Security News

Cybersecurity news aggregator

INFO Updates SC Media

Assail Inc. launches Sidewinder, an autonomous security platform

  • What: Launch of Sidewinder, an autonomous security platform
  • Impact: Organizations may benefit from advanced security automation tools
Read Full Article →

Breach and attack simulation Assail Inc. launches Sidewinder, an autonomous security platform July 9, 2026 Share By SC Staff (Adobe Stock) Assail Inc. has launched Sidewinder, a rebuilt version of its Ares offensive security platform. This new iteration features a 31 billion-parameter model designed to audit its own findings and correct its mistakes without human intervention, with further coverage provided by Silicon Angle. Sidewinder represents a significant redesign of Assail's Ares platform, moving from a script-following scanner to a system that plans its own security engagements. It utilizes a chat-first, plan-driven approach with 12 specialized autonomous agents that interact with a persistent knowledge graph of a target's attack surface. The platform employs vision-grounded analysis to operate a real browser, enabling it to crawl single-page applications, bypass simple challenges, and manage multiple authenticated identities simultaneously. This allows for the detection of cross-account, broken object-level authorization, and broken function-level authorization flaws. Each finding is independently verified, deduplicated, and presented with the agent's reasoning and a live network trace, mapped to the MITRE ATT&CK framework. Customers can deploy Ares on AWS, Azure, Google Cloud, or on-premises. Assail argues that Sidewinder addresses the limitations of traditional penetration testing by providing continuous, autonomous offensive security, reducing false positives and addressing vulnerabilities in real-time. Source: Silicon Angle SC Staff Related Supply chain GitHub: Typosquatted npm packages targeting credentials only an internal exercise SC Staff November 12, 2025 HackRead reports that GitHub has explained that its internal red team was behind the typosquatted npm packages believed by Veracode Threat Research to have been targeting GitHub code base credentials. Active Directory Semperis HIP conference Day One: Microsoft mea culpa, a call for cybersecurity coalitions Paul Wagenseil November 14, 2024 Semperis’ Hybrid Identity show kicks off with a Microsoft mea culpa, hospital war games and an appeal for a coalition of the willing among cyber defenders. AI/ML Immersive Labs launches cybersecurity crisis simulator SC Staff November 13, 2024 Using simple prompts, the AI-powered tool generates tailored scenarios that address varied cyberattack types such as ransomware and supply chain threats, enabling security teams to prepare for specific threat actors and industry-related risks. Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe You can skip this ad in 5 seconds

Share this article