Cobalt Launches Autonomous Pentest for Continuous Application Security Testing

Cobalt Launches Autonomous Pentest for Continuous Application Security Testing
🕧 5 min

Cobalt™, the pioneer in pentesting as a service (PTaaS) and a leader in continuous offensive security testing grounded in human expertise, today announced Cobalt Autonomous Pentest. This new offering makes continuous offensive security possible across an organization’s entire application portfolio, delivering fast, actionable pentests with findings in just 24 hours.

Also Read: Infrastructure as Code Governance: Managing Risk in Enterprise Cloud Environments

AI is fundamentally changing the pace of application security. AI-assisted development enables organizations to ship software faster than ever, while attackers are using AI to automate reconnaissance and accelerate exploitation. Traditional pentesting performed quarterly or even monthly, can no longer keep pace. As security teams face growing attack surfaces and constrained budgets, organizations need a more scalable approach to identifying and validating exploitable risk.

Cobalt Autonomous Pentest is fully integrated in the Cobalt Offensive Security Platform, and delivers this scale through three core capabilities:

  • Expert Direction: Seasoned Cobalt pentesters direct every engagement. Pentesters review the execution plan, enforce scope discipline, and bring the creative adversary reasoning that pure-AI tools cannot replicate.
  • Model Agnostic: The model-agnostic AI engine handles chain prediction, prioritization, and adaptive sequencing. Informed by 13 years of exploit data, it adapts as the frontier evolves and threat actor techniques change.
  • Findings in 24 Hours: Cobalt delivers next-day findings into Jira, GitHub, Slack, and 50+ other tools. Every finding includes proof of exploit where applicable, reproduction steps, and tailored remediation guidance so teams can act immediately.

According to Omdia Research1, 94% of organizations see the importance of keeping humans in the loop for offensive security programs. Cobalt places human expertise at the center of its autonomous solution. The Cobalt Autonomous Pentest leverages the Cobalt Core, the company’s community of approximately 500 rigorously vetted pentesters.

“Meeting the demands of today’s development cycles requires more than automating traditional pentesting,” said Sonali Shah, CEO, Cobalt. “It requires rethinking how offensive security is delivered. Only Cobalt unifies the four critical elements of modern offensive security: elite human expertise, a context-aware platform, AI-powered orchestration, and the industry’s largest dataset of real-world pentest results. Together, these capabilities enable security teams to continuously identify, prioritize, and remediate exploitable risk at the speed of modern software development.”

Also Read: Infrastructure as Code vs Configuration Management: What’s the Difference?

The Cobalt Autonomous Pentest draws from more than 10,000 critical and high-severity findings. This powerful combination of exploit data and human expertise allows organizations to scale fast, flexible, and precise coverage across their entire attack surface. It extends coverage across the portfolio and complements human-led, comprehensive pentesting for compliance-driven engagements — the right testing model and depth for every asset.

Write to us [wasim.a@demandmediaagency.com] to learn more about our exclusive editorial packages and programmes.

  • Business Wire has been synonymous with well-known press release distribution for more than half a century. Owned by Berkshire Hathaway, it combines regulatory compliance expertise with a powerful media network, helping enterprises large and small share news that influences markets and decision-makers alike.

Recommended Reads :