HomeIntelligenceBrief
🔓 BREACH BRIEF⚪ Informational📋 Advisory

Cobalt Introduces AI‑Powered Continuous Pentesting to Scale Offensive Security

Cobalt has added AI capabilities to its Offensive Security Platform, enabling automated, continuous penetration testing across modern attack surfaces. The service blends proprietary intelligence with generative AI to accelerate vulnerability discovery and triage, offering enterprises a more dynamic view of third‑party risk.

🛡️ LiveThreat™ Intelligence · 📅 March 19, 2026· 📰 helpnetsecurity.com
Severity
Informational
📋
Type
Advisory
🎯
Confidence
High
🏢
Affected
2 sector(s)
Actions
3 recommended
📰
Source
helpnetsecurity.com

Cobalt Launches AI‑Powered Continuous Pentesting Platform to Accelerate Offensive Security

What Happened — Cobalt released new AI capabilities within its Offensive Security Platform that automate reconnaissance, vulnerability discovery, and findings triage, enabling continuous, programmatic pentesting. The solution blends proprietary pentest intelligence with generative AI to scale offensive testing across APIs, micro‑services, cloud workloads, and AI‑driven applications.

Why It Matters for TPRM

  • Continuous testing reduces blind spots that arise from rapid development cycles and expanding attack surfaces.
  • AI‑augmented assessments can surface real‑world exploitability faster, informing third‑party risk decisions.
  • Vendors offering such capabilities may become critical components of an organization’s security supply chain.

Who Is Affected — Enterprises across all sectors that rely on external development teams, SaaS providers, or cloud‑native architectures; particularly those with extensive API and micro‑service footprints.

Recommended Actions

  • Evaluate Cobalt’s platform as a potential augmentation to existing third‑party security testing programs.
  • Verify that AI‑generated findings are reviewed by qualified human pentesters before integration into risk assessments.
  • Incorporate continuous pentesting results into vendor risk dashboards and remediation workflows.

Technical Notes — The platform uses AI for automated surface mapping, credential validation, and deduplication of scanner outputs. It enriches findings with a decade‑long proprietary exploit intelligence dataset and public exploit feeds. No new CVEs are disclosed; the service targets known vulnerabilities such as Log4j and WordPress flaws. Source: Help Net Security

📰 Original Source
https://www.helpnetsecurity.com/2026/03/19/cobalt-continuous-pentesting-ai-capabilities/

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

🛡️

Monitor Your Vendor Risk with LiveThreat™

Get automated breach alerts, security scorecards, and intelligence briefs when your vendors are compromised.