Link serves as the second iteration in Sprocket’s context-aware AI lineup, following the summer launch of Apex, which focuses on unauthenticated external attack surfaces. While Apex reasons through an application from the outside, Link operates behind the login screen where the majority of exploitable data resides. By holding various credentialed roles at once, the agent identifies specific instances where one user profile might access unauthorized data, moving beyond the limitations of single-session testing.
Founder and CEO Casey Cammilleri noted that the tool provides verifiable proof of risk rather than mere suspicion. The system remains under the supervision of human expert testers to ensure accuracy in its findings. The platform is currently available to existing clients who have incorporated web application testing into their security scope and provided the necessary credentials for the roles they intend to audit.




Comments (0)
No comments yet. Be the first!