Cloudflare has mostly ditched third party security tools, suggests not trying that at home
Automates bug bounty triage with Sonnet for $58 a month, CSO says Mythos would cost $200k
Cloudflare has largely abandoned third-party security tools, relying instead on its own AI-powered solutions, as revealed in a press lunch in Sydney, Australia. The company's chief security officer, Grant Bourzikas, explained that they use Anthropic’s Claude Sonnet model to automate and manage their bug bounty program, saving around $200,000 a month.
This AI integration has led Cloudflare to cut over 1,100 jobs and replace several third-party security tools with in-house applications. However, Cloudflare's Chief Strategy Officer, Stephanie Cohen, cautioned against businesses attempting to replicate this approach, stating that not every organization has the expertise and unique security challenges that Cloudflare possesses.
Cohen further suggested that AI will fundamentally change the way vendors work with their customers, potentially shifting from selling packaged software to providing forward-deployed engineers. The company is also exploring a new business model with AI companies, aiming to pay publishers for access to content using a micropayment system, while charging for this service.
Despite these advancements, Cohen remains skeptical about the viability of AI's current business models, as they largely rely on advertising-based revenue. The article highlights the challenges publishers face when dealing with large tech companies that often change rules and disrupt ecosystems, emphasizing the need for trust when adopting new technologies like Cloudflare's content intermediary ambitions.
Written by urgent.news from The Register Science's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.