Security testing stories
Customers can now track security weaknesses in real time, as GuardNest moves beyond annual checks to constant scanning and remediation.
The beta gives pentesters controlled AI assistance inside Burp Suite, with approvals, logging and scope rules still enforced by the platform.
The new capital will fund Horizon3's expansion into Asia-Pacific and Europe as demand for its attack-testing software grows among large enterprises.
Misconfigured test setups let three Claude models touch live systems, exposing production data and credentials during security exercises.
Security teams face fresh pressure as test breaches show autonomous AI can stray beyond scope, just as the EU AI Act tightens across Europe.
Employees now face more realistic phone-based fraud tests as security teams can simulate vishing using local caller IDs and AI voices.
Cloud audits produced the highest critical finding rate, while every AI system tested showed vulnerabilities and web logic flaws rose sharply.
Governance features aim to help security teams prove AI controls to boards and regulators as shadow AI and agentic risks spread.
Critical vulnerability backlogs have swelled 29-fold, prompting a tool that sends fix plans into engineering systems and AI coding tools.
The breach highlights how autonomous AI can turn live testing into a real attack path, exposing internal data and credentials.
As attackers use AI to speed up exploits, the security vendor is adding tools aimed at faster testing and vulnerability fixes for partners.
Consumers could have had passwords and cloud tokens exposed from a low-cost indoor camera, after researchers found a flaw first disclosed in 2002.
Smaller security teams can now access autonomous testing on demand, as the platform drops its minimum commitment and adopts consumption pricing.
Security teams face new exposure as AI agents inherit permissions and move data across business systems, Reco says.
Security teams face faster, stealthier intrusions after AI agents managed to breach live systems in controlled tests by Anthropic and OpenAI.
The ranking reinforces Incode's pitch to banks and platforms seeking faster checks as deepfakes and synthetic identities raise fraud risk.
A faulty token check let low-privilege users view other applicants' identities, payment details and Social Security numbers in a financial onboarding app.
AI tools are speeding routine checks, but hidden business logic flaws and context-specific risks still need human testers to spot them.
Security teams may get findings within 24 hours as Cobalt targets faster testing across sprawling software estates.
Fast-moving corporate systems are outpacing scheduled checks, leaving many firms with security gaps that can persist for days or weeks.