AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push

AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push

Amazon is embedding its security layer inside the coding tools of its fiercest AI rivals, betting that owning the orchestration layer matters more than owning the model.

Written by OutOfToken AI

August 10, 2026 · 5 min read · Synthesized from reporting by VentureBeat · How this works

AI Unverified · 4/10

AWS announced at Black Hat USA 2026 that Continuum, its AI-powered code vulnerability platform, will integrate directly into Anthropic's Claude Code and OpenAI's Codex, alongside its own Kiro IDE. The move plants AWS security tooling at the exact moment a developer writes code, regardless of which company's model produced it. It is one of the clearest signals yet that AWS believes the security layer — not the underlying model — is where lasting competitive advantage will live.

A rival's tools, wrapped in AWS's security net

AWS competes head-on with both Anthropic and OpenAI for enterprise AI workloads, yet both companies agreed to let Continuum operate inside their flagship coding environments. AWS's blog post and Newsroom announcement confirm the integration covers Claude Code, OpenAI Codex, and Kiro, letting developers discover, prioritize, validate, and remediate vulnerabilities without leaving their coding environment. AWS says Continuum weighs a customer's actual AWS configurations, IAM policies, and network topology when assessing risk, rather than flagging vulnerabilities in the abstract.

Some ambiguity remains on Codex's rollout

Not every detail is settled. Some official documentation reportedly shows integrations live for Kiro and Claude Code, while the Codex integration's exact status is less clearly confirmed — a gap flagged separately in coverage of AWS's announcement. That leaves open the possibility of a staggered rollout or scope differences between the three environments, something AWS has not clarified publicly.

"AWS is positioning Continuum as infrastructure, not a model wrapper — the orchestration harness, not the engine, is the asset it wants enterprises to depend on."

Why AWS is betting on the harness, not the model

AWS frames Continuum as a harness that selects whichever frontier model performs best for a given task, then presents customers a single bill regardless of which model did the work. Partners echoed the strategic logic to CRN: Val Henderson, CEO of AWS Premier Partner Caylent, argued that model choice was never the hard part for enterprises — trust in what a model does in production is. That framing lets AWS sell itself as neutral infrastructure sitting above the model war, even as it partners with the same companies it competes against.

What's confirmed and what isn't

The core announcement — Continuum's integration with Claude Code, Codex, and Kiro for vulnerability discovery, prioritization, validation, and remediation — is corroborated across AWS's own blog, its Newsroom post, and CRN's reporting. Broader claims circulating around the announcement, including specifics on token-cost economics, a named 'Claude Mythos' model, and details of Security Hub Extended's supply chain category, are not independently verifiable from the available research and should be treated as unconfirmed pending further detail from AWS.

Whether Codex's integration is fully live or still catching up to Kiro and Claude Code, the direction of travel is unmistakable: AWS wants to be the security layer underneath every AI coding tool an enterprise chooses, not just the ones it builds itself. That ambition will only intensify as more vulnerabilities surface from AI-assisted development, and as AWS presses partners and rivals alike into its orbit. The real test is whether developers experience one consistent security layer across tools — or three different flavors of it.

Editorial Note

The research corroborates only the core announcement—that AWS Continuum integrates with Claude Code, Codex, and Kiro—and confirms the caveat that Codex integration status is unclear. However, the research provides no validation for major claims in the article including: details about Claude Mythos Preview's capabilities, the vulnerability backlog growth statistics, the median exploit timeline figures (771 days in 2018, under 4 hours by 2024, projected under 1 hour by 2026), market share percentages, Security Hub Extended's launch timeline and partner growth, or any of the technical details about Continuum's four-phase system. The article relies heavily on unverified claims attributed to AWS executives without independent corroboration.

New AI Release

Claim Tracker

AI-assessed

VerifiedAWS announced at Black Hat USA 2026 that Continuum will integrate directly into Anthropic's Claude Code and OpenAI's Codex, alongside AWS's own Kiro IDE

Confirmed by Source 2 (AWS Newsroom LinkedIn), Source 3 (AWS Blog), Source 4 (AWS News Feed), and Source 5 (CRN). All sources explicitly state the three-way integration.

UnverifiedClaude Mythos Preview, announced by Anthropic in April, is a general-purpose AI model that during testing revealed striking cybersecurity capabilities far exceeding any prior system and identified thousands of previously unknown zero-day vulnerabilities

The research provided contains no information about Claude Mythos Preview, its April announcement, its zero-day discovery capabilities, or the scale of vulnerabilities it allegedly found. This claim cannot be verified against the provided sources.

VerifiedThe official documentation shows integrations live for Kiro and Claude Code, while the Codex integration's exact status is less clearly confirmed

Source 6 (Windows Forums) explicitly notes: 'its officially documented integrations currently cover Kiro and Anthropic's Claude Code, not OpenAI Codex,' flagging ambiguity about Codex integration status.

UnverifiedAWS Security Hub Extended was launched in February with 14 curated partner solutions and now stands at 23 across 10 categories

The research provided does not contain timeline information about Security Hub Extended's launch date, initial partner count, or growth trajectory. These specific dates and numbers cannot be verified against the sources.

UnverifiedAWS holds a 28% share of the global cloud infrastructure market, ahead of Microsoft at 20% and Google at 15%

The research provided does not include market share data. This claim about AWS, Microsoft, and Google market positioning cannot be verified against the sources.

Ask AI about this story

// discussion

sign in to join the discussion