2 Sources
[1]
Skyhawk Security integrates AWS Continuum to rank exploitable cloud flaws
Cloud detection and response company Skyhawk Security (CNP) Ltd. today said its AI Red Team now ingests vulnerability findings from AWS Continuum and ranks them by whether an attacker could weaponize them as part of a broader cloud breach. The integration lands ahead of Black Hat USA 2026 in Las Vegas. Amazon Web Services Inc. launched Continuum in June as a machine-speed answer to vulnerability backlogs. The service is model-agnostic, running on whichever frontier model performs best at a given step, and it moves findings through discovery, prioritization, validation and remediation. AWS Security Agent, the code review, threat modeling and penetration testing tool AWS built for agentic development, is now part of it. Skyhawk treats those application-layer findings as starting points for simulated attacks. Its AI Red Team runs continuously against a digital twin of a customer's live cloud environment, so the simulations do not disrupt production systems. From a flagged vulnerability, the software works through cloud configurations, identities and permissions, network paths and the controls already deployed, hunting for a viable route to sensitive data or other critical assets. The output is evidence of which flaws sit on a path an attacker could actually walk. Chief Executive Chen Burshan said the volume of findings has become the core problem. "Frontier models are finding more vulnerabilities than any team can remediate, while the time to exploit is collapsing," Burshan said. "Enterprises need to move beyond trying to fix everything faster and prioritize remediation based on true risk. Weaponization is the new priority signal." Skyhawk has a recent demonstration to point at. In June, the company disclosed that its AI Red Team seized full control of a financial services company's production AWS organization in seconds after starting from a low-privilege position. The environment had no misconfigurations and no excessive permissions, a leading cloud-native application protection platform was deployed and every dashboard indicator was green. The takeover worked by chaining legitimate, correctly configured identity and access management permissions together. Static attack graph analysis had shown no viable route to takeover at all. Attackers are pushing harder at cloud generally. CrowdStrike Holdings Inc.'s 2026 Global Threat Report found cloud-conscious intrusions rose 37%, with a 266% jump in cloud targeting by state-linked actors. The Continuum work builds on an existing relationship with AWS. Skyhawk already reasons over telemetry from Amazon GuardDuty, Amazon Inspector and Amazon Macie, which gives it more context than the findings surfaced through AWS Security Hub alone. Skyhawk was spun out of Israeli cybersecurity and application delivery vendor Radware Ltd.'s cloud native protection business in 2022.
[2]
Skyhawk Security integrates with AWS Continuum for cloud security By Investing.com
TEL AVIV, Israel - Skyhawk Security announced Monday an integration with AWS Continuum ahead of Black Hat USA 2026, according to a press release statement. The integration incorporates application security findings from AWS Continuum into Skyhawk's AI Red Team platform. The system prioritizes vulnerabilities based on their potential weaponization within broader cloud attacks. AWS Continuum, which includes AWS Security Agent, performs code security reviews, threat modeling and penetration testing across application development. Skyhawk ingests these findings and simulates cloud attacks using the identified application vulnerabilities. The platform evaluates cloud configurations, identities, permissions, networks and security controls to identify attack paths to sensitive data or critical assets. Skyhawk runs simulations using a digital twin of customer cloud environments to avoid affecting production systems. "Weaponization is the new priority signal," said Chen Burshan, CEO of Skyhawk Security. "This integration with AWS Continuum helps security teams focus on the 1% of vulnerabilities that create true exposure." The integration extends Skyhawk's existing relationship with AWS, building on telemetry from Amazon GuardDuty, Amazon Inspector and Amazon Macie delivered through AWS Security Hub. Skyhawk Security is a spin-off of Radware (NASDAQ:RDWR). The company positions its platform as designed to defend against AI-enabled attacks in cloud environments. This article was generated with the support of AI and reviewed by an editor. For more information see our T&C.
Share
Copy Link
Skyhawk Security announced integration with AWS Continuum ahead of Black Hat USA 2026, enabling its AI Red Team to ingest vulnerability findings and rank them by weaponization potential. The platform simulates attacks using a digital twin of customer cloud environments to identify which flaws attackers could actually exploit in broader cloud breaches.
Skyhawk Security announced an integration with AWS Continuum that fundamentally shifts how organizations prioritize vulnerabilities in cloud environments
1
. The cloud detection and response company revealed the integration ahead of Black Hat USA 2026, positioning it as a solution to the growing gap between vulnerability discovery and remediation capacity2
.The integration enables Skyhawk Security's AI Red Team to ingest application security findings from AWS Continuum and rank exploitable cloud vulnerabilities based on whether attackers could weaponize them as part of broader cloud attacks
1
. AWS Continuum, launched in June as a machine-speed vulnerability management service, performs code security reviews, threat modeling and penetration testing across application development using whichever frontier model performs best at each step1
.Skyhawk treats application-layer findings from AWS Continuum as starting points for simulated attacks that run continuously against a digital twin of customer cloud environments, ensuring production systems remain undisrupted
1
. From each flagged vulnerability, the software analyzes cloud configurations, identities and permissions, network paths and deployed controls to hunt for viable attack paths to sensitive data or critical assets2
."Frontier models are finding more vulnerabilities than any team can remediate, while the time to exploit is collapsing," said Chen Burshan, CEO of Skyhawk Security. "Enterprises need to move beyond trying to fix everything faster and prioritize vulnerabilities based on true risk. Weaponization is the new priority signal"
1
. Burshan emphasized that the integration helps security teams focus on the 1% of vulnerabilities that create true exposure2
.Skyhawk demonstrated the urgency of AI-driven threat prioritization in June when its AI Red Team seized full control of a financial services company's production AWS organization in seconds from a low-privilege position
1
. The compromised environment had no misconfigurations, no excessive permissions, a leading cloud-native application protection platform deployed, and every dashboard indicator showing green. The takeover succeeded by chaining legitimate, correctly configured identity and access management permissions together—a scenario where static attack graph analysis showed no viable route to takeover1
.This demonstration highlights why traditional approaches to cloud security fall short against sophisticated threats. CrowdStrike's 2026 Global Threat Report found cloud-conscious intrusions rose 37%, with a 266% jump in cloud targeting by state-linked actors
1
, underscoring the accelerating threat landscape that demands new prioritization methods.Related Stories
The AWS Continuum integration builds on Skyhawk's existing relationship with AWS, where the platform already processes telemetry from Amazon GuardDuty, Amazon Inspector and Amazon Macie
1
2
. This provides Skyhawk with more context than findings surfaced through AWS Security Hub alone, enabling more accurate assessment of which vulnerabilities sit on paths attackers could actually walk1
.Skyhawk Security, spun out of Israeli cybersecurity vendor Radware's cloud native protection business in 2022, positions its platform as designed to defend against AI-enabled attacks in cloud environments
1
2
. As frontier AI models accelerate vulnerability discovery while attackers compress exploitation timelines, organizations face mounting pressure to adopt machine-speed vulnerability management approaches that distinguish theoretical risks from genuine threats warranting immediate attention.Summarized by
Navi
31 Jul 2024

18 Jun 2026•Technology

17 Jul 2025•Technology

1
Technology

2
Science and Research

3
Technology
