Sophos Integrates OpenAI GPT to Verify Real-World Exploit Paths in Managed Risk

2 Sources

Share

Sophos unveiled Exploit Path Verification, an AI-powered capability built with OpenAI GPT cyber models for Sophos Managed Risk. The tool helps security teams validate which vulnerabilities attackers can actually reach in their environment, addressing the challenge faced by over 625,000 organizations that struggle to prioritize thousands of vulnerability findings.

News article

Sophos Builds AI-Powered Capability to Validate Real-World Exploit Paths

Sophos announced Exploit Path Verification (EPV), a new capability being developed for Sophos Managed Risk that leverages OpenAI GPT cyber models to help security teams identify which vulnerabilities in their environment are genuinely exploitable by attackers

1

2

. The AI-powered capability addresses a critical gap security teams face: while vulnerability scanning tools surface thousands of exposures with severity scores, these scores cannot determine whether a critical flaw sits behind protective controls or whether multiple low-severity findings chain into an exploitable route

1

.

How Exploit Path Verification Works to Prioritize Vulnerabilities

EPV is designed to reason over multiple data points including asset and patch state, endpoint protection policy, network reachability, identity and privilege facts, and exploit availability

2

. The system returns evidence-backed verdicts in four categories: Confirmed Exploitable, Blocked by a Control, Not Reachable, or Insufficient Evidence

2

. This approach moves security teams away from patching by generic severity scores toward fixing vulnerabilities that attackers can actually reach and exploit in their specific environment

1

. The capability will also identify chained exploit paths where multiple lower-severity findings combine into one exploitable route, assess whether controls block entire technique classes or only common public proofs of concept, and draft remediation text ready for ticketing systems

2

.

OpenAI GPT Cyber Models Power Frontier Cybersecurity Reasoning

The development extends Sophos' partnership with OpenAI through the Daybreak Defense Network, which Sophos joined in June 2026

1

. OpenAI GPT cyber models provide frontier reasoning to assess exploitability, while Sophos supplies environment-specific evidence and product controls

2

. Every verdict is labeled as AI-generated with visible evidence, and Sophos analysts review results before delivery to customers, ensuring responsible deployment with necessary guardrails

2

. "Our goal through the OpenAI Daybreak Defense Network is to give defenders the advantage of frontier AI, safely," said McCall McIntyre, Head of Global Cyber Partnerships at OpenAI

1

.

Addressing Security Team Challenges Across 625,000 Organizations

"One of the most common challenges we hear from security teams today is the volume of findings they need to sift through, and the lack of clarity of which findings matter most, or in other words, put them at greatest risk," said John Peterson, chief technology officer at Sophos

2

. Sophos defends more than 625,000 organizations worldwide, including 40,000 managed detection and response (MDR) customers across enterprise, mid-market, and commercial segments

1

. EPV is being developed specifically for enterprise customers and mid-market customers of Sophos Managed Risk, ensuring verified exploitability becomes accessible beyond organizations with the largest security budgets

2

. Sophos will announce availability, including early access and general availability timing, at a later date

1

.

Today's Top Stories

© 2026 TheOutpost.AI All rights reserved