AI security tools gain agentic pentesting, attack surface management, and data flow protection
Five security vendors release AI-powered tools for continuous penetration testing, attack surface management, data protection, and threat intelligence, aiming to close gaps left by traditional methods.
Five security vendors released new AI-powered tools on July 28, 2026, targeting gaps in continuous penetration testing, attack surface management, data security, and threat intelligence. Bugcrowd, Prescient Security, Cyberhaven, Intel 471, and SpecterOps each announced products that use AI agents to automate or augment security workflows.
Bugcrowd introduced Savant Pathseeker, the first product in its Agentic Offensive Testing line. The tool uses purpose-built AI agents to continuously test external web applications and APIs, validating exploits and providing reproducible proof of exploitability. Findings come with audit-ready reporting, and users retain on-demand access to Bugcrowd's human pentester community for complex work such as business logic flaws and zero-days.
Prescient Security and Cyberhaven expand AI-assisted coverage
Prescient Security announced a series of updates to Cait, its continuous AI-assisted penetration testing service. The updates, rolling out through summer 2026, add attack surface management, new asset testing types, and expanded environment support beyond web applications. Cait acts as an autonomous, context-aware pentester that explores applications before attacking them.
Cyberhaven launched Cyberhaven Flow, an AI-native data security platform designed to protect data across human and AI workflows. Flow connects data lineage, identity, and behavior to track data as it is created, copied, fragmented, and shared across endpoints, browsers, and cloud environments. The platform aims to adapt protection to the changing context of work in the AI era.
Intel 471 and SpecterOps add AI agents for threat intelligence and identity security
Intel 471 expanded its Verity471 platform with two new AI capabilities: MCP471 and Agent471. These tools aim to make threat intelligence more accessible by helping security teams pinpoint relevant threats and pair them with internal telemetry. The platform turns adversary tradecraft into pre-attack intelligence and proactive threat hunting.
SpecterOps announced new capabilities for BloodHound Enterprise, adding support for Amazon Web Services and Microsoft Entra Agent ID. The company also introduced BloodHound Hunter, a purpose-built AI agent interface that brings adversary intelligence into AI-assisted security workflows. The tools help defenders understand how adversaries traverse hybrid environments and proactively eliminate attack paths.
Market context and what comes next
The announcements reflect a broader shift in the security industry as defenders race to match attackers who are already using AI to probe continuously. Traditional periodic manual pentests leave assets exposed for months, while high-volume scanners generate noise without confirming exploitability. Agentic pentesting solutions aim to combine AI speed and scale with human expertise.
Bugcrowd stated it does not use customer or researcher data to train the models powering Savant Pathseeker. The product runs on frontier AI models built on a proprietary layer of skills developed by Bugcrowd's in-house practitioners. Future iterations will involve Bugcrowd's Hacker Advisory Board to develop an incentive framework for researcher contributions.
Fact check
-
Bugcrowd introduced Savant Pathseeker on July 28, 2026.
reported · source
-
Prescient Security announced updates to Cait adding attack surface management and expanded environment support.
reported · source
-
Cyberhaven launched Cyberhaven Flow, an AI-native data security platform.
reported · source
-
Intel 471 expanded Verity471 with MCP471 and Agent471 AI capabilities.
reported · source
-
SpecterOps added AWS and Microsoft Entra Agent ID support to BloodHound Enterprise and introduced BloodHound Hunter.
reported · source
Source reporting (10)
- Help Net Security · Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validation
- Help Net Security · Prescient Security adds attack surface management to Cait, broadens AI-assisted pentesting
- Help Net Security · Cyberhaven launches Flow to secure data across human and AI workflows
- Help Net Security · Intel 471 expands Verity471 with AI agent and MCP support for threat intelligence
- Help Net Security · SpecterOps brings AWS attack path management and AI to hybrid identity security
- Help Net Security · Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response
- Infosecurity Magazine · Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats
- THN Data Breach · Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
- The Register · Hugging Face rebuilt a third of its infrastructure after OpenAI agents ran amok
- The Next Web · Mate Security Crosses $50M in Funding as AI Security Operations Startup Heads to Black Hat USA
Related Articles
Snowflake hacker pleads guilty to stealing data from 165 organizations, faces 32 years in prison
Aug 5, 2026
AI Agents From OpenAI and Anthropic Breach Real Websites During Security Tests
Aug 5, 2026
AI Agent Security Startups Zenity and Horizon3.ai Raise $375M Combined as SentinelOne Expands Autonomous SOC
Aug 3, 2026
0 Comments
No comments yet
Be the first to share your thoughts on this article.