-

Lineaje Launches Continuous Vulnerability Elimination Factory, Powered by Frontier Defense™

CVEF with Frontier Defense continuously and autonomously eliminates all exploitable traditional and novel vulnerabilities, delivering Vulnerability Elimination at the speed of AI with AI.

SANTA CLARA, Calif.--(BUSINESS WIRE)--Lineaje, the pioneer in full-lifecycle autonomous software supply chain security, today announced its Continuous Vulnerability Elimination Factory (CVEF). Built to address the growing vulnerability challenges introduced by AI, CVEF continuously discovers, remediates, and eliminates exploitable vulnerabilities across proprietary code, open source, AI-generated code, and containers. CVEF also incorporates Frontier Defense™, an autonomous engine for detecting frontier AI-generated novel vulnerabilities and generating their verified patches at scale. CVEF integrates Lineaje's Gold Open Source capability to autonomously eliminate vulnerabilities and embedded code attacks in source code, whether introduced by AI tools or human developers.

AI coding assistants have accelerated software development while increasing code and dependency opacity. At the same time, frontier models such as Mythos and Fable are uncovering deep, previously unknown vulnerabilities. Lineaje Labs research shows that the percentage of vulnerabilities considered practically exploitable has risen from roughly 1.5% to more than 90% when attackers leverage frontier AI models. Vulnerabilities once deemed unexploitable are now viable attack paths.

"AI is fundamentally transforming both how software is built and how it's attacked, while regulators are increasingly imposing remediation mandates measured in hours, not weeks,” said Javed Hasan, Co-Founder and CEO of Lineaje. “CVEF with Frontier Defense extends traditional AppSec by enabling enterprises to continuously identify, validate, and remediate all traditional and novel exploitable vulnerabilities within a 24-hour autonomous find-and-fix cycle. Enterprises, even those overwhelmed by vulnerability exposure, can now get to no exploitable vulnerabilities in 90 days and stay there.”

Engineered for Continuous, Automated Vulnerability Remediation

Lineaje CVEF seamlessly integrates into existing enterprise ecosystems to automate the end-to-end remediation lifecycle. Key capabilities include:

CVEF Factory Manager: The operational command center for continuous vulnerability elimination. Orchestrates AI agents, remediation workflows, approvals, validation, and reassessment while providing visibility into factory performance.

Unified Scanner Hub: Continuously scans source code, repositories, dependencies, build artifacts, binaries, and containers with AppSec scanners and selected frontier models to identify vulnerabilities, software supply chain risks, integrity concerns, and emerging threats.

Human Approved Autonomous Remediation: AI agents develop remediation plans, generate fixes, orchestrate testing, and execute approved actions while policy controls and human oversight maintain operational governance.

Zero-Friction Workflows and Audit-Ready Proof: Integrates directly into security pipelines and developers' existing coding environment. CVEF delivers pre-tested, ready-to-approve fixes directly to engineers, reducing developer effort for both traditional and novel vulnerabilities by up to 90%.

Frontier Defense – Vulnerable Code in, Verified Patches Out: Frontier Defense, an add-on module, delivers compatible, verified patches for exploitable novel vulnerabilities discovered by frontier models and LLM-based vulnerability detection platforms. Built on an agentic AI harness, Frontier Defense orchestrates nine fortified AI sandboxes to discover novel vulnerabilities, generate working exploits, and produce compatible remediation patches. A centralized lifecycle system tracks novel vulnerabilities, verified exploits, and generated patches across multiple frontier-model runs, reducing confusion, improving handoffs, and helping security and engineering teams move from discovery to verified remediation faster.

“Organizations are rapidly adopting AI to increase developer productivity and velocity, and we believe software supply chain security needs to be a top priority for risk management programs,” said Melinda Marks, Practice Director, Cybersecurity at Omdia. “Lineaje’s work in this area is valuable as organizations need modern application security capabilities that don’t just alert, but actively assess, remediate, verify, and govern software risk within development workflows. Lineaje’s outcome-based approach directly addresses this operational bottleneck.”

"Enterprises are under pressure to reduce software risk without adding more complexity to already stretched security and development teams," said Srijit Menon, Partner, Digital Trust and National Head, Third Party Risk Management, KPMG in India. "Through our alliance with Lineaje, we are helping organizations take a more proactive and resilient approach to software supply chain security. Innovations complement this effort by helping improve software transparency and vulnerability management. Together, we can bring greater automation, visibility, and governance to complex software ecosystems while reducing risk and strengthening cyber resilience."

CVEF and its AI-powered Frontier Defense capability extend the Lineaje platform, complementing Gold Open Source, SBOM360, UnifAI, and xBOM Manager. Together, these solutions help global organizations establish trusted software foundations, continuously eliminate exploitable vulnerabilities, secure software and AI workloads, and maintain governance and compliance across the software supply chain.

To learn more about Lineaje Continuous Vulnerability Elimination Factory (CVEF), visit: https://www.lineaje.com/cvef.

To download the whitepaper, “Build Secure or Be Forever Insecure,” visit: https://www.lineaje.com/continuous-vulnerability-elimination-whitepaper.

About Lineaje

Lineaje is a full lifecycle autonomous software supply chain and AI security company helping organizations secure software, open source, containers, and AI-generated applications. Its platform provides visibility, governance, remediation, and compliance across the software lifecycle.

As software development increasingly relies on open source, AI-assisted coding, and autonomous development workflows, organizations use Lineaje to reduce risk, automate remediation, secure AI applications, and meet evolving global regulations.

Trusted by leading technology, financial services, and public sector organizations, Lineaje helps enterprises innovate faster while maintaining confidence in the integrity, security, and compliance of their software and AI systems. Learn more at https://www.lineaje.com, read our blog, and follow on LinkedIn.

Contacts

Media Contacts
Fabienne Dawson
Fabienne_dawson@lineaje.com

Touchdown PR
Jessica Luhrman
lineaje@touchdownpr.com

Lineaje


Release Versions

Contacts

Media Contacts
Fabienne Dawson
Fabienne_dawson@lineaje.com

Touchdown PR
Jessica Luhrman
lineaje@touchdownpr.com

More News From Lineaje

Lineaje Recognized as a Visionary in the 2026 Gartner® Magic Quadrant™ for Software Supply Chain Security

SANTA CLARA, Calif.--(BUSINESS WIRE)--Lineaje, the pioneer in full-lifecycle software supply chain security, today announced its positioning as a Visionary in the inaugural 2026 Gartner® Magic Quadrant™ for Software Supply Chain Security. The report evaluated vendors based on their Completeness of Vision and Ability to Execute. As software development rapidly shifts toward AI-assisted and agentic engineering, Lineaje believes this recognition validates its commitment to continuously securing th...

Lineaje Survey: 89% of Organizations Confident in AI Code Security Despite Only 17% Visibility

SARATOGA, Calif.--(BUSINESS WIRE)--Lineaje, the full-lifecycle, autonomous management software supply chain security company, today released findings from its third annual on-site survey conducted at RSA Conference (RSAC) 2026. Results reveal a critical disconnect between enterprise AI adoption and security control. While organizations are racing to deploy AI-generated code at scale, the research highlights a lack of visibility and governance needed to manage these autonomous systems securely....

Lineaje Unveils UnifAI to Secure and Govern Agentic AI

SARATOGA, Calif.--(BUSINESS WIRE)--Lineaje, the full‑lifecycle management software supply chain security company, today announced the launch of Lineaje UnifAI, the industry’s first autonomous AI policy orchestrator designed to help organizations build secure‑by‑design agentic AI applications. As enterprises transition from experimental AI pilots to the large-scale deployment of autonomous agents, they face a critical gap in control and oversight. This challenge is accelerating as low-code platf...
Back to Newsroom