Picus Security launches autonomous platform to validate exposures in one loop

Cybersecurity validation startup Picus Security Inc. today launched the Picus Autonomous Exposure Validation Platform, a system that merges breach and attack simulation, autonomous penetration testing and exposure validation into a single automated loop.

The platform is aimed at a question security teams struggle to answer when a critical vulnerability drops: Can this actually be exploited against the controls we already run? Picus argues that the gap has widened as artificial intelligence compresses the time between disclosure and attack, with attackers now weaponizing new bugs in hours against a backdrop of about 132 common vulnerabilities and exposures published each day.

At the core is a decision to converge three validation tools that usually ship separately. Picus Breach and Attack Simulation tests what an organization’s endpoint detection, security information and event management, firewall and web application firewall tools actually block and detect, then ships fixes and re-tests. Picus Autonomous Penetration Testing runs real exploit chains against reachable assets to show what an attacker can touch rather than what a severity score predicts.