Sign in

aikido | no bullsh*t security for devs

@aikidosecurity.bsky.social
508 followers 274 following 139 posts

No bullsh*t security for devs. Secure code, cloud, and runtime in one central system. fix issues automatically. Get back to building. 🔗 aikido.dev

PostsRepliesMedia
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/10/2026
Check out our FedRAMP marketplace listing here: www.fedramp.gov/marketplace/...
fedramp.gov
Knox Systems | FedRAMP Marketplace
Knox Systems provides a multi-tenant cloud platform for delivering commercial software to federal government customers. Customer applications deploy on Knox's
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/10/2026
We got there fast, with an internal team bringing more than 15 years of US federal security experience and Aikido's own platform doing the work inside the authorization itself. Read the full story: www.aikido.dev/blog/aikido-...
aikido.dev
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/10/2026
Big news: Aikido Security has achieved FedRAMP Moderate authorization. 🇺🇸 Aikido's AI-native security platform, adopted by 150,000 teams, is now available to federal agencies handling sensitive information and mission-critical systems through Aikido for Government.
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 09/09/2026
Mean tweets, Aikido edition 💜🥋
011
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 08/09/2026
Introducing Code Coverage 🚀 See how much of your code your tests actually cover, per repository, file, and line, now inside Aikido Code Quality. Learn more: help.aikido.dev/code-quality...
000
Reposted by aikido | no bullsh*t security for devs
C:\hantel @signed-ro0t.bsky.social · 06/08/2026
@aikidosecurity.bsky.social
011
Reposted by aikido | no bullsh*t security for devs
Help Net Security @helpnetsecurity.com · 27/08/2026
Two alleged TeamPCP hackers arrested over global supply chain attacks 🔗 Read more: www.helpnetsecurity.com/2026/08/27/a... #Australia #cybercrime #cybersecurity @aikidosecurity.bsky.social
helpnetsecurity.com
Two alleged TeamPCP hackers arrested over global supply chain attacks - Help Net Security
Two alleged TeamPCP hackers were arrested in Australia over cyberattacks that compromised more than 1,000 organizations worldwide.
011
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/08/2026
Offense is your best defense. Meet Aikido Machine → www.aikido.dev/attack/aikid...
aikido.dev
Aikido Machine | AI pentesting entirely under your control
Aikido Machine is a GPU appliance that runs continuous penetration tests on your critical applications, fully within your premises. For regulated industries.
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/08/2026
Aikido Machine is a GPU server that runs continuous pentests on your critical applications, fully within your premises. Built for the regulated industries, and powered by our acquisition of Milou to bring AI pentesting fully on-prem.
aikido.dev
Aikido Machine | AI pentesting entirely under your control
Aikido Machine is a GPU appliance that runs continuous penetration tests on your critical applications, fully within your premises. For regulated industries.
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 06/08/2026
🔥 Introducing Aikido Machine, on-prem AI pentesting entirely under your control. Attackers use AI to find and weaponize vulnerabilities faster and cheaper than ever. Now you can find them first, without your code ever leaving your network.
220
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 22/07/2026
It's 10PM somewhere → 10pm.dev
031
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 15/07/2026
Aikido Supply is here 🥋💜 From Anti Magic Quadrant Club to Infinite, every campaign we've ever shipped now has a home. Aikido Supply runs on coins. Got a code? Redeem it. No code? Request yours -> aikido.supply
000
Reposted by aikido | no bullsh*t security for devs
Help Net Security @helpnetsecurity.com · 24/06/2026
Security testing was built for a slower world 📖 Read more: www.helpnetsecurity.com/2026/06/24/a... #cybersecurity #cybersecuritynews #AI #securitytesting #penetrationtesting @aikidosecurity.bsky.social
helpnetsecurity.com
Security testing was built for a slower world - Help Net Security
AI-driven software delivery is exposing gaps in security testing, leaving teams with outdated findings and blind spots.
011
Reposted by aikido | no bullsh*t security for devs
Techmeme @techmeme.com · 30/06/2026
Cybersecurity company Aikido Security acquires Root, which has raised about $31M and develops an AI platform for securing open-source components (Meir Orbach/CTech) Main Link | Techmeme Permalink
042
Reposted by aikido | no bullsh*t security for devs
De Tijd @tijd.be · 30/06/2026
Unicorn Aikido doet met Root grote overname: deal van meer dan 50 miljoen dollar
tijd.be
Unicorn Aikido doet met Root grote overname: deal van meer dan 50 miljoen dollar
Het Gentse cybersecuritybedrijf Aikido koopt sectorgenoot Root, de vierde overname in korte tijd voor de Scale-up van het Jaar 2025. Het zou gaan om een overname van meer dan 50 miljoen dollar.
022
Reposted by aikido | no bullsh*t security for devs
Thomas Smolders @ljosmyndun.bsky.social · 01/07/2026
Ooit zou het andersom zijn geweest, maar de tijden zijn veranderd: de Belgische unicorn Aikido, dat onlangs een beursticker op NYSE heeft aangevraagd, koopt de startup Root voor 50 miljoen: www.tijd.be/ondernemen/t...
tijd.be
Unicorn Aikido doet met Root 'by far' grootste overname: deal van ruim 50 miljoen dollar
Het Gentse cybersecuritybedrijf Aikido koopt sectorgenoot Root, de vierde overname in korte tijd voor de Scale-up van het Jaar 2025. Het zou gaan om een deal van meer dan 50 miljoen dollar.
051
Reposted by aikido | no bullsh*t security for devs
The New Stack @thenewstack.io · 01/07/2026
The $70M deal folds Root's patching technology into Aikido's platform, with critical fixes going back to the open source community for free.
bit.ly
Aikido acquires Root to backport open source fixes without forcing upgrades
The $70M deal folds Root's patching technology into Aikido's platform, with critical fixes going back to the open source community for free.
011
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 30/06/2026
💜🤝🌱 Aikido acquires Root. Uniting behind one mission: make it easy to build with secure open source and take on supply chain attacks. Read more: www.aikido.dev/blog/aikido-...
030
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 24/06/2026
Featuring insights from Lovable, OWASP, IDC, Frost & Sullivan, Latio and more. Get the full report: www.aikido.dev/state-of-ai-...
aikido.dev
State of AI in Pentesting
Discover how AI is transforming penetration testing. Insights from 400 security and engineering leaders reveal why traditional testing is struggling to keep pace and what organizations expect from the...
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 24/06/2026
Key findings: • 76% deploy significant changes weekly or faster • Only 21% validate security on every release • 48% say pentest findings are already outdated when they arrive • 76% have had to stop, restrict, or roll back AI-driven behaviour due to security or safety concerns
aikido.dev
State of AI in Pentesting
Discover how AI is transforming penetration testing. Insights from 400 security and engineering leaders reveal why traditional testing is struggling to keep pace and what organizations expect from the...
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 24/06/2026
🔥 JUST DROPPED: State of AI in Pentesting 2026 Software is shipping faster than testing can keep up. We surveyed 400 CISOs, CTOs, and senior engineering leaders across Europe and the US to understand how AI is changing security testing.
110
Reposted by aikido | no bullsh*t security for devs
Docker @docker.com · 24/06/2026
The expo floor closes. Time for the AI conversations you won't find on stage. If you're at AI Engineer World's Fair, join Docker, Tailscale, Aikido Security, Inngest, and Rootly AI for drinks, darts, and good company. 📍 Golden Eye Social, SF 🕕 July 1, 6PM → lu.ma/2avil0ni
lu.ma
AI Engineer World's Fair Afterparty w/ Tailscale, Aikido Security, Docker, Inngest & Rootly AI · Luma
The expo floor is closing, your brain is full of vector databases, and it's time to trade the keyboard for some competitive throwing. Join Tailscale, Docker,...
011
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 23/06/2026
💜🤝
010
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 23/06/2026
Read more: www.aikido.dev/blog/drydock...
aikido.dev
Aikido Partners with Drydock to Bring Pre-Publish Malware Review to npm and PyPI
Aikido partners with Drydock to bring pre-publish package review to npm and PyPI. See exactly what's inside a release before it ships, malware caught before download number one.
010
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 23/06/2026
npm recently added staged publishing, but maintainers still can't see what's inside the package they're approving. We're partnering with drydock.org so maintainers see exactly what's inside a package before approving it. Available for free for maintainers of npm and PyPI packages.
140
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 17/06/2026
Start your code audit today: www.aikido.dev/code/code-au...
aikido.dev
Code Audit | Code Analysis That Reasons | Aikido Security
Discover complex vulnerabilities like broken auth, IDORs & business logic flaws hidden in your code. AI-powered reasoning finds what static scanners miss.
110
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 17/06/2026
Introducing Aikido Code Audit 🔥 Find complex vulnerabilities hidden in your codebase. The kind static analysis can’t catch and traditionally only a pentest would surface. Code Audit finds them straight from your repo, with agents reasoning across your codebase, languages, services, and permissions
271
Reposted by aikido | no bullsh*t security for devs
Jordi Boggiano @seld.be · 28/05/2026
📦 Composer 2.10 is out. Native malware filtering via @aikidosecurity.bsky.social (enabled by default on Packagist), a unified config.policy framework for advisories/abandoned/malware, and source fallback now deprecated. blog.packagist.com/composer-2-1... #php #phpc #composerphp
blog.packagist.com
Composer 2.10 Release
We are excited to announce the release of Composer 2.10.0, introducing native malware filtering and consolidated future-proof customizable dependency policy configuration to control the handling of se...
01710
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 23/05/2026
Where did you send us a message?
110
Reposted by aikido | no bullsh*t security for devs
Hacker & Security News @hacker.at.thenote.app · 30/04/2026
SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware. According to reports from Aikido Security… #hackernews #news
thehackernews.com
SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack
Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware. According to reports from Aikido Security, SafeDep, Socket, StepSecurity, and Google-owned Wiz, the campaign – calling itself the mini Shai-Hulud – has affected the following packages associated with SAP's JavaScript and cloud application
032
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 21/04/2026
Powered by Aikido Intel. Build fearlessly → aikido.dev/protect/endpoint-protection
aikido.dev
Endpoint security for developer workstations | Aikido Security
Block malicious packages before install. Monitor AI tools across every developer workstation. One agent, deployed through your MDM. No new infrastructure.
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 21/04/2026
Introducing Aikido Endpoint Protection. Developer devices have been under attack. In the last few months alone, Shai Hulud, TeamPCP, Axios, and Vercel were all compromised through developer devices. Aikido Endpoint Protection secures everything your devs install before it reaches the device.
131
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 01/04/2026
We’ve been gatekeeping this for a while… Introducing Snake Oil™ Next-generation fragrance. Purpose-built. Military-grade. Cloud-native. Agentic essence. Compliant. “CISO-approved” in some states. No, we won’t tell you what it costs. Just smell it → aikido.dev/perfume (Results may vary)
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 12/03/2026
👀 -> betterleaks.com
betterleaks.com
betterleaks
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 12/03/2026
Betterleaks is designed to scan faster, detect secrets more accurately, and make validation and rule creation more flexible. Oh, and your AI agent can use it too. It's an easy drop-in replacement. Simply put, a better secrets scanner. Read the full announcement -> aikido.dev/blog/betterl...
aikido.dev
Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning
Betterleaks is a new open source secrets scanner from the creator of Gitleaks. A drop-in replacement with faster scans, token efficiency detection, configurable validation, and more.
011
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 12/03/2026
Introducing Betterleaks, a new open source secrets scanner built by the original creator of Gitleaks, Zach Rice.
231
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 26/02/2026
Read More: www.aikido.dev/blog/introdu...
aikido.dev
Aikido Infinite: Continuous AI Pentesting for Every Release
Aikido Infinite runs AI penetration testing on every code change, validates exploitability, generates patches, and retests fixes before code hits production, making self-securing software a reality.
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 26/02/2026
Software can now secure itself. → www.aikido.dev/attack/infin...
131
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 18/02/2026
Self-securing software is coming to RSAC. Yes, it's Matrix themed.
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 09/02/2026
This is NOT a Super Bowl ad
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 14/01/2026
From “no bullsh*t security” to $1 billion valuation in three years. Announcing $60M Series B at $1B led by Tom Stafford at DST Global. What’s next? Self-securing software. Stay tuned.
021
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 24/12/2025
feeling ✨ seasonal ✨ meet Jarno -> www.aikido.dev/meetjarno
000
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 10/12/2025
Turn alert overload into instant clarity. Security Zen awaits.
031
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
Full research on "PromptPwnd" here: www.aikido.dev/blog/promptp...
aikido.dev
Prompt Injection Inside GitHub Actions: The New Frontier of Supply Chain Attacks
AI-driven GitHub Actions expose new prompt-injection supply chain vulnerabilities.
020
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
2) Or use aikido, which automatically identifies unsafe AI prompt flows in our free tier: app.aikido.dev
app.aikido.dev
Aikido Security
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
How to check if you are affected: 1) Scan your GitHub Action files using Opengrep (we provides rules: github.com/AikidoSec/op...
github.com
GitHub - AikidoSec/opengrep-rules
Contribute to AikidoSec/opengrep-rules development by creating an account on GitHub.
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
Recommendations: • Remove or restrict privileged tools available to AI agents • Never send untrusted PR/issue content directly into AI prompts • Treat AI-generated output as untrusted code • Limit the blast radius of GitHub tokens (IP-restricted tokens recommended)
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
If you use AI agents in GitHub Actions/GitLab CI/CD check your pipelines immediately.
100
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
What we found: • Confirmed exposure in 5 F500 companies • Google’s Gemini CLI repository was also impacted (fixed) • Vulnerability pattern is already present in real-world workflows • Likely affects many more orgs using AI agents in CI/CD
110
aikido | no bullsh*t security for devs @aikidosecurity.bsky.social · 04/12/2025
Attackers can submit crafted issues/PRs that trick the AI into executing privileged GitHub CLI commands – leaking secrets or modifying CI/CD workflows.
100