Offensive Security stories
White Rook Cyber wins CREST accreditation for testing
Today
#
data protection
#
network security
#
application security
White Rook Cyber gains CREST accreditation as defence and critical infrastructure buyers seek certified penetration testing providers.
Anthropic & OpenAI split on cyber AI release strategy
Yesterday
#
devops
#
hyperscale
#
cloud security
Anthropic and OpenAI take rival paths on AI cyber tools, as one keeps access tightly restricted while the other widens vetted user access.
HackerOne launches h1 Validation to verify exploitable flaws
Yesterday
#
devops
#
cloud security
#
application security
HackerOne rolls out h1 Validation to help enterprises sort AI-found bugs by real-world exploitability as submissions jump 76% and critical flaws rise.
HackerOne launches h1 Validation to tackle AI flaws
2 days ago
#
devops
#
digital transformation
#
application security
HackerOne unveils h1 Validation as vulnerability reports surge 76% and AI tools speed up discovery, leaving firms struggling to triage real threats.
LangWatch launches open-source tool for AI red-teaming
3 days ago
#
data protection
#
devops
#
data analytics
LangWatch releases open-source AI red-teaming framework to expose hidden vulnerabilities in production agents through multi-turn attack simulations.
FIRST conference highlights AI & CVE disclosure push
Last week
#
iot security
#
application security
#
supply chain
FIRST conference in Scottsdale draws 500-plus as security leaders and AI firms debate vulnerability disclosure, CWE's role and CVE's future.
TrendAI partners Anthropic to embed Claude in security ops
Last week
#
firewalls
#
digital transformation
#
network security
TrendAI and Anthropic join forces to embed Claude in Vision One, targeting AI vulnerability research and automated cyber defences.
Synack launches Glasswing readiness test for attack gaps
Last week
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
Abacus wins CREST approval for penetration testing
This month
#
firewalls
#
data protection
#
devops
Abacus secures CREST accreditation for penetration testing, bolstering its pitch to regulated sectors as demand rises for verified cyber security assurance.
Claude Code flaw leaves deny rules vulnerable in long workflows
This month
#
cloud security
#
application security
#
socs
Anthropic’s Claude Code is under scrutiny after researchers found deny rules can weaken in long workflows, raising fresh concerns for AI-driven development.
Slipstream Cyber appoints Chris Pallister to cyber role
Last month
#
devops
#
hyperscale
#
dc
Slipstream Cyber has named Chris Pallister as Head of Cyber Engineering and Operations, bolstering its 24/7 security operations centre and AI-led defence push.
Novee launches AI red teaming tool for LLM app risks
Last month
#
devops
#
cloud security
#
application security
Novee unveils an autonomous AI red teaming tool to probe LLM apps for prompt injection, jailbreaks and other emerging security flaws.
Qualys launches Agent Val to prove exploitable risks
Last month
#
socs
#
cybersecurity
#
agentic ai
Qualys debuts Agent Val to validate real exploit paths in live systems, promising sharply reduced noise and faster remediation for teams.
Qualys launches Agent Val for live exploit validation
Last month
#
devops
#
cloud security
#
socs
Qualys rolls out Agent Val to live‑test exploit paths in production, promising sharper risk prioritisation and major remediation noise cuts.
Simbian launches AI platform for unified cyber ops
Last month
#
devops
#
cloud security
#
application security
Simbian unveils an AI-driven cyber security platform uniting offence and defence via a shared Context Lake to speed, link and automate response.
Cobalt adds AI features to boost continuous pentests
Last month
#
devops
#
cloud security
#
application security
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
Cobalt unveils service to manage enterprise pentesting
Last month
#
devops
#
cloud security
#
application security
Cobalt launches Security Program Manager service to run enterprise pentesting, align tests with business goals and speed up remediation.
NetSPI unveils AI-led workflow redesign for pentesting
Last month
#
devops
#
cloud security
#
application security
NetSPI unveils an AI-powered overhaul of its pentesting platform UX, promising two-click workflows and sharper risk-based remediation focus.
HackerOne unveils live agentic AI prompt injection tests
Last month
#
data protection
#
devops
#
cloud security
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
AI agent from Tenzai ranks in top 1% of global CTFs
Last month
#
devops
#
application security
#
devsecops
Tenzai's autonomous AI agent has placed in the top 1% of major global hacking CTF contests, beating more than 125,000 human rivals.