Lineaje launches AI vulnerability elimination factory
Tue, 21st Jul 2026 (Yesterday)
Lineaje has launched its Continuous Vulnerability Elimination Factory.
The product includes the company's Frontier Defence module, which identifies and fixes software vulnerabilities.
The launch addresses a growing security challenge as companies adopt AI coding tools and attackers use advanced AI models to uncover new software weaknesses. The system is designed to continuously detect, validate and remediate exploitable vulnerabilities across proprietary code, open source software, AI-generated code and containers.
Lineaje says customers can move toward having no exploitable vulnerabilities within 90 days, then maintain a 24-hour cycle for finding and fixing issues. Developers would be able to review a single pull request rather than work through queues of security tickets.
AI Pressure
Security vendors and enterprise software teams are under pressure to respond faster as regulators and customers demand quicker remediation of flaws. At the same time, AI-assisted software development has increased the volume of code and dependencies entering production systems, making it harder for security teams to track risk.
Lineaje says its internal research found that the share of vulnerabilities considered practically exploitable rises sharply when attackers use frontier AI models. According to the company, that figure increases from about 1.5% to more than 90%, suggesting that flaws once seen as low risk may now offer viable attack paths.
Frontier Defence is intended to address that shift by focusing on novel vulnerabilities uncovered by advanced AI models and vulnerability detection systems. The module uses a set of isolated AI environments to identify unfamiliar flaws, generate exploits and produce patches that can be verified before they are applied.
At the centre of the new offering is a management layer that co-ordinates AI agents, approvals, validation and reassessment. A separate scanning hub reviews source code, repositories, dependencies, build artefacts, binaries and containers to identify vulnerabilities, software supply chain risks and integrity concerns.
Lineaje says the remediation process keeps human oversight in place. Under the company's workflow, AI agents prepare remediation plans, generate fixes, run tests and carry out approved actions, while policy controls govern what can be changed.
The system also delivers tested fixes directly into existing engineering workflows, with the aim of reducing manual work for developers. Lineaje says this could cut developer effort for both traditional and novel vulnerabilities by up to 90%.
Lineaje is positioning the launch as an extension of its broader software supply chain security platform, which already includes products for open source software review, software bill of materials management and AI-related governance. The new factory is designed to sit across those products and provide continuous remediation rather than a point-in-time scan.
Industry analysts and consulting partners quoted by the company framed the launch around operational strain on security and engineering teams. Their comments reflected a broader market theme: buyers want tools that move beyond alerting to verified remediation within development workflows.
Javed Hasan, Co-Founder and Chief Executive Officer of Lineaje, linked the launch to the changing security landscape around AI.
"AI is fundamentally transforming both how software is built and how it's attacked, while regulators are increasingly imposing remediation mandates measured in hours, not weeks," said Hasan. "CVEF with Frontier Defence extends traditional AppSec by enabling enterprises to continuously identify, validate, and remediate all traditional and novel exploitable vulnerabilities within a 24-hour autonomous find-and-fix cycle. Enterprises, even those overwhelmed by vulnerability exposure, can now get to no exploitable vulnerabilities in 90 days and stay there."
Melinda Marks, Practise Director, Cybersecurity at Omdia, said the market increasingly expects security products to handle remediation and governance as well as detection.
"Organisations are rapidly adopting AI to increase developer productivity and velocity, and we believe software supply chain security needs to be a top priority for risk management programs," said Marks. "Lineaje's work in this area is valuable as organizations need modern application security capabilities that don't just alert, but actively assess, remediate, verify, and govern software risk within development workflows. Lineaje's outcome-based approach directly addresses this operational bottleneck."
Lineaje also highlighted its alliance with KPMG in India as part of its broader effort to help companies manage software supply chain risk across complex technology estates.
"Enterprises are under pressure to reduce software risk without adding more complexity to already stretched security and development teams," said Menon. "Through our alliance with Lineaje, we are helping organizations take a more proactive and resilient approach to software supply chain security. Innovations complement this effort by helping improve software transparency and vulnerability management. Together, we can bring greater automation, visibility, and governance to complex software ecosystems while reducing risk and strengthening cyber resilience."