Today, Anthropic released Opus 4.7. We were lucky enough to have early access.
We have been working with the model for a while – evaluating it to understand how it actually behaves in real offensive workflows.
Get details on our findings: https://bit.ly/3QgH1nE
Posts by Ewan Mellor
What should you look for in AI pentesting?
We’ve got the answers to help you as you explore this new approach.
Learn everything you need to know about how these tools work and what capabilities to look for in our new buyers guide. 📗 https://bit.ly/3PS8wE0
Exploitation is no longer a linear process.
Our Head of Field Engineering, Andy Dennis, is leading a hands-on workshop at the AI Cybersecurity Summit 2026 on what replaces it.
Don’t just read about it. Run it: https://bit.ly/3PYCKoU
#AISummit
What is AI pentesting? How is it different from PTaaS? What should you look for in an AI pentesting solution?
We hear these questions a lot, and we created a buyer's guide to answer them.
Understand how this technology works & what capabilities to look for in our new guide: https://bit.ly/3PS8wE0
Systems that decide what to do next > traditional tools
That’s the advantage of agentic AI: discovery, prioritization, and broader coverage.
Our Head of AI, Albert Ziegler, discusses how systems don’t just run tests; they choose what to test next in Cyber Security Tribe: https://bit.ly/4lZzo0y
The last Patch Tuesday released the embargo on some _very_ juicy RCEs. Thanks to Microsoft's sec team for the disclosure, it's been a smooth and mature coordination process.
That’s a wrap on #RSAC!
We came, we saw, we showed the power of continuous exploit-validated testing and what it unlocks for modern security operations. 🏹
Thanks to everyone who stopped by our booth, tuned into our fireside chat, and booked a meeting this week. 🙌
XBOW is now valued at $1B+ following a $120M round led by DFJ Growth and NorthZone VC.
Security can’t stay reactive when attacks are becoming autonomous.
Our CEO discusses how this is just the beginning in @bloomberg.com: https://bloom.bg/4bvMTSf
🏁 #RSAC 2026 starts now.
If you’re on the show floor, kick things off with XBOW!
Join us at Booth #1843 and let our team show you the next revolution in cybersecurity: AI-powered continuous offense.
I joined Xbow in January because I was intrigued by the idea of continuous pentesting and using AI for something meaningful.
Today it seems like I was right to be intrigued. XBOW is a unicorn 🦄!
Most of the XBOW founders, at our first offsite in 2024.
Almost all of the XBOW team, at our most recent offsite in 2026.
XBOW joined the unicorn club today!
When we founded this, we had no idea whether using AI for pentesting was even possible. Back then, it honestly wasn't! So hearing a customer gasp and say "it's acting like a nation-state attacker" has made 2 years of work feel worth it.
xbow.com/news/xbow-ra...
In a historic first for Microsoft, XBOW, an autonomous pentesting system, discovered and reported a critical unauthenticated remote code execution vulnerability in the Microsoft Devices Pricing Program (CVE-2026-21536). https://bit.ly/4s2u8vq
Meet the XBOW team at #RSAC2026.
Book time at our booth to see how autonomous penetration testing eliminates noise and measures real risk: https://bit.ly/4183yoQ
Get to know our team 👇
Technology proven ✅ Market fit proven ✅
Now we scale 🏹
We’ve raised a $120M Series C, valuing XBOW at $1B+.
As AI speeds up attackers, defenders need the same edge.
We’re bringing autonomous offensive security to the industry at the moment it matters most.
Read more: https://bit.ly/4lA033O
Astro Everywhere just wrapped up a great Sunday in Millbrae, thanks to the amazing library and staff. Next stop: SMCL in East Palo Alto! Join us at 3:30 this Wednesday. Get your wonder on!
The Astro Everywhere dome is awesome! Take your kids to this!
Ready to chat all things autonomous offensive security with our team at #RSAC? 🏹
From continuous pentesting to AI-enabled attacks, let’s explore together what your organization can do to stay ahead.
Connect with us at the event: https://bit.ly/4qWj9Db
What’s on the agenda at RSAC?
Our CISO, Nico Waisman, will join Jason Haddix, CEO and CISO at Arcanum Information Security, and OpenAI's Dave Aitel for a fireside chat diving into the “Chaos Phase” and how AI is breaking the old security model.
Save your seat: https://bit.ly/402mXXQ
Autonomous pentesting is one click closer. 🖱️
XBOW is now available on AWS Marketplace.
To mark the launch, AWS customers can get 50% off XBOW Lightspeed for a limited time: https://bit.ly/46YLctI
Traditional scanners flood teams with alerts. Triage becomes the bottleneck.
Autonomous pentesting chains static + dynamic testing and validates exploits before reporting.
No noise. No false positives. 📄 Read the whitepaper: xbow.com/whitepaper/autonomous-pe...
📣 XBOW is now available on AWS Marketplace!
AWS customers can now purchase XBOW through their existing workflows & use committed spend, while getting pentest results in hours, backed by real exploit validation.
Read about the partnership & a limited-time 50% for XBOW Lightspeed: bit.ly/4qnVrPk
Aim for what matters every time. 🎯
Hear from our partner Rhymetec about how they conduct AI-powered pentesting in real-world deployments.
Here’s what autonomous offensive security in action looks like: https://bit.ly/4q95DLc
Traditional DAST ≠ dev-friendly.
That's why we go beyond traditional DAST, delivering AI-generated vulnerability reports that provide real exploit paths, app behavior, and code context, so teams can fix faster.
Read more in Tales from the Trace 👉 https://bit.ly/4rr5Jz1
The AI arms race doesn’t mean defenders lose.
Our CEO, Oege de Moor, joined @economist.com’s new "Boss Class" podcast to discuss how AI is accelerating real-world pentesting and ultimately giving the good guys better tools.
Link in replies 🔗
New look. Same mission. 🏹
Our visual identity is evolving, but our focus hasn’t changed: redefining how organizations think about offensive security by transforming application security with AI-powered, continuous offense.
Explore what’s new: https://bit.ly/3ZDQVkx
We’re thrilled to welcome WonLae Lee, a respected offensive security leader with decades of experience, as General Manager of South Korea. His leadership will play a key role as XBOW continues to grow across the Asia-Pacific region! https://bit.ly/49yjRR4
Chiton sample under a microscope showing its “eyes”
Yes, but more like hundreds of eyeglasses! Image is a chiton sample under a microscope, by Richard L. Howey, from www.microscopy-uk.org.uk/mag/artmay16...
Not directly from rocks. The structures are formed biologically from Ca ions dissolved in the seawater (look up “biomineralization”). Presumably chalk and limestone are good sources for the calcium to get into the seawater in the first place, but I’m guessing at this point.
@dombrasted.bsky.social The eye lens is aragonite, a calcium carbonate crystal. They grow it, like they grow their shells. msi.ucsb.edu/news/unravel...
Huge appreciation to the Seznam team!
On their first demo, XBOW identified a critical vulnerability with zero access and zero prep, just autonomous offensive security doing real work for a real customer.
It’s the kind of partnership that proves what matters.
www.youtube.com/watch?v=w4L2...