In section Releases

BugBase Launches Autonomous Pentest Copilot for Black-Box Security

San Francisco-based BugBase has introduced Pentest Copilot Enterprise, an autonomous platform designed to conduct black-box red teaming without requiring access to source code. By simulating external attacks across web applications and cloud infrastructure, the system aims to replace traditional, month-long manual assessments with continuous, automated vulnerability verification.

BugBase Launches Autonomous Pentest Copilot for Black-Box Security

The platform functions by mapping attack surfaces from the outside in, navigating complex obstacles such as CAPTCHA, bot detection, and multi-factor authentication. Using real Chromium browsers, the agents maintain authenticated context to test user flows, including cookies and session tokens. This approach allows the software to execute iterative attacks against 100 vulnerability categories, ranging from standard injection flaws to intricate business-logic errors.

In internal testing, the tool achieved full coverage on benchmarks like OWASP Juice Shop and various Active Directory labs. Dhruva Goyal, founder and CEO of BugBase, noted that the rising sophistication of AI-driven threats makes annual point-in-time testing insufficient. The platform provides reproducible proofs of concept and remediation guidance, with deployment options ranging from self-serve SaaS to on-premises configurations.

Share:on TelegramXFacebook

Subscribe to our newsletter

Once a week — the best stories from our editors, no ads or push notifications. Delivered Sunday morning.

Comments (0)

Leave a comment

No comments yet. Be the first!