Contrast Security set three AI scanners loose on the same codebase and found they agreed on only 5 percent of the findings.
Public source
Publisher name
Public post
We set three AI scanners loose on the same codebase and found they agreed on ONLY 5 % of the findings. “AI is not going to triage its way out of this problem, and we hav…
Company
Contrast Security
Prevent, detect and respond to application and API attacks.
- Industry
- Software Development
- Location
- Pleasanton, US
- Company size
- 51–200 employees
About Contrast Security
Contrast Security is the world’s leader in Runtime Application Security, embedding code analysis and attack prevention directly into software. Contrast’s patented security instrumentation disrupts traditional AppSec approaches with integrated and comprehensive security observability that delivers highly accurate assessment and continuous protection of an entire application portfolio. The Contrast Runtime Security Platform enables powerful Application Security Testing and Application Detection and Response, allowing developers, AppSec teams, and SecOps teams to better protect and defend their applications against the ever-evolving threat landscape. Application Security programs need to modernize and Contrast empowers teams to innovate with confidence.
See moreLatest activity
Latest activity from Contrast Security
5 signals
Research & Knowledge
Contrast Security published its latest report, AppSec Overflow 2026, built entirely from real runtime data across production applications.
Presence & Recognition
Contrast Security is a Headline Sponsor of CYBR.SEC.CON 2026 alongside AccessIT Group at the CYBR.SEC.CON 2026 event in Houston, Texas.
Products & Services
Contrast Security launched a new CVE Shield designed to protect applications by monitoring vulnerabilities, isolating vulnerable libraries, supporting monitor and block modes, and blocking unsafe permissions.
Discover more
Similar signals
Similar public activity from other companies.
Research & Knowledge
Veracode
Veracode research across more than 100 AI models found an average security pass rate of roughly 56%, meaning about 44% of code-generation tasks introduced a known vulnerability.
Research & Knowledge
Endor Labs
Endor Labs AI SAST found 192 real vulnerabilities in a benchmark compared to the next leading tool, with 2.6x more true positives and 63 findings caught.
Research & Knowledge
Jank.AI
Jank.AI reports that AI models are still finding only 60% of code issues, but getting better with model updates.
Research & Knowledge
Cycode
Cycode ran tests to determine the performance and cost of deterministic SAST, rules-based engines, and agentic code scanning.
Research & Knowledge
Yubico