Anthropic's Claude Code Security triggers massive cybersecurity stocks selloff amid AI disruption

Reviewed byNidhi Govil

24 Sources

Share

Anthropic launched Claude Code Security, an AI-powered tool that scans codebases for security vulnerabilities and suggests software patches. The announcement triggered a sharp selloff in cybersecurity stocks, with CrowdStrike falling nearly 8% and the Global X Cybersecurity ETF hitting a two-year low. The market reaction reflects growing investor anxiety about AI security tools displacing traditional cybersecurity business models.

Claude Code Security Launches as Limited Research Preview

Anthropic unveiled Claude Code Security on Friday, introducing a capability that scans codebases for security vulnerabilities and suggests targeted software patches for human review

1

. Unlike traditional security software that relies on rule-based pattern matching, the tool reasons through code like a security researcher, according to the company

2

. The AI security tools assign severity ratings to identified issues and include confidence rankings indicating how certain the system is in its assessment of each risk

2

. Available as a limited research preview for Enterprise and Team customers, the tool also offers free expedited access for open-source maintainers.

Source: Fortune

Source: Fortune

Anthropic emphasized that nothing is applied without human approval, with Claude Code Security identifying problems and suggesting solutions while developers always make the final call

3

. The company claims the tool is context-aware, reading and reasoning about code the way a human security researcher would by understanding how components interact, tracing how data moves through applications, and catching complex vulnerabilities that rule-based tools miss

3

.

Cybersecurity Stocks Plunge on AI Disruption Fears

The market reaction was swift and severe. CrowdStrike dropped nearly 8% in Friday's session, while Cloudflare fell just over 8%

2

. Zscaler declined 3.5%, SailPoint shed 6.8%, and Okta fell 5.7%. The Global X Cybersecurity ETF tumbled as much as 3.8%, extending its year-to-date losses to 14% and closing at its lowest point in over two years

1

. JFrog experienced the most dramatic decline, dropping nearly a quarter of its value in a single session

1

.

Source: ET

Source: ET

The selloff continued into Monday, with CrowdStrike and Zscaler each dropping about 9%, while Netskope declined nearly 10%

5

. SailPoint fell 6%, while Okta, SentinelOne, and Fortinet lost more than 4% each

5

. Investor anxiety centered on concerns that AI-powered code security tools could replace tasks handled by traditional cybersecurity companies, threatening their longstanding business models.

Industry Leaders Push Back Against Displacement Narrative

CrowdStrike CEO George Kurtz defended his company's position in a LinkedIn post over the weekend, arguing that an AI capability that scans code does not replace the Falcon platform or comprehensive security programs

5

. He emphasized that security requires an independent, battle-tested platform built to stop breaches

3

. Kurtz reportedly asked Claude if its new security tool could replace what CrowdStrike does, with Claude responding no

3

.

Source: Benzinga

Source: Benzinga

Analysts note that the market reaction was both accurate and overreaching. The 24% hit to JFrog was the clearest signal because its value proposition depends on specialized software supply chain controls that autonomous AI agents now directly threaten

1

. However, the declines for companies like CrowdStrike, Okta, and Zscaler were largely sentiment contagion, as CrowdStrike does not analyze code, Okta does not repair injection flaws, and their core functions differ from application security

1

.

AI Code Security Tools Reshape Application Security Landscape

Anthropic's announcement represents the latest move in a competitive race among AI companies. Google moved first with CodeMender, a system that blends Gemini reasoning with traditional program analysis techniques to automate patch creation

1

3

. OpenAI followed with Aardvark, an agentic security system based on GPT-5 that embeds semantic analysis directly into the CI pipeline and began beta testing in October

1

3

.

Anthropic delivered what analysts call the most consequential shift by bundling Claude Code Security into an existing licensing path, albeit as a research feature for now

1

. Earlier this month, Anthropic claimed that Claude Opus 4.6 found and validated more than 500 high-severity vulnerabilities in open source code

3

. The category that took real damage is the one most perceived to be dependent on pattern matching: SAST, SCA, and ASPM

1

.

Autonomous Agents Present New Risks Alongside Benefits

The same day as Anthropic's launch, the Financial Times reported that Amazon's internal AI coding tool, Kiro, caused a thirteen-hour outage by deleting and recreating a production environment

1

. While Amazon blamed user error due to excessive permissions, the reality is that an autonomous agent made an irreversible choice no reasonable human developer would have made

1

. This incident highlights the tension every enterprise will face as autonomy creates value but also introduces new attack vectors.

Security experts remain cautiously optimistic. Glenn Weinstein, CEO of Cloudsmith, stated that anything helping developers write better, safer code is beneficial, while Isaac Evans, CEO of Semgrep, expressed excitement for Claude Code Security despite not having tried it yet

3

. However, Evans noted that the real test will be performance at scale, pointing out that foundation model companies have not published detailed statistics on false positives or the cost to achieve their results

3

. The broader software sector faces similar pressures, with the iShares Expanded Tech-Software Sector ETF down more than 23% this year, on track for its biggest quarterly percentage drop since the financial crisis in 2008.

Today's Top Stories

TheOutpost.ai

Your Daily Dose of Curated AI News

Don’t drown in AI news. We cut through the noise - filtering, ranking and summarizing the most important AI news, breakthroughs and research daily. Spend less time searching for the latest in AI and get straight to action.

© 2026 Triveous Technologies Private Limited
Instagram logo
LinkedIn logo