. AI code = 65-70% of prod, half vulnerable.
Today: Snyk Remediation Agent in the CLI — available to ALL open source maintainers + customers in their own envs.
Not raw Claude. Deep Snyk harness + multi-frontier models.
The results:
• Fix rate ~doubled (23% → 45%)
• Crit/High/Med: 44% → 91%
• Token cost/fix: -61%
Its the same power that let Labelbox erase 2-year debt in 2 weeks + Relay Network fix criticals in 24h (zero crit/high issues).
Paired with last week’s Evo COS it’s a complete ecosystem to find + fix at scale.
Blog: https://t.co/XwdkQ6yv6m
#DevSecOps #OpenSource #AI
Incredible lineup with @snyksec, @klaviyo, @cursor_ai, @CarGurus talking about how teams are building with AI. Lots of discussion about how jobs are changing (identify crisis is real for many), how teams are using different tools and skills and more.
Answers to burning questions:
Does every PR get reviewed by a Human? No according to Cursor.
Are junior engineers still getting hired?Yes according to Klaviyo.
What KPIs folks are using to measure success (ROI, speed to impact, code half life, decrease in code issues/incidences, failures, security).
Thank you @klaviyo for being a @Techweek_ sponsor!
#BOSTechWeek
@snyksec I learned how little I know about vibe coding and security. SNYK is now part of my tech stack. Definitely appreciate the free tier to find out what it's all about. Recommend others do too.
Excited to share my own AI Innovation learnings and lessons from conversations with 100s of leading companies and labs at the Paris @RaiseSummit Foundation Track
@snyksec#aisecurity#agenticdevelopment
Can you verify that your AI applications are secure?
Join us, sponsor @snyksec, and a panel of experts on June 18th for this FREE webcast on the OWASP AI Security Verification Standard and AI-native application security.
Register now: https://t.co/aCbOx8lQyG
#OWASP#DevSecOps
The most important conversation you'll have this year is with someone who isn't answering your cold email.
Not because they’re ignoring you. Because they're heads-down building.
The one place where those conversations happen naturally is in person.
Proximity is the ultimate currency in AI.
RAISE Summit 2026 brings together the companies building the foundation, the frontier, and everything in between. From hyperscalers to dev tooling, from enterprise to financial, here's who's in the room.
Headlining it all:
@IREN_Ltd and @cognition
The diamond tier:
@Snyksec, @Nscale, @togethercompute, @Cursor_ai
The infrastructure powering the frontier:
@CoreWeave, @Nebiusai, @Vultr, @WEKAIO, @SambaNovaAI, @Baseten, @CrusoeAI, @DDNintelligence and more.
The builders' toolkit:
@ElevenLabs , @JetBrains, @GetSentry, @Modal, @Glean, @FireworksAI_HQ, and the rest of the AI-native stack.
The enterprise + financial backbone:
@BankofAmerica, @Stripe, @MongoDB, @Datadoghq, @Alibaba_cloud, @Lenovo, @NetApp and more.
9,000+ attendees. 2,000+ companies. 350+ speakers. 80% C-level and founders.
July 8-9 2026 · Carrousel du Louvre, Paris
Last chance: Save 25% before MIDNIGHT
🎟️ Secure your ticket: https://t.co/v0cdLgYS7a
@aszx87410@snyksec For more info about the 'Phantom Gyp' technique used by recent malicious NPM packages, check out the "The novel part: install-time execution through binding.gyp" of the following article from Snyk:
https://t.co/NTsEtiT8rJ
Most enterprises are securing the wrong layer. The conversation has fixated on agents in production, but the deeper shift is upstream: software is increasingly being written by agents, not developers.
That moves the security question from "is this code secure?" to "can we trust the system that created it?"
It's a gap that introduces three security problems that no existing category was built to solve:
1. The supply chain the agent depends on: MCP servers, skills, plugins
2. The agent's behavior at runtime: tool calls, shell access, network traffic
3. The code the agent ships: it passes tests but breaks at authorization, trust boundaries, and business logic.
This July 9, Manoj Nair (@mnair1), Chief Innovation Officer at @Snyksec, addresses these frictions during his Keynote, “Agentic Development Security: The Three Problems Nobody Was Solving, and the One That Matters Most for 2026.”
Snyk knows security. Agents know the app. Neither works alone.
If you're a senior leader shaping security strategy, the AI Security Summit (July 7), hosted by Snyk during RAISE Week, is where this conversation continues
✉️ Apply for an invitation: https://t.co/av9c6UT2CS
Your AI coding assistant is only as good as the context it works with 🥸
Without security intelligence behind it, you're getting code that works but not code that's ready to ship.
Join in this Thursday, June 11th to see exactly how it works.
Register: https://t.co/QRqG5IOuUJ
Snyk is heading to the Silicon Valley Cybersecurity Conference! Join us June 11th at San José State University to learn more about our Snyk Learn and University Partnerships Program.
Learn more here: https://t.co/6XQYs7aueX
A new npm supply chain worm is spreading by hiding in binding.gyp.
Snyk detects and lists all 57 affected packages with advisories in the Vulnerability Database and a live incident page updated as new malicious versions are confirmed.
Full breakdown: https://t.co/DsCCFM5DAo
For the first time the AI Engineer World's Fair has a dedicated AI Security track and Snyk is proud to be the presenting partner.
Join us in San Francisco, Jun 29 – July 2 for sessions built around the belief that security starts at inception.
More here: https://t.co/F0B5GH4fYb
As Liran Tal (@liran_tal) continues his session at AI Native DevCon, one thing is clear:
AI agent security is no longer a future problem.
From malicious SKILL.md files to prompt injection and agent supply chain attacks, today's talk highlighted why security needs to be built into every agent workflow from day one.
The good news? The conversation is just getting started.
More sessions are coming up live from AI Native DevCon:
https://t.co/3FwIyt7y7R
Join free virtually:
https://t.co/YG3HM6TaFB
And for those in London, we'll see you at the Conference Party tonight.
Great talk on Agent Skills and the potential attack vector they offer @ainativedev in London.
I should probably be reading the contents of Agent Skills I install more often… 🙋♂️
P.S. @liran_tal is one of the best in the biz!
Liran Tal ( @liran_tal ) has just taken the stage at AI Native DevCon.
37% of nearly 4,000 AI agent skills analyzed contained malware or security weaknesses.
Liran will be showing how attackers are targeting agent ecosystems and what developers can do to defend against it.
Watch live:
https://t.co/W7a8kHJ7Ix
Register for the virtual session now to get updated:
https://t.co/uU8vvK0hux
If you've paid any attention in the last couple weeks, you know zero-days aren't slowing down 🥵
When a new one hits, the first question is always the same: are we impacted? Snyk's Zero Day Report gives you the answer instantly.
See in action below.