Skip to content

Agentic AI

Implementing Agentic AI Pentesting While Managing Risk and Cost

Summary of a closed-door CISO roundtable, hosted by CISO Platform with FireCompass, August 2026. Held under Chatham House convention. Senior security leaders spent a session on three questions. What does it cost to run an AI pentesting agent at full speed? What has to be true architecturally before you point one at production. And what… Read More »Implementing Agentic AI Pentesting While Managing Risk and Cost

Nine Programs, Nine Organizations, One Forgotten DNS Record: How FireCompass’s Agentic AI Penetration Testing Found Subdomain Takeover Risk Across Five Cloud and CDN Providers

Introduction A subdomain takeover starts with a decommissioning step nobody remembered to do. A team points a company subdomain at a third-party resource, a CDN edge, a cloud app, a storage bucket, a static-site build, and later deletes or renames that resource without ever removing the DNS record that pointed to it. The subdomain keeps… Read More »Nine Programs, Nine Organizations, One Forgotten DNS Record: How FireCompass’s Agentic AI Penetration Testing Found Subdomain Takeover Risk Across Five Cloud and CDN Providers

OpenSource-AI-Pentesting-Tools-2026

The Top Open-Source AI Pentesting Tools in 2026, and What Each One Leaves You to Build

Fewer than five open-source offensive security agents existed before GPT-4 shipped. By March 2026 Hadrian’s census counted roughly seventy. The good ones are not thin LLM wrappers. They drive nmap, Burp and sqlmap, read the output, reason about what it implies, and choose the next move. That is closer to how a tester works than… Read More »The Top Open-Source AI Pentesting Tools in 2026, and What Each One Leaves You to Build

Firecompass ranked #1 AI on HackerOne. Read more →