Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - CyberSecurity Tools - Can’t Start a Fire Without a Spark
CyberSecurity Tools Artificial Intelligence Latest News News & Analysis Security Software Development Security

Can’t Start a Fire Without a Spark

Adam ParlettBy Adam ParlettJanuary 23, 20253 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Spark
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Code Intelligence has started 2025 with a bang and captured the interest of the cybersecurity community by announcing ‘Spark,’ their new AI Test Agent, ahead of a launch party later this month.

Influential AI-automated software testing company Code Intelligence has identified Spark as the first AI test agent to autonomously identify bugs and vulnerabilities in unknown code without human interaction. It becomes the first AI Agent able to locate real-world vulnerabilities by automatically generating and running a test for widely used open-source software.

Information Security Fuzz

The proof that Spark could perform such a feat was discovered during the Fuzz Testing that it was undertaking. Spark discovered a heap-based use-after-free vulnerability in wolfSSL, a vulnerability that could cause random behavior, crashes, or even security exploits. Code Intelligence contacted the team at wolfSSL, and the problem was fixed.

Remarkably, the only human involvement in the process was launching a single command to run the AI Test Agent; analyzing the code, generating a relevant test case, and running it was done autonomously. Code Intelligence believes that Spark could drastically lower the entry barrier to advanced security testing technologies. Estimating a potential saving of up to 1,000 hours of manual effort on average when testing a codebase with 100,000 lines of code.

Focused on Going Further

Code Intelligence CEO, Dr Eric Brueggemann, asserts that the identified real-world vulnerability demonstrates that AI can successfully take over manual tasks in software testing. He gave some examples of tasks where this could be achieved, including code analysis, identifying attack vectors, and the generation and execution of tests.

Dr Brueggemann believes that this discovery is just the starting point for Code Intelligence. “Next, we will focus on going even further by also automatically fixing any uncovered bugs. This means the entire software testing process – from creating tests to bug remediation – will be completed in minutes without human interaction. However, humans will continue to make the final decisions. We will provide automatically generated pull requests with a proven fix for identified vulnerabilities directly in the CI/CD pipeline.”

Industry Excitement

Andreas Lackner, Senior Software Development Engineer at Vector Informatik, welcomes the developments made by Code Intelligence. He admitted that his organization was “truly impressed by the abilities of Spark to enhance our fuzz testing workflows.” He went on to explain how, due to Spark, the quality of their embedded software had increased while the time spent creating and integrating Fuzz Tests manually had decreased.

Catching Fire

This new development undoubtedly marks a significant advancement in AI technology. In his recent Buzz article, The AI Conundrum in Security: Why the Future Belongs to the Bold, Mike Wiacek asked readers to “think of AI as a new type of weapon in an ongoing arms race.” He identified how “the danger is not in AI itself, but in failing to wield it.” In summarising modern approaches to AI adaption and implementation, he believes that “the organizations that survive and thrive in the age of AI are the ones that embrace not just the technology but the mindset of continuous adaptation.”

Fuzzing is a technique often used by malicious hackers to find software vulnerabilities. If the deployment of Spark can more effectively automate and combat this threat and free up valuable work time for security teams to work on combatting other emerging threats – it should be welcomed. 

Adam Parlett
Adam Parlett

Adam Parlett is a cybersecurity marketing professional who has been working as a project manager at Bora for over two years. A Sociology graduate from the University of York, Adam enjoys the challenge of finding new and interesting ways to engage audiences with complex Cybersecurity ideas and products.

  • Adam Parlett
    Apache Tomcat Under Siege 2: Well-Hidden Payload
  • Adam Parlett
    NIST Adds SandboxAQ’s HQC as Their Newest PQC Standard
  • Adam Parlett
    Policy Statement Sheds Light on Upcoming UK Cybersecurity Bill
  • Adam Parlett
    New Lazarus Group Scam Targets Crypto Jobseekers

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

The Top Pentesting Platforms of 2026: What You Need to Know

February 11, 202611 Mins Read

The Best Exposure Assessment Platforms for 2026

January 11, 20265 Mins Read

Global Crackdown Slashes Cobalt Strike Availability by 80%

March 10, 20252 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}