Home
News
Tech Grid
Data & Analytics
Data Processing Data Management Analytics Data Infrastructure Data Integration & ETL Data Governance & Quality Business Intelligence DataOps Data Lakes & Warehouses Data Quality Data Engineering Big Data
Enterprise Tech
Digital Transformation Enterprise Solutions Collaboration & Communication Low-Code/No-Code Automation IT Compliance & Governance Innovation Enterprise AI Data Management HR
Cybersecurity
Risk & Compliance Data Security Identity & Access Management Application Security Threat Detection & Incident Response Threat Intelligence AI Cloud Security Network Security Endpoint Security Edge AI
AI
Ethical AI Agentic AI Enterprise AI AI Assistants Innovation Generative AI Computer Vision Deep Learning Machine Learning Robotics & Automation LLMs Document Intelligence Business Intelligence Low-Code/No-Code Edge AI Automation NLP AI Cloud
Cloud
Cloud AI Cloud Migration Cloud Security Cloud Native Hybrid & Multicloud Cloud Architecture Edge Computing
IT & Networking
IT Automation Network Monitoring & Management IT Support & Service Management IT Infrastructure & Ops IT Compliance & Governance Hardware & Devices Virtualization End-User Computing Storage & Backup
Human Resource Technology Agentic AI Robotics & Automation Innovation Enterprise AI AI Assistants Enterprise Solutions Generative AI Regulatory & Compliance Network Security Collaboration & Communication Business Intelligence Leadership Artificial Intelligence Cloud
Finance
Insurance Investment Banking Financial Services Security Payments & Wallets Decentralized Finance Blockchain Cryptocurrency
HR
Talent Acquisition Workforce Management AI HCM HR Cloud Learning & Development Payroll & Benefits HR Analytics HR Automation Employee Experience Employee Wellness Remote Work
Marketing
AI Customer Engagement Advertising Email Marketing CRM Customer Experience Data Management Sales Content Management Marketing Automation Digital Marketing Supply Chain Management Communications Business Intelligence Digital Experience SEO/SEM Digital Transformation Marketing Cloud Content Marketing E-commerce
Consumer Tech
Smart Home Technology Home Appliances Consumer Health AI
Interviews
Anecdotes
Think Stack
Press Releases
Articles
Tech Events 2025
  • Application SecurityAI

Cycode Unveils AI Exploitability Agent at Black Hat 2025 to Revolutionize Application Security


 Cycode Unveils AI Exploitability Agent at Black Hat 2025 to Revolutionize Application Security
  • by: Source Logo
  • |
  • July 23, 2025

Cycode, a leader in AI-native application security, has launched its AI Exploitability Agent at Black Hat 2025, a groundbreaking tool designed to prioritize and remediate high-risk vulnerabilities with unprecedented speed. By addressing the surge in vulnerabilities from AI-generated code, this agent empowers security teams to reduce mean time to remediation (MTTR) by over 99%, transforming how organizations secure software in the AI-driven development era.

Quick Intel

  • Cycode’s AI Exploitability Agent debuts at Black Hat 2025.
  • Prioritizes exploitable vulnerabilities, reducing MTTR by 99%.
  • Addresses millions of flaws in AI-generated code (e.g., Cursor’s 100,000 daily flaws).
  • Integrates with Risk Intelligence Graph for context-aware risk scoring.
  • Automates root cause analysis and correlates multi-scanner alerts.
  • Offers AI-driven fixes to streamline DevSecOps workflows.

Tackling AI-Generated Code Vulnerabilities

The rise of AI coding tools like Cursor, generating over a billion lines of code daily, introduces millions of new vulnerabilities, with estimates suggesting 40% of AI-generated apps contain security flaws. As Lior Levy, CEO and Co-founder of Cycode, states, “The AI coding revolution threatens to completely overwhelm traditional approaches. It’s no longer enough to just keep pace; security must take the lead, leveraging automation and AI that provides crystal-clear visibility, intelligent prioritization, and automated fixes.” Cycode’s AI Exploitability Agent addresses this by automating exploitability analysis, answering critical questions about vulnerability risk, exploitability, and root causes in minutes rather than days.

Core Capabilities of the AI Exploitability Agent

The AI Exploitability Agent, part of Cycode’s suite of AI Security Teammates, leverages the Risk Intelligence Graph (RIG) and Model Context Protocol (MCP) to deliver:

  • Exploitability Analysis: Determines if vulnerabilities can be targeted in real-world scenarios, filtering out non-exploitable risks.
  • Risk Prioritization: Uses code-to-runtime context to assign risk scores, prioritizing medium-severity exploitable vulnerabilities over non-deployed high-severity ones.
  • Root Cause Correlation: Consolidates alerts from multiple scanners, connecting runtime risks to code-level root causes and owners for efficient remediation.

These capabilities slash MTTR from over 10 months to just 3 days, as validated by Solaris, which reported a 99.4% reduction in remediation time and automation of 46% of critical fixes.

Enhancing DevSecOps with AI Integration

Integrated with Cycode’s AI-native platform, the Exploitability Agent works alongside the AI Fix and Remediation Teammate to suggest context-aware code fixes tailored to organizational frameworks and coding patterns. This synergy streamlines DevSecOps workflows, reducing alert fatigue and enabling developers to focus on critical tasks. The platform also supports secure AI development, change impact analysis, and no-code automation, ensuring security keeps pace with rapid development cycles.

Measuring ROI with AI Security

Cycode’s AI Security ROI Calculator helps organizations quantify the benefits of AI-driven security, focusing on faster remediation, improved triage through risk scoring, and actionable insights from natural language queries. This tool underscores the platform’s value in addressing the overwhelming volume of security alerts in modern development environments.

Cycode’s AI Exploitability Agent, debuted at Black Hat 2025, sets a new standard for application security by leveraging AI to prioritize and fix vulnerabilities with unmatched efficiency. By addressing the challenges of AI-generated code and integrating seamlessly with DevSecOps workflows, Cycode empowers organizations to secure software at scale, ensuring resilience in the face of evolving cyber threats.

 

About Cycode

Cycode's AI-Native Application Security Platform unites security and development teams with actionable context from code to runtime to identify, prioritize, and fix the software risks that matter.

Powered by proprietary scanners, third-party integrations, and the Risk Intelligence Graph (RIG), Cycode delivers unified, correlated insight across the Software Factory. Its unique ability to sense, reason, and act with context in the AI-Era comes from its foundational convergence of AST, ASPM, and Software Supply Chain Security—purpose-built to secure both AI- and human-generated code.

News Disclaimer
  • Share