logo

Security teams ditch AI-only pen testing

ID: 3d4f8d63-360f-565a-8f0d-126733351110

STIX ID: report--3d4f8d63-360f-565a-8f0d-126733351110

Feed Name: ReversingLabs Blog

Date Published: 2026-07-23

Date Updated: 2026-07-23

Author: John P. Mello Jr.

...
...

Cobalt’s 2026 AI and Pentesting Pulse Report and expert interviews show a sharp decline in trust for AI-only penetration testing—organizations dropped from 29% to 9% relying solely on AI—because automated tools miss critical vulnerabilities, produce many high-risk findings that are often unresolved, and struggle with AI-specific attack surfaces (prompt injection, retrieval risks, agent permissions). The article recommends a hybrid model: use AI for large-scale reconnaissance and repetitive validation while relying on experienced human testers for business-logic, chained exploits, and remediation, and emphasizes validating compiled artifacts and supply-chain checks before deployment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.