跳到正文
原文
Andrew Ng· @AndrewYNg · X·· 2026-08-26AI 评分58
AI 导读

Andrew Ng 宣布开源智能体 OpenWorker 发布新版本,新增多项面向安全工作流的功能。新版内置三类网络安全智能体:扫描代码漏洞、扫描依赖以发现供应链注入、检查云安全配置的攻击面;其 harness 完全开源,安全团队可审计确认无后门。

正文

OpenWorker -- an open source agent that doesn't just chat but completes tasks on your laptop -- just released a new version with many features for security workflows.

After our initial release, many users found it especially useful for cybersecurity. Attackers are already using AI; OpenWorker is committed to giving defenders the same leverage. Running an agent requires both (i) A model and (ii) A harness (the software around the model). Because the OpenWorker harness is fully open source, security teams can audit it to make sure we haven't built any backdoors that exfiltrate your code and data to some company or even a foreign adversary.

OpenWorker now comes with built-in cybersecurity agents for (i) Scanning your code for vulnerabilities. (ii) Scanning dependencies for supply chain injections. (iii) Checking your cloud security configuration for attack surfaces. This enables developers to do much more security work before deployment (part of what's called the "shift left" movement).

You choose the model: you can run open weight models fully locally so sensitive code never leaves your machine. This helps with legitimate security work (like reproducing a known exploit to defend against it) that can trigger refusals in leading closed models. Or use your ChatGPT subscription, or stealth preview models like Ox Alpha, or any model via API key.

Thanks also to all the open source contributors!

Join work with @rohitcprasad so please follow him too to get more frequent updates.

Try it out: https://openworker.com/
Code: https://github.com/andrewyng/openworker

来源:Andrew Ng · x.com