Perplexity open-sources Bumblebee security scanner
Perplexity AI releases Bumblebee, an open-source, read-only inventory collector for macOS and Linux designed to detect compromised software packages and AI tool configurations on developer endpoints.
Bumblebee addresses the "messy local state" security gap where malicious packages or extensions persist on developer machines despite clean build artifacts.
- –Zero-dependency Go binary makes it trivial to deploy as a static binary across developer fleets during active incident response.
- –Specifically targets modern AI developer stacks by scanning MCP host configurations and AI-native editor extensions (Cursor, Windsurf, VSCodium).
- –Read-only architecture ensures the scanner never executes code or triggers malicious "post-install" scripts, a critical safety feature for supply-chain defense.
DISCOVERED
2h ago
2026-05-23
PUBLISHED
2h ago
2026-05-23
RELEVANCE
AUTHOR
SocketSecurity