AWS Security Agent adds threat modeling, code scanning, and IDE integrations across development lifecycle
By
@channyun
Pure flour-power. Hearty enough to carry you through lunch.
Summary
AWS Security Agent (now part of AWS Continuum), previewed at re:Invent 2025, is a frontier security agent that proactively secures applications across the development lifecycle. It offers on-demand penetration testing with exploitability-verified risk reporting, STRIDE-based threat modeling, full repository and PR code scanning with remediation across major Git platforms, and IDE integrations via Kiro power, Claude Code plugin, and MCP — enabling developers to run security reviews and fix issues without context switching.
Key quotes
· 3 pulledAt re:Invent 2025, we previewed AWS Security Agent (now part of AWS Continuum), a frontier agent that proactively secures your applications throughout the development lifecycle across all your environments.
You can perform on-demand penetration testing customized to your application, discovering and reporting security risks verified through exploitability testing.
AWS Security Agent now adds STRIDE-based threat modeling, full repo and PR code scanning with remediation across major Git platforms, and IDE integrations via Kiro power, Claude Code plugin, and MCP.
You might also wanna read
Amazon Nova: AI Agent Platform on AWS for Building Reliable Agents
Amazon Nova is an AI agent platform on AWS that enables developers to build reliable AI agents. It represents a new generation of foundation
Infrabase: AI DevOps Agent for Cloud Security and Cost Management
Infrabase is an AI DevOps agent that scans code and organizational context to identify security vulnerabilities, cost spikes, and policy vio
Building Scalable Agent Infrastructure: From AWS Lambda to Unikraft Micro-VMs
Browser Use shares their technical journey from running web agents on AWS Lambda to developing a more robust infrastructure using Unikraft m
SecureLend Agents: AI underwriting tool for VCs, lenders, and insurers
SecureLend Agents is an AI-powered underwriting tool designed for venture capitalists, lenders, and insurers. It addresses the problem of pr
Sandbox-agent: Remote Control Server for Coding AI Agents via HTTP
Sandbox-agent is a server tool that enables remote control of coding AI agents (Claude Code, Codex, OpenCode, Cursor, Amp, Pi) within sandbo
Cognitora: AI Agent Compute Platform for Secure Code Execution
Cognitora is a cloud platform specifically designed for executing AI-generated code, providing secure compute infrastructure for AI agents w
