Content and Authority for AI Answers

Endpoint Security and Network Monitoring News for the Week of July 31st: Sweet Security, Tenable, Contrast Security, and More

Endpoint Security and Network Monitoring News for the Week of July 31st

Endpoint Security and Network Monitoring News for the Week of July 31st

The editors at Solutions Review have curated this list of the most noteworthy Endpoint Security and Network Monitoring news from the week of July 31st. This round-up covers announcements and updates from Sweet Security, Tenable, Contrast Security, and more.

Keeping up with all the most relevant Endpoint Security and Network Monitoring news can be time-consuming. As a result, our editorial team aims to summarize some of the top headlines in the space by curating a collection of the latest vendor product news, mergers and acquisitions, venture capital funding, talent acquisition, and other noteworthy news. With that in mind, here is some of the top endpoint security and network monitoring news from the week of July 31st.

For early access to all the expert insights published on Solutions Review, join Insight Jam, a community dedicated to enabling the human conversation on AI.

Endpoint Security and Network Monitoring News for the Week of July 31st


Acalvio Details Its New Deception Guardrails

Acalvio, an autonomous cyber deception technology provider, has introduced Deception Guardrails, a new preemptive defense capability built to detect, misdirect, and contain autonomous or AI-assisted attacks before they spread. With this offering, Acalvio aims to provide companies with a way to control an attacker’s “reality” with decoy MCP (Model Context Protocol) servers, decoy RAG (Retrieval-Augmented Generation) systems, and decoy AI agents. Additional capabilities include full-spectrum enterprise coverage, agentic deception tools, and real-time detection of malicious manipulation, jailbreak behavior, and prompt injections.

Read on for more.


Backslash Security Introduces an Agentic Fabric Graph to Its AI Endpoint Security Platform

Backslash Security, an agentic AI endpoint security company, has announced the Backslash Agentic Fabric Graph, an interactive visualization and risk assessment capability that gives security teams a visual, filterable view of AI agents, connectors, MCP servers, models, and related endpoint components. The Graph is a visual layer built into the broader Backslash Agentic AI Endpoint Security platform. It includes features like interactive AI inventory visualizations, risk prioritzations, risk and policy violation filters, and more. Backslash is also offering a zero-commitment, agentless risk assessment, based on the new graph, to organizations that want to quickly understand and prioritize their agentic AI risk.

Read on for more.


BreachLock Adds a Human Verification Layer to Its Autonomous Penetration Testing Solution

BreachLock, an offensive security company, is adding a human-verification layer to its autonomous penetration-testing offering, aiming to keep machine-speed testing grounded in expert accountability. By pairing autonomous testing with expert oversight, BreachLock can offer companies a model that preserves scale without removing the human judgment needed for complex or high-impact findings. Human-verified results are now available to all BreachLock AEV customers and can be requested during engagement setup.

Read on for more.


Bugcrowd Launches an Agentic Pentesting Offering

Bugcrowd, a preemptive cybersecurity company, has launched Savant Pathseeker, a new agentic pentesting offering designed to continuously test external web applications and APIs rather than on a fixed schedule. The solution integrates with nto Bugcrowd’s Penetration Testing as a Service (PTaaS), Bug Bounty and Vulnerability Disclosure Program (VDP), Red Team as a Service (RTaaS), and attack surface monitoring and scanning capabilities, and enables teams to investigate the systems that warrant deeper human investigation as part of a single, orchestrated experience within the platform.

Read on for more.


Contrast Security Reveals the CVE Shield, a Runtime Protection Capability

Contrast Security, an Application Detection and Response (ADR) provider, has announced CVE Shield, a runtime protection capability designed to block exploitation of known vulnerabilities in production applications before patches are applied. Instead of focusing exclusively on signatures or payload matching, the new tool aims to prevent the exploit behaviors themselves at runtime. Jeff Williams, Founder of Contrast Security, explains, “We created CVE Shield to give them immediate protection and buy security teams time between CVE disclosure and patch deployment. Legacy applications, vendor dependencies, and frozen release windows no longer have to mean open exposure.”

Read on for more.


Cycode Details Its Agentic Workflows Release

Cycode, an Agentic Development Security company, has revealed Agentic Workflows, a capability that enables AI agents to detect, prioritize, and act on security risks as soon as they arise in the application development lifecycle. The solution allows teams to define the triggers, boundaries, and approval thresholds once, then let workflows run whenever issues—i.e., critical CVEs or missed remediation deadlines—occur. Cycode’s Agentic Workflows are now in early access.

Read on for more.


Ent Expands Its Workspace Security Solution 

Ent, an intent-aware workspace security company, has expanded its solution suite with new capabilities to govern AI tools, protect sensitive data, and control high-risk applications at the endpoint. Elias Manousos, CEO and co-founder of Ent, says, “Prevention needs context from browsers, applications, and files so it can distinguish legitimate work from a hijacked user or rogue AI agent. These capabilities bring that control and decision to the endpoint while keeping sensitive context inside the customer’s environment.”

Read on for more.


Exaforce Releases a Mobile, Voice-Powered SOC Application

Exaforce, an agentic security operations company, has launched ExaGo, a mobile, voice-powered SOC app that lets analysts ask questions, receive spoken investigative answers, and trigger response actions from anywhere. The new feature aims to offer a hands-free workflow for incident response, with support for natural-language investigations, multilingual interaction, and continuity across mobile, desktop, and Apple Watch. Every conversation the app facilitates is backed by Exaforce’s real-time security knowledge graph, which continuously correlates identities, cloud activity, vulnerabilities, code, assets, and security telemetry as data arrives.

Read on for more.


Fortinet Grows Its FortiGate G Series

Fortinet, a cybersecurity company focused on the convergence of networking and security, has expanded its FortiGate G series with the 1200G and FortiSASE Outpost. With the FortiGate 1200G, companies can improve business continuity, reduce operational complexity, modernize their systems, and secure encrypted and AI-driven traffic without sacrificing application performance. Configured as a FortiSASE Outpost, the FortiGate solution is built to operate as an ASIC-accelerated on-site SASE POP, delivering security inspection, policy enforcement, and access control closer to users and data.

Read on for more.


HackerOne Announces the H1 Remediation Features

HackerOne, a Continuous Threat Exposure Management (CTEM) company, has launched H1 Remediation, a new feature that accelerates the path from a validated vulnerability to a developer-ready fix. Unlike simpler AI coding assistants, which generate fixes without security validation, the H1 Remediation tool operates exclusively on validated, exploitable findings. Additionally, for each of those findings, HackerOne’s agentic AI orchestrator, Hai, will trace the root cause to the actual lines of code and generate a developer-ready fix plan informed by context from the customer’s actual environment and grounded in the codebase.

Read on for more.


Horizon3 Adds Web Application Pentesting to Its NodeZero Solution

Horizon3, the AI-native proactive security company, has expanded its NodeZero platform with AI-powered web application pentesting capabilities. With these capabilities, NodeZero, Horizon3’s AI hacker, can now autonomously and safely test web applications as if it were a real attacker, chaining vulnerabilities from application abuse through credential theft, lateral movement, cloud pivots, and sensitive data exposure. This will make it easier for NodeZero to prove what’s actually exploitable, quantify the business consequences of each attack path, and map those paths to the tactics of known threat actors.

Read on for more.


Invicti Security Launches a Pentetration Testing Solution

Invicti Security, a web application and API security solution provider, has announced Invicti Agentic Pentest, a new penetration testing offering that combines autonomous AI reasoning with Invicti’s proof-based Dynamic Application Security Testing (DAST). Specifically, the solution uses a proprietary reconnaissance engine to map an application’s attack surface, analyze authentication flows, and build a contextual understanding of application behavior before generating customized attack plans.

Read on for more.


Jscrambler Releases Its Unified Client-Side Security Platform

Jscrambler, a Client-Side Security Platform for modern enterprises, has launched its Unified Client-Side Security Platform, which unifies software integrity and data governance at browser runtime to help enterprises continuously enforce security against AI-powered threats and data harvesting risks. Rui Ribeiro, CEO and Co-Founder of Jscrambler, explains how the Unified Client-Side Security Platform brings “software integrity and data governance together through a single runtime enforcement architecture,” enabling clients to”continuously secure multiple initiatives through one platform instead of managing disconnected tools.”

Read on for more.


Miggo Security Launches Multi-Stage Coordinated Mitigation Capabilities

Miggo Security, an AI Runtime Security and Application Detection and Response (ADR) provider, has announced new multi-stage coordinated mitigation capabilities (Defense-in-Depth Mitigation) to help teams implement multiple mitigation points at the edge and runtime, stop exploits before a patch is even applied, and more. Specific additions include the WAF Copilot, runtime-first mitigation, context-aware placements, and the Miggo sensor, which works from inside the application to recognize the exploit technique as it executes, rather than wholesale blocking of legitimate application activity.

Read on for more.


Mondoo Expands Its Vulnerability Management Capabilities

Mondoo—an Agentic Managed Vulnerability Service and advanced continuous threat exposure management (CTEM) platform—has expanded its solution suite with new capabilities, including comprehensive discovery, risk assessment, policy control, and remediation for enterprise AI agents. With these additions, Mondoo is providing security teams with the visibility and controls they need to define which AI tooling is allowed on company endpoints, and to surface any unsanctioned AI usage, enforce policy, and eliminate risky use cases before they cause damage.

Read on for more.


Morphisec Announces the General Availability of AI Usage Control

Morphisec, a provider of prevention-first security, has announced the general availability of AI Usage Control (AIUC), a solution that discovers and governs the AI tools, autonomous agents, and machine identities running across enterprise endpoints. The AIUC offering extends Morphisec’s patented in-memory prevention to AI governance and can run on Windows, Linux, and macOS inside the Morphisec Protector, the agent customers already use. AIUC is available now and provides capabilities for AI discovery, identity-aware governance, data exfiltration controls, audit-ready compliance, runtime guardrails, and tool, skill, and permission controls.

Read on for more.


NVIDIA and Over 30 Industry-Leading Companies Have Launched the Open Secure AI Alliance

NVIDIA and more than 30 partners have launched the Open Secure AI Alliance, an industry effort to build and share open technologies for securing AI software and agents. The announcement frames open-source as a better fit for AI defense because it provides defenders with transparency, control, and the ability to inspect and adapt tools on their own infrastructure. NVIDIA says the alliance will focus on vulnerability remediation, disclosure, and safer agent development, building on Linux Foundation and OpenSSF work.

Read on for more.


Prophet Security Extends Its Agentic SOC Platform

Prophet Security, an Agentic AI for Security Operations provider, is extending its agentic SOC platform with an AI Detection Engineer that automates detection engineering. The capability is designed to continuously find detection gaps, build and validate detections, tune noisy rules, and map coverage to MITRE ATT&CK, helping teams move faster without relying on manual rule writing. By allowing organizations to choose the level of AI autonomy, they can ensure their security teams remain in control of what matters most while maintaining review, version control, backtesting, and rollback capabilities.

Read on for more.


Qualys Details New Capabilities for TotalAI

Qualys, a provider of cloud-based IT, security, and compliance solutions, has announced new capabilities for TotalAI, built on the Qualys Enterprise TruRisk Platform. The additions to TotalAI will enable CISOs to reduce shadow AI, flag abnormal model behavior, and prove controls are working across development and runtime. Sumedh Thakar, president and CEO of Qualys, explains, “TotalAI gives enterprises a single, unified way to assess, govern, and secure AI risk continuously—not through periodic snapshots, but with the real-time clarity and discipline Qualys is known for.”

Read on for more.


Rapid7 Releases the Cyber GRC Offering

Rapid7, a provider of AI-powered managed cybersecurity operations, has launched Cyber GRC, which expands the Rapid7 Command Platform with native governance, risk, and compliance (GRC) capabilities. The updated solution will help companies better understand their cyber risk, validate the effectiveness of controls, and streamline their compliance initiatives by connecting GRC workflows to live security operations data. Additionally, the shared data foundation these capabilities offer will give security and compliance teams a unified, continuously updated view of control performance, active threats, and organizational risk.

Read on for more.


ReliaQuest Unveils a New Agentic Capability For Its GreyMatter Platform

ReliaQuest, an Agentic AI cybersecurity company, has announced GreyMatter Attack, a new agentic capability for the GreyMatter platform that helps security teams use frontier AI models to move faster than the adversaries targeting them. The new tool enables defenders to start from an identity, entry point, or adversary technique and then generate visual attack paths with prioritized remediation guidance, while feeding findings back into its broader automation stack. This will close the loop between finding weaknesses and testing whether they can actually be exploited.

Read on for more.


Sweet Security Moves Further Into AI Protection with Its Agentic AI Blocking Capability

Sweet Security, a proactive runtime enforcement company for cloud and AI, is moving further into AI protection with the release of Agentic AI Blocking, a capability that stops unauthorized agent behavior in real-time rather than simply alerting after the fact. With the feature, teams can terminate tool calls and sessions, block prompt injections, and prevent secrets or sensitive data from leaving through an agent. The update will also extend Sweet’s cloud runtime model to AI workloads, reflecting a broader industry shift from visibility-only tools to active prevention.

Read on for more.


Tenable Introduces an Always-On Agentic Fleet

Tenable, an exposure management company, has introduced an always-on agentic fleet built into Tenable Hexa AI. The new capability turns exposure management into a continuous workflow, with agents that can scan, triage, prioritize, remediate, verify patch status, and generate compliance briefings without constant human prompting. Additionally, the expanded Tenable Hexa AI suite can help teams reclaim analyst capacity by automating workflows, maintaining an always-on defense, and dramatically reducing MTTR through automated scan analysis, threat triage, and patch verification.

Read on for more.


ThreatLocker Raises $190 Million in Series F Funding

ThreatLocker, a global Zero Trust cybersecurity company, has raised $190 million in Series F funding to accelerate product development and international expansion. The round was led by Elephant, with continued support from D. E. Shaw Ventures and Arthur Ventures, alongside a new investment from Koch Disruptive Technologies. ThreatLocker will use the capital to further support its AI-related security controls, continued platform investment, and new offices in the U.K. as it scales its Zero Trust model globally.

Read on for more.


Torq Details Its AI-Powered SOC

Torq, an agentic security operations company, has unveiled SOC Brain, a new layer for its AI SOC platform designed to learn from historical cases, analyst decisions, and organization-specific judgment. The SOC Brain uses three core components—Recall, Reflex, and Retrospect—to turn past investigations and resolved cases into a continuously improving decision engine. Since it’s built into the Torq architecture, not enabled through a configuration setting, every Torq SOC Brain will evolve around an organization’s unique risk tolerance, operational practices, and analyst judgment while remaining completely private and under their control.

Read on for more.


XBOW is Doing a Solutions Spotlight Webinar Event

For this Solutions Spotlight event, the Solutions Review team has partnered with XBOW, an autonomous offensive security company focusing on ‘redefining’ cyber defense for the AI era. In their presentation, Sarah Hyatt and Jake Reinders—two XBOW experts—will showcase how to test a web application, follow attack paths, adapt when an approach fails, and validate a working exploit with supporting evidence. They’ll also demonstrate how the Public API brings assessments and results into existing security workflows.

Read on for more.


ZeroFox Launches an AI-First Platform and an Executive Security Application

ZeroFox, a solution provider focused on defending organizations against daily cyber threats, has launched HNTR. This new AI-first platform brings digital risk protection and threat intelligence together to discover, validate, and disrupt threats, alongside its first application, HNTR Executive Protection. HNTR runs on a continuous cycle of discovery, validation, and disruption to surface exposures across brands, domains, people, and assets. Meanwhile, HNTR Executive Protection is built to protect an executive’s entire orbit, including their online presence, family, residences, and travel.

Read on for more.


For consideration in future news round-ups, send your announcements to wjepma@solutionsreview.com.

Share This

Related Posts

Solutions Review Events Ad

Solutions Review Thought Leaders Ad