XBOW's Avatar

XBOW

@xbow.com

Bringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://xbow.com/traces

409
Followers
7
Following
71
Posts
12.07.2024
Joined
Posts Following

Latest posts by XBOW @xbow.com

Post image

DAST vs. XBOW AI pentesting.

Both test running applications, but they diverge in how they think, adapt, and validate vulnerabilities.

We break down the methodology and benchmark data behind each approach.

Read the full comparison in our latest blog: https://bit.ly/3OTPdJS

05.03.2026 19:55 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Boards are asking CISOs tougher questions as the gap between vulnerability and exploitation continues to narrow. XBOW was built for this reality: autonomous AI that continuously probes your environment and validates exploits before they reach your team. See it in action: https://xbow.com/

05.03.2026 14:00 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Best AI-Powered Penetration Testing Tools for the 2026 Financial Year Allocating capital to autonomous security platforms outperforms traditional consultant-driven validation models.

Faster vulnerability discovery and patching. Less noise. Lower cost.

Autonomous offensive security is reshaping offensive security, and XBOW is proud to be featured among the top AI-powered pentesting tools.

TheStreet highlights more: https://bit.ly/4r9V9Mk

04.03.2026 21:46 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
hackerbot-claw: An AI-Powered Bot Actively Exploiting GitHub Actions - Microsoft, DataDog, and CNCF Projects Hit So Far - StepSecurity A week-long automated attack campaign targeted CI/CD pipelines across major open source repositories, achieving remote code execution in at least 4 out of 5 targets. The attacker, an autonomous bot ca...

In the β€œHackerbot-claw” case, an AI bot scanned GitHub, tried 5 exploit paths, and exfiltrated a token…autonomously.

AI threats move continuously. Human expertise + continuous autonomous testing is the new baseline.

More in StepSecurity: https://bit.ly/3PaE33o

03.03.2026 17:15 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

Ready to chat all things autonomous offensive security with our team at #RSAC? 🏹

From continuous pentesting to AI-enabled attacks, let’s explore together what your organization can do to stay ahead.

Connect with us at the event: https://bit.ly/4qWj9Db

02.03.2026 18:37 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Preview
Opinion | AI Can Help Defend Against Cyberattacks We need a network of secure defensive agents that can reason and react faster than any human.

Time is of the essence for security teams.

Fighting fire with fire is the only way to get time back on their side by accelerating detection, prioritization, and response at machine speed.

Read Anne Neuberger’s recent take on AI-driven offensive security in @wsj.com: https://on.wsj.com/4sguBdl

27.02.2026 19:30 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
AI-Powered Penetration Testing: Expanding Coverage Without Compromising Depth | Rhymetec AI-powered penetration testing expands coverage, validates real exploits, and accelerates remediation. Learn how to scale testing without sacrificing depth.

Traditional pentesting can’t keep up with AI-driven threats. In our webinar with Rhymetec, we explored how autonomous offensive security helps defenders stay ahead.

Missed it? Catch the recap here. ➑️ https://bit.ly/4aGqIbK

26.02.2026 19:42 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

What’s on the agenda at RSAC?

Our CISO, Nico Waisman, will join Jason Haddix, CEO and CISO at Arcanum Information Security, and OpenAI's Dave Aitel for a fireside chat diving into the β€œChaos Phase” and how AI is breaking the old security model.

Save your seat: https://bit.ly/402mXXQ

26.02.2026 15:33 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image Post image Post image Post image

Some organizations follow the roadmap. Others draw it.

XBOW is building autonomous offensive security from the ground up with a world-class team.

Want a front-row seat to what’s next in cybersecurity? Take a look at our open roles: https://jobs.ashbyhq.com/xbowcareers

25.02.2026 14:00 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Post image

XBOW has been named to #TheAgenticList2026! πŸŽ‰

Honored to be recognized as a top trending agentic AI company. We’re building autonomous offensive security to deliver security outcomes that matter.

Thank you to our customers, partners, and team. πŸ”— https://www.agentconference.com/agenticlist/2026

24.02.2026 14:00 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

The breakthrough isn’t speed alone. It’s scale.

In @thenewstack.io, GitLab CISO Josh Lemos explores how autonomous agents like XBOW are accelerating vulnerability discovery at machine scale and what security leaders must rethink in response: https://bit.ly/4aMeJbj

23.02.2026 18:41 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Autonomous pentesting is one click closer. πŸ–±οΈ

XBOW is now available on AWS Marketplace.

To mark the launch, AWS customers can get 50% off XBOW Lightspeed for a limited time: https://bit.ly/46YLctI

18.02.2026 14:25 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

Traditional scanners flood teams with alerts. Triage becomes the bottleneck.

Autonomous pentesting chains static + dynamic testing and validates exploits before reporting.

No noise. No false positives. πŸ“„ Read the whitepaper: https://xbow.com/whitepaper/autonomous-pentesting-without-false-positives

17.02.2026 17:45 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

Our CEO & Founder explains on the Boss Class podcast why the best defense in an AI-driven world is a strong, automated offense.

But as organizations race to keep up with AI threats, there will be a chaos phase, before systems are fully ahead.

Subscribe to listen here: https://econ.st/406FKBe

12.02.2026 20:03 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

πŸ—“οΈ Still haven’t registered for this week’s webinar? There’s time!

Join our experts for a trace-level walkthrough of how real IDORs are discovered using creative reasoning, going beyond traditional scanners to find vulnerabilities that others miss.

Register: xbow.com/webinar-trac...

11.02.2026 17:53 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

We’re going to #RSAC πŸ“

Attending? Here’s how to connect with us:

πŸ‘‹ Meet our team at Booth #1843
πŸ’¬ Chat 1:1 with our experts
▢️ Catch live demos
πŸ—“ Pick the brains of our founders and executive team about the future of offensive security in the AI-threat landscape

πŸ”— https://bit.ly/4qWj9Db

10.02.2026 14:00 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Real attackers. Real results.

In just a few clicks, see how your apps stand up to real-world attackers and get a clear path forward.

Learn if your team qualifies for a free Lightspeed pre-flight: https://xbow.com/pentest-lightspeed

#AppSec #OffensiveSecurity #Cybersecurity

09.02.2026 21:53 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
⚑ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and More This week’s cyber recap covers AI risks, supply-chain attacks, major breaches, DDoS spikes, and critical vulnerabilities security teams must track.

XBOW bridges the gap between automated scanning and manual testing.

The result: creative reasoning that doesn’t stop at 403s or 502s, and uncovers real threats.

The Hacker News on two newly discovered IDORs in Spree: https://bit.ly/4bFH19x

09.02.2026 18:25 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

πŸ“£ XBOW is now available on AWS Marketplace!

AWS customers can now purchase XBOW through their existing workflows & use committed spend, while getting pentest results in hours, backed by real exploit validation.

Read about the partnership & a limited-time 50% for XBOW Lightspeed: bit.ly/4qnVrPk

05.02.2026 19:00 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

Come see XBOW in action πŸ”

Learn how IDORs are discovered and exploited in practice.

Leave with insight into:
β€’ Why scanners fail at IDORs
β€’ How agentic reasoning over objects, roles, and auth states finds and stops them

Register: https://bit.ly/3ZNIQdg

05.02.2026 15:24 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Aim for what matters every time. 🎯

Hear from our partner Rhymetec about how they conduct AI-powered pentesting in real-world deployments.

Here’s what autonomous offensive security in action looks like: https://bit.ly/4q95DLc

04.02.2026 18:56 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

Most IDORs aren’t β€œguess the next number.” They hide in real authorization logic.

In our latest Tales from the Trace, XBOW uncovered two zero-day IDORs by reasoning through the app like a pentester, even after 403s and 502s.

Check it out: https://bit.ly/4kmlmpg

04.02.2026 13:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Traditional DAST β‰  dev-friendly.

That's why we go beyond traditional DAST, delivering AI-generated vulnerability reports that provide real exploit paths, app behavior, and code context, so teams can fix faster.

Read more in Tales from the Trace πŸ‘‰ https://bit.ly/4rr5Jz1

03.02.2026 18:53 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Preview
2. Feeling the vibe What happens when everyone can code?

🎧 Subscribe today to tune into Oege’s thoughts at the 14:13 mark: www.economist.com/podcasts/202...

03.02.2026 16:03 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

The AI arms race doesn’t mean defenders lose.

Our CEO, Oege de Moor, joined @economist.com’s new "Boss Class" podcast to discuss how AI is accelerating real-world pentesting and ultimately giving the good guys better tools.

Link in replies πŸ”—

03.02.2026 16:02 πŸ‘ 3 πŸ” 1 πŸ’¬ 1 πŸ“Œ 0
Video thumbnail

Introducing the XBOW Public API

Run expert-level pentests at machine speed, now at infrastructure scale.

Embed autonomous pentesting directly into your workflows: launch assessments, pull findings, stream results via webhooks, and more.

Read the announcement: https://bit.ly/45Kkq7V

02.02.2026 16:01 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Can XBOW hack your app?

Find out how your app holds up against real-world attackers.

πŸ‘‰ See for yourself: https://bit.ly/49WNjPy

29.01.2026 18:59 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

New look. Same mission. 🏹

Our visual identity is evolving, but our focus hasn’t changed: redefining how organizations think about offensive security by transforming application security with AI-powered, continuous offense.

Explore what’s new: https://bit.ly/3ZDQVkx

26.01.2026 17:53 πŸ‘ 3 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

We’re thrilled to welcome WonLae Lee, a respected offensive security leader with decades of experience, as General Manager of South Korea. His leadership will play a key role as XBOW continues to grow across the Asia-Pacific region! https://bit.ly/49yjRR4

22.01.2026 15:58 πŸ‘ 4 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

Where security goes on offense.

Trained by top hackers, proven in the wild. Ranked #1 on HackerOne worldwide leaderboard.

Explore it during our limited 10-day promotion. xbow.com/pentest

16.12.2025 17:47 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0