Perplexity launches Bumblebee: How its new read-only dev scanner differs from Chainguard
ID: 01be2f60-fc04-5fd0-a24d-a6e2e0c3b55b
STIX ID: report--01be2f60-fc04-5fd0-a24d-a6e2e0c3b55b
Feed Name: ZDNet Security
Perplexity's Bumblebee is an open-source, read-only scanner for macOS and Linux developer machines that checks language package managers (npm, PyPI, Go modules, RubyGems, Composer, etc.), VS Code-family editor extensions, Chromium/Firefox browser extensions, and AI Model Context Protocol configurations against a JSON threat catalog. Designed to avoid running package managers or install scripts, Bumblebee provides deterministic, catalog-driven exact-match detections (baseline/project/deep profiles) to help security teams assess developer exposure during supply‑chain advisories without executing potentially compromised tooling.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
