Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

Cisco’s Project CodeGuard brings OWASP-grade security to AI coding assistants

CodeGuard is model-agnostic, supporting multiple AI coding platforms and tools. The framework detects issues like hardcoded secrets, weak input validation, and outdated encryption.

byAytun Çelebi
October 17, 2025
in Cybersecurity, Artificial Intelligence, News

Cisco Systems Inc. has introduced Project CodeGuard, an open-source framework designed to secure software developed with artificial intelligence coding agents. The system integrates security controls across the software lifecycle to harden code from its initial creation.

The framework is engineered to be unified and model-agnostic, allowing it to function with various AI tools. It aims to deliver “secure by default” code by weaving guardrails into multiple stages of development. Cisco specified that Project CodeGuard is not intended as a replacement for engineering judgment but serves as an “added defense-in-depth layer.” This approach complements human oversight rather than supplanting it, reinforcing security throughout the AI-assisted coding process.

At launch, CodeGuard includes a core rule set derived from established industry guidance, including the Open Worldwide Application Security Project (OWASP) and Common Weakness Enumeration (CWE). This initial set targets recurring software flaws. The specific vulnerabilities addressed include hardcoded secrets, missing or inadequate input validation, the use of outdated cryptographic methods, and dependencies on software components that have reached their end-of-life.

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

These rules are applied at distinct phases of development to provide continuous security enforcement. During the planning and specification phase, they steer AI agents toward safer coding patterns. While code is actively being generated, the framework can block the creation of insecure snippets in real time. Following generation, the rules are used for comprehensive review and validation. Project CodeGuard also provides a community-driven ruleset, translators for popular AI coding agents, and validators to assist teams in automating these security measures.

Cisco emphasized that this multi-stage methodology is critical because AI assistants are increasingly involved across the entire software lifecycle, from drafting initial designs and scaffolding services to proposing code fixes. A single rule, such as one governing input validation or secret management, is designed to influence each step. This includes suggesting safer alternatives during generation, flagging risky constructs as they appear, and finally verifying that the completed code properly externalizes secrets and sanitizes all inputs.

Company representatives stated that CodeGuard does not guarantee perfectly secure output and that human peer review and standard security controls remain necessary. The framework’s primary objective is to reduce the probability that “low-hanging” vulnerabilities are introduced into production environments as AI accelerates software delivery schedules. The company’s roadmap for the project includes broader language coverage, adapters for additional AI coding platforms, automated rule validation, and feedback loops to refine rules based on community usage.

To support this evolution, Cisco is inviting security engineers, developers, and AI researchers to contribute to the project. The company has requested submissions of new rules, the construction of additional translators, and telemetry-informed improvements through its public repository.


Featured image credit

Tags: AICiscoCybersecurityProject CodeGuard

Related Posts

Twitch debuts live-shopping tech powered by Amazon Ads and e.l.f.

Twitch debuts live-shopping tech powered by Amazon Ads and e.l.f.

October 17, 2025
Amazon One Medical offers pay-per-visit kids’ virtual care

Amazon One Medical offers pay-per-visit kids’ virtual care

October 17, 2025
Spotify partners with record labels to build “responsible AI” music tools

Spotify partners with record labels to build “responsible AI” music tools

October 17, 2025
Pinterest responds to “AI slop” backlash with new filtering tools

Pinterest responds to “AI slop” backlash with new filtering tools

October 17, 2025
Meta Messenger desktop apps reach end of life in December

Meta Messenger desktop apps reach end of life in December

October 17, 2025
Reddit expands AI-powered search to five new languages

Reddit expands AI-powered search to five new languages

October 17, 2025

LATEST NEWS

Twitch debuts live-shopping tech powered by Amazon Ads and e.l.f.

Amazon One Medical offers pay-per-visit kids’ virtual care

Spotify partners with record labels to build “responsible AI” music tools

Pinterest responds to “AI slop” backlash with new filtering tools

Meta Messenger desktop apps reach end of life in December

Reddit expands AI-powered search to five new languages

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Policy.