Blog

Insights from the offensive AI team

Engineering notes, research, customer stories, and the occasional rant from the team building autonomous pentesting at Intrudify.

AI Research

How AI is reshaping web application security

Annual pentests are giving way to continuous, agent-driven testing. We unpack the architectural shift, what it means for security teams, and where humans still hold the edge over autonomous systems.

Read more
May 14, 2026
Marc BalasescuCEO & Founder
Product

Inside our remediation engine: how AI explains vulnerabilities

Every Intrudify finding ships with a plain-English explanation, a suggested patch, and a confidence score. Here's how the LLM pipeline that produces them works - and why we built it after our customers asked us to.

Read more
May 02, 2026
Liana PintilieHead of AI
Compliance

NIS 2 readiness: what European SaaS companies need to know

The deadline has come and gone, and most teams are scrambling. We mapped every NIS 2 article to an Intrudify control, plus the three tests auditors keep asking us to run first.

Read more
April 22, 2026
Naomi SuttonCompliance Lead
Security

Continuous pentesting vs annual audits: the case for both

Continuous AI scanning catches the regressions; an annual human-led engagement catches the architectural risks. Here's how to budget for the two without either feeling redundant.

Read more
April 10, 2026
James OkaforSecurity Researcher
Customer Stories

Why we replaced our manual pentest team with autonomous AI

Atlas Fintech ran a side-by-side trial: a four-week engagement from a Big Four firm against six weeks of Intrudify runs. The findings overlap was 91%. The cost difference was 8×.

Read more
March 28, 2026
Priya KapoorHead of Security, Atlas Fintech
Engineering

From URL to audit-ready report: inside the Intrudify pipeline

A walkthrough of the seven stages every scan goes through - discovery, parameter classification, payload synthesis, validation, scoring, remediation drafting, report assembly. Plus the SLOs that keep it under 24 hours.

Read more
February 24, 2026
Adrian CostaEngineering Lead
Compliance

Compliance automation: SOC 2, ISO 27001, and NIS 2 in one report

Auditors expect different evidence formats from each framework. We built a single artifact that ticks all three boxes - and renewed our own SOC 2 with it last quarter.

Read more
February 06, 2026
Sofia HenriksenDevSecOps Lead