Google to critical infra orgs: Our AI scanners won't be evil, promise
Gemini 3.8 Flash Cyber and Wiz's Red Agent team up to protect hospitals, public transit, and tech
Google has introduced an initiative called Scan for Good to deploy AI systems for safeguarding critical infrastructure, hospitals, municipalities, and other entities from cyber threats. The Scan for Good program employs Google's Gemini 3.8 Flash Cyber and Wiz's Red Agent to autonomously identify and address security vulnerabilities.
The AI agents are capable of discovering public exposures and attack paths across public services, critical infrastructure, and nonprofits, which are then verified and remediated by human security researchers. The Scan for Good initiative is currently active globally, with no predetermined end date. Similar to OpenAI's Daybreak for Frontline Defenders, the partnership aims to provide resources and support to vulnerable groups such as water, energy systems, community banks, local governments, nonprofits, and open-source projects.
The program has already uncovered serious security flaws, including a critical GitHub Actions workflow vulnerability in Snowflake's public repository, an exposed administrator key in a Middle Eastern archive, a hospital's missing access controls exposing staff contact information, and a municipality's data service exposing personal, health, and financial information of about 5,000 elderly residents.
Wiz has ensured that all identified issues were accompanied by human validation and remediation, with the assurance that humans remain responsible for confirming impact and making disclosure decisions.
Written by urgent.news from The Register Science's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.