News · DiggingBeagle record

Coinbase says autonomous adversarial testing has reached continuous production-scale security operations

Coinbase says its CAT platform has run more than 150,000 adversarial scans since mid-2026, including over 128,000 pull-request reviews, while server-side rules block unauthorized production state changes.

A dated report connected to the underlying research where available.

The report

Coinbase says autonomous adversarial testing has moved from occasional research into continuous production-scale security operations. Its Continuous Adversarial Testing platform includes source-code review, prompt-injection testing, agent-skill trust checks, MCP registry scanning, DAST and Web2-to-smart-contract boundary testing.

The SHADE component assigns repositories to dedicated agents that hunt for exploitable vulnerabilities. Coinbase reports more than 150,000 scans since mid-2026, including over 128,000 pull-request reviews.

The control design is as important as the scan count: Rules of Engagement are enforced server-side and again at tool execution, and production state changes are blocked unless a target is explicitly scoped as non-production.

Research behind this

Cite this record

DiggingBeagle. “Coinbase says autonomous adversarial testing has reached continuous production-scale security operations.” https://diggingbeagle.com/news/coinbase-cat-shade-september-2026/

Citation guidance

Why this archive exists

The source matters after the headline fades.

DiggingBeagle is a non profit research project documenting AI security incidents, agent failures, vulnerabilities and AI-assisted operations. A case keeps its claims beside the sources that support, contest or limit them. Later updates stay visible, so a reader can see when the account changed.

We publish case reconstructions, dated reporting and analysis across records. Each has a different evidentiary role. About the project and our methodology explain how the work is reviewed.