Barak Haryati is Senior Director of Product Security at JFrog, focused on CI/CD security, AI/LLM systems, and software supply chain risk. His research explores how attacker-controlled input flows through build systems and is executed in privileged environments.
He developed RepoHunter, an AI-driven research agent that discovers, prioritizes, and models real exploitation paths across CI/CD workflows at scale. Using this approach, he identified and responsibly disclosed 30+ critical vulnerabilities across widely used open source and enterprise ecosystems.
His findings have been acknowledged by major organizations, including Microsoft, SAP, Red Hat, and Databricks, highlighting the real-world impact of these issues.
His work focuses on how AI and automation are turning vulnerability discovery into scalable exploitation, and what it takes to defend modern software supply chains.
linkedin.com/in/barakharyati/
barak.haryati.io (blog)