Offensive Security stories
FIRST conference highlights AI & CVE disclosure push
Today
#
iot security
#
application security
#
supply chain
FIRST conference in Scottsdale draws 500-plus as security leaders and AI firms debate vulnerability disclosure, CWE's role and CVE's future.
TrendAI partners Anthropic to embed Claude in security ops
2 days ago
#
firewalls
#
digital transformation
#
network security
TrendAI and Anthropic join forces to embed Claude in Vision One, targeting AI vulnerability research and automated cyber defences.
Synack launches Glasswing readiness test for attack gaps
4 days ago
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
Abacus wins CREST approval for penetration testing
Last week
#
firewalls
#
data protection
#
devops
Abacus secures CREST accreditation for penetration testing, bolstering its pitch to regulated sectors as demand rises for verified cyber security assurance.
Claude Code flaw leaves deny rules vulnerable in long workflows
Last week
#
cloud security
#
application security
#
socs
Anthropic’s Claude Code is under scrutiny after researchers found deny rules can weaken in long workflows, raising fresh concerns for AI-driven development.
Novee launches AI red teaming tool for LLM app risks
Last month
#
devops
#
cloud security
#
application security
Novee unveils an autonomous AI red teaming tool to probe LLM apps for prompt injection, jailbreaks and other emerging security flaws.
Qualys launches Agent Val to prove exploitable risks
Last month
#
socs
#
cybersecurity
#
agentic ai
Qualys debuts Agent Val to validate real exploit paths in live systems, promising sharply reduced noise and faster remediation for teams.
Qualys launches Agent Val for live exploit validation
Last month
#
devops
#
cloud security
#
socs
Qualys rolls out Agent Val to live‑test exploit paths in production, promising sharper risk prioritisation and major remediation noise cuts.
Simbian launches AI platform for unified cyber ops
Last month
#
devops
#
cloud security
#
application security
Simbian unveils an AI-driven cyber security platform uniting offence and defence via a shared Context Lake to speed, link and automate response.
Cobalt adds AI features to boost continuous pentests
Last month
#
devops
#
cloud security
#
application security
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Cobalt unveils service to manage enterprise pentesting
Last month
#
devops
#
cloud security
#
application security
Cobalt launches Security Program Manager service to run enterprise pentesting, align tests with business goals and speed up remediation.
NetSPI unveils AI-led workflow redesign for pentesting
Last month
#
devops
#
cloud security
#
application security
NetSPI unveils an AI-powered overhaul of its pentesting platform UX, promising two-click workflows and sharper risk-based remediation focus.
HackerOne unveils live agentic AI prompt injection tests
Last month
#
data protection
#
devops
#
cloud security
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
AI agent from Tenzai ranks in top 1% of global CTFs
Last month
#
devops
#
application security
#
devsecops
Tenzai's autonomous AI agent has placed in the top 1% of major global hacking CTF contests, beating more than 125,000 human rivals.
Cloud identity compromise now drives most cyber attacks
Last month
#
malware
#
uc
#
firewalls
Cloud identity compromise now drives over 80% of cyber incidents, as attackers increasingly abuse trusted accounts and workplace tools.
Terra Security gains first AWS nod for AI threat tests
Last month
#
network infrastructure
#
devops
#
hyperscale
Terra Security becomes first AWS partner validated for Autonomous Security Validation, as AI-driven continuous threat testing gains pace.
Survey shows pentesters favour PTaaS over bug bounties
Last month
#
devops
#
application security
#
devsecops
New research from Cobalt finds 98% of surveyed pentesters prefer PTaaS to bug bounties and show almost no faith in AI-only security scanning.
Agentic AI boosts elite cyber teams but hinders rookies
Last month
#
devops
#
socs
#
apm
Agentic AI massively accelerates elite cyber teams but can slow inexperienced hackers, Hack The Box's large-scale benchmark reveals.
LevelBlue & Tenable expand exposure tools for partners
Last month
#
devops
#
digital transformation
#
cloud security
LevelBlue debuts Exposure Management for Partners with Tenable, giving MSSPs and MSPs tiered, unified exposure and risk visibility tools.
LevelBlue unveils flexible funds-based cyber IR retainer
Last month
#
ransomware
#
devops
#
socs
LevelBlue launches Resilience Retainer, a flexible funds-based cyber incident response service with rapid SLAs and rollover security spend.