CVEF with Frontier Defense continuously and autonomously eliminates all exploitable traditional and novel vulnerabilities, delivering Vulnerability Elimination at the speed of AI with AI.
SANTA CLARA, Calif.--(BUSINESS WIRE)--Lineaje, the pioneer in full-lifecycle autonomous software supply chain security, today announced its Continuous Vulnerability Elimination Factory (CVEF). Built to address the growing vulnerability challenges introduced by AI, CVEF continuously discovers, remediates, and eliminates exploitable vulnerabilities across proprietary code, open source, AI-generated code, and containers. CVEF also incorporates Frontier Defense™, an autonomous engine for detecting frontier AI-generated novel vulnerabilities and generating their verified patches at scale. CVEF integrates Lineaje's Gold Open Source capability to autonomously eliminate vulnerabilities and embedded code attacks in source code, whether introduced by AI tools or human developers.




AI coding assistants have accelerated software development while increasing code and dependency opacity. At the same time, frontier models such as Mythos and Fable are uncovering deep, previously unknown vulnerabilities. Lineaje Labs research shows that the percentage of vulnerabilities considered practically exploitable has risen from roughly 1.5% to more than 90% when attackers leverage frontier AI models. Vulnerabilities once deemed unexploitable are now viable attack paths.
"AI is fundamentally transforming both how software is built and how it's attacked, while regulators are increasingly imposing remediation mandates measured in hours, not weeks,” said Javed Hasan, Co-Founder and CEO of Lineaje. “CVEF with Frontier Defense extends traditional AppSec by enabling enterprises to continuously identify, validate, and remediate all traditional and novel exploitable vulnerabilities within a 24-hour autonomous find-and-fix cycle. Enterprises, even those overwhelmed by vulnerability exposure, can now get to no exploitable vulnerabilities in 90 days and stay there.”
Engineered for Continuous, Automated Vulnerability Remediation
Lineaje CVEF seamlessly integrates into existing enterprise ecosystems to automate the end-to-end remediation lifecycle. Key capabilities include:
CVEF Factory Manager: The operational command center for continuous vulnerability elimination. Orchestrates AI agents, remediation workflows, approvals, validation, and reassessment while providing visibility into factory performance.
Unified Scanner Hub: Continuously scans source code, repositories, dependencies, build artifacts, binaries, and containers with AppSec scanners and selected frontier models to identify vulnerabilities, software supply chain risks, integrity concerns, and emerging threats.
Human Approved Autonomous Remediation: AI agents develop remediation plans, generate fixes, orchestrate testing, and execute approved actions while policy controls and human oversight maintain operational governance.
Zero-Friction Workflows and Audit-Ready Proof: Integrates directly into security pipelines and developers' existing coding environment. CVEF delivers pre-tested, ready-to-approve fixes directly to engineers, reducing developer effort for both traditional and novel vulnerabilities by up to 90%.
Frontier Defense – Vulnerable Code in, Verified Patches Out: Frontier Defense, an add-on module, delivers compatible, verified patches for exploitable novel vulnerabilities discovered by frontier models and LLM-based vulnerability detection platforms. Built on an agentic AI harness, Frontier Defense orchestrates nine fortified AI sandboxes to discover novel vulnerabilities, generate working exploits, and produce compatible remediation patches. A centralized lifecycle system tracks novel vulnerabilities, verified exploits, and generated patches across multiple frontier-model runs, reducing confusion, improving handoffs, and helping security and engineering teams move from discovery to verified remediation faster.
“Organizations are rapidly adopting AI to increase developer productivity and velocity, and we believe software supply chain security needs to be a top priority for risk management programs,” said Melinda Marks, Practice Director, Cybersecurity at Omdia. “Lineaje’s work in this area is valuable as organizations need modern application security capabilities that don’t just alert, but actively assess, remediate, verify, and govern software risk within development workflows. Lineaje’s outcome-based approach directly addresses this operational bottleneck.”
"Enterprises are under pressure to reduce software risk without adding more complexity to already stretched security and development teams," said Srijit Menon, Partner, Digital Trust and National Head, Third Party Risk Management, KPMG in India. "Through our alliance with Lineaje, we are helping organizations take a more proactive and resilient approach to software supply chain security. Innovations complement this effort by helping improve software transparency and vulnerability management. Together, we can bring greater automation, visibility, and governance to complex software ecosystems while reducing risk and strengthening cyber resilience."
CVEF and its AI-powered Frontier Defense capability extend the Lineaje platform, complementing Gold Open Source, SBOM360, UnifAI, and xBOM Manager. Together, these solutions help global organizations establish trusted software foundations, continuously eliminate exploitable vulnerabilities, secure software and AI workloads, and maintain governance and compliance across the software supply chain.
To learn more about Lineaje Continuous Vulnerability Elimination Factory (CVEF), visit: https://www.lineaje.com/cvef.
To download the whitepaper, “Build Secure or Be Forever Insecure,” visit: https://www.lineaje.com/continuous-vulnerability-elimination-whitepaper.
About Lineaje
Lineaje is a full lifecycle autonomous software supply chain and AI security company helping organizations secure software, open source, containers, and AI-generated applications. Its platform provides visibility, governance, remediation, and compliance across the software lifecycle.
As software development increasingly relies on open source, AI-assisted coding, and autonomous development workflows, organizations use Lineaje to reduce risk, automate remediation, secure AI applications, and meet evolving global regulations.
Trusted by leading technology, financial services, and public sector organizations, Lineaje helps enterprises innovate faster while maintaining confidence in the integrity, security, and compliance of their software and AI systems. Learn more at https://www.lineaje.com, read our blog, and follow on LinkedIn.
Contacts
Media Contacts
Fabienne Dawson
Fabienne_dawson@lineaje.com
Touchdown PR
Jessica Luhrman
lineaje@touchdownpr.com





