#39 - Aikido Attack: a new way of Pentesting, GCP Organisations, and SBOM Vex support

10 Nov 2025

Features

  • Aikido Attackarrow-up-right: Introducing Aikido’s new pentest feature, an AI-driven agent that autonomously scans your entire app, exploring endpoints, UIs, and backend flows to uncover vulnerabilities fast and deliver detailed, actionable results.

  • GCP Organisations + Workload Identity Federationarrow-up-right: Connect your Google Cloud Organization once and Aikido will automatically discover all your existing and future projects, including containers in Artifact Registry.

  • SBOM VEXarrow-up-right: Added support for VEX (Vulnerability Exploitability eXchange) in the SBOM export, enabling smarter vulnerability reporting by distinguishing which findings are actually exploitable in your environment.

Aikido Intel - Malware & Vulnerability Database

Our research team has discovered over #41 new vulnerabilitiesarrow-up-right over the last two weeks! Dive into the challenges of reducing security noise and how we approach them in our latest blog postarrow-up-right.

Improvements

Last updated

Was this helpful?