Skip to main content

Tag

Application Security

Offensive Security Academy
AI Pentesting Tools vs Automated Vulnerability Scanners

AI Pentesting Tools vs Automated Vulnerability Scanners

XBOW Team
AI Research
GPT-55 and XBOW A Step Change in Autonomous Application Security.

GPT-5.5 and XBOW: A Step Change in Autonomous Application Security

Christopher Ford
Product
Getting to “Should I?"

Getting to “Should I?”, Instead of “Can I?”: How XBOW Finds IDORs With High Accuracy in Ambiguous Contexts

Alvaro Muñoz
Offensive Security Academy
What Is Insecure Direct Object Reference (IDOR), and How Do You Test for It?

What Is Insecure Direct Object Reference (IDOR), and How Do You Test for It?

XBOW Team
Offensive Security Academy
AI-Assisted Attack Path Analysis and Exploitation Planning

AI-Assisted Attack Path Analysis and Exploitation Planning

XBOW Team
Security Research
Three Critical RCE Vulnerabilities in Microsoft Software Identified Autonomously by XBOW

Three Critical RCE Vulnerabilities in Microsoft Software Identified Autonomously by XBOW

Nico Waisman
Product
XBOW AI-Driven Pentesting vs. DAST

XBOW AI-Driven Pentesting vs. DAST

XBOW Team
AI Research
Tales from the Trace: How Context-Aware AI Redefines Vulnerability Reports

Tales from the Trace: How Context-Aware AI Redefines Vulnerability Reports

Ray Kelly
Security Research
React2Shell (CVE-2025-55182): A Wake-Up Call for Modern Web Security and How XBOW Helps You Respond

React2Shell (CVE-2025-55182): A Wake-Up Call for Modern Web Security and How XBOW Helps You Respond

Nico Waisman
AI Research
Tales from the Trace: How Agentic AI Merges Static and Dynamic Testing

Tales from the Trace: How Agentic AI Merges Static and Dynamic Testing

Ray Kelly, Alvaro Muñoz
Security Research
Cooking an SQL Injection Vulnerability in Chef Automate

Cooking an SQL Injection Vulnerability in Chef Automate

Javier Gil
Company News
XBOW Partners with Vanta to Bring Autonomous Penetration Testing to Startups

XBOW Partners with Vanta to Bring Autonomous Penetration Testing to Startups

Joanna Clifton
Security Research
How XBOW Turned a JavaScript Hint Into a Working File Inclusion

How XBOW Turned a JavaScript Hint Into a Working File Inclusion

Nico Waisman
Security Research
When the Heat Gets to Your Database: A Refreshing SQL Injection Discovery in Z-Push

When the Heat Gets to Your Database: A Refreshing SQL Injection Discovery in Z-Push

Javier Gil