What do you guys think? I don’t think there’s a lot of depth to the arguments, myself. It reads more like an threadbare op-ed with a provocative title. But I’d like to hear you opinions on the impact of automated testing solutions on the role of pen-testers in the industry.
While the broader cybersecurity field has seen rapid advancements, such as AI-driven endpoint security
Ya, about that “AI-driven endpoint security”, it does a fantastic job of generating false positives and low value alerts. I swear, I’m to the point where vendors start talking about the “AI driven security” in their products and I mentally check out. It’s almost universally crap. I’m sure it will be useful someday, but goddamn I’m tired of running down alerts which come with almost zero supporting evidence, pointing to “something happened, maybe.” AI for helping write queries in security tools? Ya, good stuff. But, until models do a better job explaining themselves and not going off on flights of fancy, they’ll do more to increase alert fatigue than security.