惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

罗磊的独立博客
爱范儿
爱范儿
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
博客园_首页
博客园 - 叶小钗
酷 壳 – CoolShell
酷 壳 – CoolShell
Apple Machine Learning Research
Apple Machine Learning Research
云风的 BLOG
云风的 BLOG
量子位
博客园 - 三生石上(FineUI控件)
Stack Overflow Blog
Stack Overflow Blog
小众软件
小众软件
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
V
V2EX
人人都是产品经理
人人都是产品经理
V
Visual Studio Blog
Jina AI
Jina AI
L
LangChain Blog
M
MIT News - Artificial intelligence
MongoDB | Blog
MongoDB | Blog
Last Week in AI
Last Week in AI
Martin Fowler
Martin Fowler
WordPress大学
WordPress大学

Help Net Security

FIDO Alliance wants to keep AI agents from going rogue on online payments Police arrest 10 suspected members of Black Axe cybercrime gang ShinyHunters claims it stole 1.4 million records from Udemy Sevii unveils Cyber Swarm Defense Mode to stop AI-driven attacks at scale Alleged Chinese hacker extradited to US over cyberattacks targeting COVID-19 research Cequence Agent Personas bring granular control and governance to enterprise AI agents NowSecure MARI gives enterprises evidence-based visibility into third-party mobile app risk The metrics killing your SOC, and what to use instead US state privacy fines reached $3.425 billion in 2025 Canada’s first SMS blaster case leads to three arrests Linux storage management tool Stratis 3.9.0 adds online encryption and cache-less pool startup TLS Connect gives SMBs a right-sized automated tool to manage TLS certificates Your IAM was built for humans, AI agents don’t care The AI criminal mastermind is already hiring on gig platforms 25 open-source cybersecurity tools that don’t care about your budget Product showcase: LuLu reveals unauthorized outbound connections from Mac apps Week in review: Claude Mythos finds 271 Firefox flaws, Vercel breach Users advised to drop passwords and make room for passkeys - Help Net Security Indirect prompt injection is taking hold in the wild - Help Net Security Compromised everyday devices power Chinese cyber espionage operations - Help Net Security New Cisco firewall malware can only be killed by pulling the plug - Help Net Security Meta is overhauling how you sign in, manage settings, and protect your accounts - Help Net Security Ubuntu 26.04 LTS delivers memory-safe system tools and live patching for Arm servers - Help Net Security OpenAI’s GPT-5.5 is out with expanded cybersecurity safeguards - Help Net Security AI is speeding up nation-state cyber programs - Help Net Security A study of 1,000 Android apps finds a privacy policy logging gap - Help Net Security IT spending to hit $6.31 trillion record, thanks to AI - Help Net Security Where AI in CI/CD is working for engineering teams - Help Net Security With AI's help, North Korean hackers stumbled into a near-undetectable attack - Help Net Security Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security
Aptori expands its platform with autonomous offensive tes...
Industry New · 2026-04-27 · via Help Net Security

Aptori has expanded its Runtime-Driven Validation Platform with autonomous offensive testing capabilities to address the growing gap between code output and security team capacity.

By moving beyond passive scanning to active validation, the platform helps organizations identify, validate, and fix vulnerabilities at the pace of development.

Aptori autonomous offensive testing

As AI-assisted coding increases development velocity, traditional point-in-time security assessments have become a bottleneck. Most security tools produce large volumes of findings that require manual triage, slowing teams down and obscuring what actually needs to be fixed.

Aptori’s offensive testing approach addresses this by simulating real-world attacks against running systems. It validates which vulnerabilities are real, allowing teams to focus on what matters and resolve issues quickly.

“Runtime validation is critical in modern applications,” said Sumeet Singh, CEO of Aptori. “Security issues don’t exist in isolation, they emerge through real execution paths across APIs, logic, and authorization. We built Aptori to test those paths at runtime and make sure issues are fixed before release.”

Early deployments show a significant reduction in remediation backlog and time spent on manual triage.

Automated penetration testing at scale

Aptori replaces the manual, time-intensive process of human-led penetration testing with a system that operates continuously and at scale.

  • Logic-aware exploration: The system navigates application logic and stateful interactions, uncovering business logic flaws and authorization gaps that traditional automated tools often miss.
  • Active validation: Rather than flagging potential issues, Aptori’s AI agents safely exercise vulnerabilities in a runtime environment to confirm which ones are real.
  • Continuous context: The platform runs within development workflows, ensuring that new endpoints and application changes are tested as they are introduced.

A unified system for detection, validation, and remediation

Aptori brings detection, security data, and remediation into a single system:

  • Modernized detection: AI-powered code analysis is combined with dynamic and API testing to provide visibility into how applications behave in runtime.
  • Unified security data layer: Findings from code, dependencies, APIs, and runtime environments are normalized into a single data model, eliminating fragmentation.
  • AI-driven remediation: Once a vulnerability is validated, Aptori’s AI agents generate actionable fixes that developers can review and apply within their existing workflows.

Building secure-by-design software

Aptori enables teams to validate security controls during the build phase, not after deployment.

By testing applications in runtime before release, teams can verify that authentication, authorization, and business logic controls behave as intended. Issues are identified and resolved early, reducing the likelihood of vulnerabilities reaching production.

Security becomes part of how software is built, not something applied after the fact.

Organizations can explore Aptori’s AI Security Center for securing agentic workflows, LLM integrations, and AI-powered applications.

Designed for enterprise environments

Aptori is built for enterprise and regulated environments, supporting:

  • Integration with commercial and open source AI models
  • On-premises and fully air-gapped deployments
  • No requirement to transmit sensitive data outside controlled infrastructure