Operations | Monitoring | ITSM | DevOps | Cloud

How Harness orchestrates LLM security scanning

Large language models are effective at security review for the same reason they are effective at many other tasks: they reason rather than pattern match. In plain terms, a traditional scanner checks code against a list of known bad patterns, the way a spell checker flags a misspelled word, regardless of what the sentence means. An LLM can instead follow the program's logic: trace a piece of attacker-controlled input through several layers of application code to determine whether it is reachable.

Your AI coding gains are stuck before the code is even written

At some point this year, you likely approved a request to expand AI coding tool access across the team. The pitch was straightforward: engineers write code faster, the team ships more, the investment pays for itself. The first half happened. Engineers are writing code faster. If you're now being asked whether the investment paid off, and you're finding the honest answer is more complicated than a yes, you are not alone, and you have not been sold something broken.

Cribl On Your Coffee Break Episode 18 - All About AI

With 3 more days to go, we’ve finally arrived at the AI episode in the Cribl on your coffee break series. Today we’ll touch on a few of the many ways we’ve enabled Cribl to use AI, and also to help you manage the data generated by AI-enabled tools. By the time the month is over, you will have a pretty good idea of what Cribl can do, and how to do it. You’ll also have consumed more caffeinated beverages than is strictly appropriate...

Vulnerability Fatigue: When Discovery Outpaces Remediation Capacity

Recent findings from Anthropic’s Project Glasswing offer a useful indication of where vulnerability discovery may be heading. Anthropic reported that it and its partners had used Claude Mythos Preview to identify more than 10,000 high- or critical-severity vulnerabilities across the software they reviewed. More significantly, Anthropic reported that the bottleneck had shifted from finding vulnerabilities to having the capacity to verify, disclose, and patch them.

Foundation first: Why building a resilient IT infrastructure is your path to AI-readiness

Strategically ready, operationally unsure. That's how 42% of organizations describe their own AI preparedness when it comes to strategy versus infrastructure, data, risk, and talent, according to Deloitte's State of AI in the Enterprise 2026 report. As AI adoption accelerates, organizations now face the mounting pressure from the board to move past pilots and show AI delivering measurable business outcomes.

Harness Brings Dynamic AI Discovery and Runtime Security to Amazon Bedrock AgentCore Gateway

New integration gives security teams continuous visibility and real-time threat detection across agent interactions on AWS Today, Harness announced a new integration with Amazon Bedrock AgentCore Gateway that helps enterprises discover and secure the AI agents, tools, and resources operating across their AWS environments. The integration brings Harness’ AI posture management and AI firewall to agent interactions flowing through AgentCore Gateway.

When AI Agents Attacked Their Own Evaluators, the Industry's Own Leaders Started Asking for Guardrails

When AI agents attacked their own evaluators in July 2026, it exposed a gap no policy commitment can close. The OpenAI Hugging Face incident revealed that enterprise agent governance requires in-flow runtime controls, not retrospective auditing or industry safety agreements.