Connect with us

Technology

Armadin and TENEX.ai Run the Largest Controlled Live AI Cyberattack on Record

Published

on

A joint engagement at a globally critical institution demonstrates continuous, machine-speed attack and response, the standard most organizations have not built and the one Armadin and TENEX.ai already run every day.

PALO ALTO, Calif., Aug. 3, 2026 /PRNewswire/ — Armadin, an AI-native cybersecurity company, and TENEX.ai, a fully-agentic, human-led security operations provider, today described a joint engagement to test a safe real-world global attack for a leading global institution.

Armadin’s autonomous, agentic attacker executed a safe AI attack across the entire external perimeter, internal network, and web applications. TENEX.ai‘s agentic platform and SOC ingested, triaged, and responded to the resulting telemetry in real time.

Over the course of the three day attack, Armadin’s swarm generated 17 million offensive actions, discovering 38 validated attack paths and producing 238 security findings. TENEX.ai’s agentic Security Operations platform separately triaged 100% of 101,169 alerts and reconstructed the entire attack across 231 billion raw events – a forensic effort that would have taken a five-person team approximately 2,400 hours or four months of manual analyst work.

This engagement reflects standing operating practice for both Armadin and TENEX.ai, not an isolated proof of concept. Armadin runs Hyperattacks against live environments continuously to help customers close their security gap before adversaries discover it. TENEX.ai runs fully-agentic, human-led continuous detection and response for every customer on the same operating cadence. This engagement demonstrates, under live conditions, what happens when both operating models run against each other at AI scale and speed rather than in isolation.

Why This Matters

Defenders historically relied on incomplete point-in-time assessments and signature-based scanners to discover their security gap. As AI accelerates the pace of digital change and attackers leverage agentic AI to conduct sophisticated machine-speed attacks, security programs must move towards effective autonomous security: AI-powered offense training AI-driven defense.

Armadin’s platform safely delivers the most comprehensive and powerful AI attacks to identify new and novel attack paths before adversaries can exploit them and train an organization’s defenses at machine speed.

TENEX.ai’s platform is built on continuous detection, triage, and investigation – matching that tempo on the defensive side. This engagement shows what happens when both capabilities run concurrently against a live enterprise environment, rather than sequentially or in isolation and what it exposes about the gap between having detection tooling and having detection coverage.

How it Worked

Armadin’s agentic swarm operated against the institution’s external perimeter, internal network, and web applications under zero-knowledge conditions. No privileged credentials. No control-point whitelisting. No source code access.

The swarm discovered and analyzed petabytes of attack surface reconnaissance data, indexed it into a security knowledge graph, then launched 26,000 agents against the environment. Each attack leveraged models trained with the expertise, tradecraft, and judgment of elite human operators, chaining discovered exposures into validated attack paths with the sophistication of an advanced threat actor. Every action the swarm took ran through Armadin’s control layer with supervision from a safety model trained with expert human feedback.

TENEX.ai’s SOC ingested the resulting activity through its detection stack, correlated and triaged the alerts it generated, and escalated based on analyst judgment rather than a pre-agreed response plan.

Neither side treated the other as a test to pass. Armadin’s agents adapted their tradecraft based on the defensive controls they encountered. TENEX.ai’s analysts investigated and escalated based on what the telemetry showed – not a script agreed in advance.

What the Swarm Found

Armadin’s swarm launched 1,300 attacks, carried out by 26,000 agents executing millions of actions and consuming tens of billions of tokens, targeting more than 25,000 services.

The engagement began at the institution’s external perimeter. Armadin’s swarm targeted the perimeter and identified exploitable access to the institution’s systems behind a defensive security deployment that included WAFs, endpoint security, and a Security Operations Center. Over the course of the engagement, Armadin documented 238 findings and chained 38 validated attack paths. 98 of those findings were significant. Armadin’s swarm is built to enumerate this class of exposure because it maps the actual, deployed dependency graph rather than relying on a static software bill of materials. That is the pattern most vulnerability management programs are not yet built to catch, because it does not read like a vulnerability in the traditional sense. It reads like ordinary engineering practice, right up until someone exploits it.

What TENEX.AI saw

During the exercise, TENEX.ai triaged all 101,169 alerts generated across the institution’s security stack. Human analysts remained accountable for every investigative and escalation decision, while TENEX.ai agents traced the attacker’s activity across 231 billion events, reconstructed 38 attack paths, assembled supporting evidence, and delivered evidence-backed findings for action. The scale of the investigation highlights the challenge facing modern Security Operations Centers. Attacker activity represented just one event in every 13,338 recorded during the engagement. TENEX.ai processed the entire data set while analysts directed the investigation and AI agents generated and executed queries, identified pivot points, gathered evidence, and synthesized the results.

The outcome was not a high-level summary. TENEX.ai produced evidence-backed determinations for all 238 findings. For each finding, the platform documented the attacker’s actions, the affected endpoint, whether the activity could be proven from available telemetry, which existing detections identified it, and what additional detection logic would be required. Each finding was classified across 31 dimensions, including mappings to MITRE ATT&CK, OWASP Top 10, OWASP API Top 10, and CWE where applicable. The platform also performed 31 documented verification checks, recording both positive and negative results so that visibility gaps were documented rather than assumed away.

Under a traditional SOC model, each of the 38 attack paths would typically require a separate investigation. Instead, TENEX.ai established every finding from evidence, correlated 2,164 distinct source addresses across 89 alerting rules related to the attacker infrastructure, and completed the investigation as a single coordinated operation. Every conclusion was evidence-based. Based on the scope of the investigation, performing the same work manually would have required approximately 2,400 analyst-hours – more than a year of effort for a single analyst or roughly four months for a five-person team.

What This Means

The institution in this engagement proactively engaged in the critical work of testing their environment against an AI Hyperattack. They maintain a WAF, endpoint security, and SOC coverage consistent with a well-resourced, expert, enterprise security program. Armadin’s swarm found and validated a real path to exploitation and proof that the exposure was genuine and not theoretical. TENEX.ai’s SecOps platform, SOC, and team triaged and worked that activity in real time, exactly as its detection and response model is built to do under live adversarial pressure.

That combination, autonomous offense and human-augmented defense operating against each other at machine speed, is converging on the default operating condition for enterprise security. Continuous adversarial validation is becoming the baseline, not the exception. Organizations that build it in now will be ready for what’s already here. Those still testing once a year will find their gap in production, and it will already be too late.

Executive Quotes

AI is a step-change in adversary capability that every defender must prepare for. Every organization needs to build a security program focused on effective autonomous security: red AI training blue AI. The scale, speed, and sophistication of Armadin’s Ultimate Attacker creates an adversarial loop that compounds faster than human defense, helping organizations close their security gap before attackers exploit it. The organizations that mobilize first will build the institutional muscle memory that compounds over time. The ones that wait will find out what unmanaged exposure costs.
Kevin Mandia, Chief Executive Officer, Armadin

Every organization needs to prepare for the AI threat. The security gap is widening as AI accelerates digital change and democratizes advanced offensive cyber capability. The industry just watched what happens when a capable, autonomous system has nothing enforcing what it is allowed to do. We built Armadin to provide effective autonomous security with the world’s most sophisticated offensive AI capability governed by a control system to ensure alignment to train machine-speed defense. Every organization needs safe Hyperattacks to discover their gap before attackers do.
Travis Lanham, Chief Technology Officer, Armadin

Watching an agentic adversary operate against a live enterprise is very different from reading a red team report after. During this engagement, our AI agents and analysts investigated activity at a scale most SOC teams were never built to respond to or even detect. This isn’t a preview of where cybersecurity is headed – it’s the environment organizations are operating in today.”
Eric Foster, Chief Executive Officer, Tenex

“Machine-speed attacks cannot be answered with human-speed workflows. In this exercise, TENEX’s AI agents traced attacker activity across billions of events, connected the pivots, and assembled the evidence. Human analysts directed the investigation and governed every escalation. That is the operating model we built: AI working at machine speed, with humans accountable for outcomes.”
Venkata Koppaka, Co-Founder and Chief Technology Officer, TENEX.ai

For more information, visit hyperattack.ai.

About Armadin

Armadin is an AI-native cybersecurity company delivering the definitive effective autonomous security platform to identify and eliminate your organization’s exploitable risk. As the threat of AI-driven attacks escalates, Armadin Hyperattacks empower enterprises to proactively secure their environments.

Armadin’s platform safely delivers the most comprehensive and powerful AI attacks to identify new and novel attack paths before adversaries can exploit them and train an organization’s defenses at machine speed.

Led by CEO Kevin Mandia, Armadin is a group of engineers, researchers, and hackers on a mission to redefine what proactive security can do in the AI era.

About TENEX.ai

TENEX.ai is an AI-native, human-led security operations platform and MDR built by operators who have previously scaled MDR and founding engineers from Google Chronicle and leading AI labs. TENEX serves enterprise customers across the Google and Microsoft security ecosystems. Its fully agentic Security Operations platform autonomously triages, investigates, hunts, and responds to threats, with elite human analysts always in the loop to provide oversight, judgment, and accountability. Backed by Crosspoint Capital Partners, Shield Capital, DTCP, Deepwork Capital, and the Florida Opportunity Fund, with its seed round led in 2025 by Andreessen Horowitz (a16z), TENEX is headquartered in Sarasota, FL, with offices in Overland Park, San Jose, and Phoenix. Learn more at TENEX.ai.

Media Contacts

Armadin: Kristy Campbell, media@armadin.com
TENEX.ai: press@TENEX.ai 

This press release constitutes marketing materials and promotional content prepared by Armadin. The information contained herein is intended for marketing and informational purposes only and should not be construed as investment advice, a guarantee of future performance, or an offer to sell or a solicitation to buy any product or service. Armadin makes no warranty, representation, or guarantee regarding the accuracy, completeness, or reliability of any information presented in these materials.

View original content to download multimedia:https://www.prnewswire.com/news-releases/armadin-and-tenexai-run-the-largest-controlled-live-ai-cyberattack-on-record-302841653.html

SOURCE Armadin

Continue Reading

Technology

SparkLabs and Mirae Asset Launch a Venture Capital Fund for Central Asian Startups

Published

on

By

SEOUL, South Korea, Sept. 20, 2026 /PRNewswire/ — Qazaqstan Investment Corporation (QIC), IT Park Ventures (Uzbekistan), Mirae Asset Venture Investment and SparkLabs Group have signed a term sheet to establish SparkLabs Mirae Silk Road Fund I LP, a new venture capital fund. The fund will be managed by Mirae Asset Venture Investment and SparkLabs Group.

The signing took place in Seoul during the state visits of the Presidents of Kazakhstan and Uzbekistan to Korea and the first Central Asia–Republic of Korea Summit.

During this past week, South Korea and Kazakhstan signed commercial agreements worth US$18.95 billion. Kazakhstan is a country of 20 million people with its core industries being oil and gas, and among the highest producers of iron and silver in the world. Uzbekistan is a country of 39 million people, and they are the largest electricity producer in Central Asia.

Qazaqstan Investment Corporation (QIC) is Kazakhstan’s national fund of funds and are anchor investors along with IT Park Ventures, the venture capital arm of the country’s state technology park. The new venture capital fund will back Central Asian startups at the Series A and later, which are businesses with a proven model that are ready to scale beyond the region. The fund is sector-agnostic but focuses on AI-native companies, where artificial intelligence is core to the product and business model.

“Higgsfield becoming Kazakhstan’s first unicorn was a turning point. It showed that a world-class AI company can be built in Central Asia. And it won’t be the last with more than half of the region’s population is under 30, growing up digital and our governments actively investing in AI. Yet the region is still largely overlooked by international investors, and that’s the opportunity this fund is built for,” explained Aslan Sultanov, Co-founder and General Partner at SparkLabs Mirae Silk Road.

Former Coinbase CTO and Partner at Andreessen Horowitz, Balaji Srinivasan, reopened his Network School in Kazakhstan last month. Telegram launched an AI lab and opened their first regional office in Kazakhstan this past year.

Beyond capital, portfolio companies will gain access to the SparkLabs and Mirae Asset’s global networks, along with hands-on support in expanding into South Korea, the United States and the MENA region.

About the Partners

SparkLabs Group is a network of startup accelerators and venture capital funds that has invested in over 600 startups across 6 continents since December 2013. These companies include OpenAI, SpaceX, Vectara, Kneron, Anthropic, Nex Team, Kraken, GenG, Lyft, MetAI, and others.

Mirae Asset Venture Investment is the venture capital arm of Mirae Asset Financial Group, one of Asia’s largest independent financial groups with over US$845 billion in assets under management. The company operates worldwide across 18 markets, and manages a fully diversified global investment platform encompassing ETFs, alternative investments, and traditional strategies.

Qazaqstan Investment Corporation (QIC) is Kazakhstan’s national fund of funds and part of Baiterek National Managing Holding. QIC invests in private equity and venture capital funds alongside international and private partners, with the goal of attracting long-term capital into Kazakhstan and developing the country’s investment ecosystem. QIC participates in 19 funds with a combined capitalization of $2.8 billion.

IT Park Ventures is the venture capital arm of IT Park Uzbekistan, the country’s state technology park and the main platform supporting Uzbekistan’s IT industry and tech exports. IT Park Ventures invests in startups from Uzbekistan and Central Asia and co-invests with international funds, connecting regional founders with global capital and markets.

View original content to download multimedia:https://www.prnewswire.com/news-releases/sparklabs-and-mirae-asset-launch-a-venture-capital-fund-for-central-asian-startups-302883810.html

SOURCE SparkLabs Group

Continue Reading

Technology

AECOM Data Breach Investigation: Edelson Lechtzin LLP Probes Class Action Claims After Hackers Allege Theft of More Than 1 TB of Data

Published

on

By

National class action law firm offers free, confidential case evaluations to AECOM employees, clients, and others whose personal information may have been exposed in the reported AECOM data breach.

DALLAS, Sept. 20, 2026 /PRNewswire/ — Edelson Lechtzin LLP, a national class action law firm, is investigating data privacy claims arising from a reported data breach at AECOM, the U.S.-based multinational infrastructure and engineering firm. Anyone who has received a data breach notice from AECOM, or who believes their personal information may have been exposed, can request a free case evaluation.

AECOM data breach — at a glance:

Company: AECOM, a Texas-based, multibillion-dollar multinational infrastructure consulting, engineering, design, and construction management firm.Reported: A cyberattack said to have occurred on or about September 17, 2026, first surfaced on dark web monitoring sites.Hackers’ claims: The group Metaencryptor claimed responsibility for an attack said to involve approximately 1.22 terabytes (TB) of data. Separately, dark web monitoring service Breachsense listed a related AECOM leak of roughly 670GB attributed to a group identified as BrainCipher.Status: The breach and the hackers’ claims remain unconfirmed. AECOM has not publicly detailed the scope or impact.Who may be affected: Current and former AECOM employees, clients, and others whose data AECOM held.Cost to you: Nothing. Case evaluations are free and confidential.

What Happened

According to a September 17, 2026 post on the dark web monitoring site Ransomware.live, the hacker group Metaencryptor claimed responsibility for a cyberattack on AECOM that allegedly affected about 1.22 TB of data. The cybersecurity blog HookPhish similarly reported that Metaencryptor was behind a suspected attack on the engineering firm.

Separately, the dark web monitoring service Breachsense reported an AECOM data leak listed at approximately 670GB, attributed to a group it identified as BrainCipher. Breachsense also indexed thousands of AECOM-linked credentials circulating online, including 27,434 @aecom.com accounts drawn from external breaches and 6,077 credentials tied to aecom.com itself — among them thousands of logins found in “combo lists” and in infostealer malware logs, many with plaintext passwords. Breachsense cautioned that those credentials may belong to either customers or staff and are not necessarily connected to the claimed attack.

The breach has not been confirmed, and important details (including its true scope, the specific data involved, and the number of people affected) are not yet publicly available.

What Personal Information May Be at Risk

The specific data involved in the reported AECOM data breach has not been confirmed. Data breaches like this can expose personal information, increasing the risk of identity theft and fraud. Affected individuals should treat any AECOM breach notification seriously.

Who May Be Affected by the AECOM Data Breach

The investigation focuses on current and former AECOM employees, clients, and anyone else whose personal information AECOM maintained. Anyone who has received a data breach notification from AECOM may face an increased risk of identity theft and fraud and is encouraged to come forward.

Your Legal Options

Edelson Lechtzin LLP is investigating a potential class action to pursue legal remedies on behalf of individuals whose sensitive personal data may have been compromised in the reported AECOM breach. A successful case could recover compensation for losses such as lost time, out-of-pocket costs, and loss of privacy, and could push AECOM to strengthen how it protects personal information. The firm will evaluate your rights and potential claims at no cost.

Recommended Steps to Protect Yourself

Review your account statements and credit reports regularly and stay alert for suspicious activity.Confirm whether your information was involved in the AECOM incident.Preserve any letters or emails you received about the breach.Consider placing fraud alerts and enrolling in credit monitoring.

Contact Us for a Free Case Evaluation

Speak confidentially with a data privacy attorney today: Marc Edelson, Esq., Edelson Lechtzin LLP, 411 S. State Street, Suite N-300, Newtown, PA 18940; Phone: 844-696-7492; Email: medelson@edelson-law.com; Web: www.edelson-law.com. Or click HERE to request a free consultation.

About Edelson Lechtzin LLP

Edelson Lechtzin LLP is a national class action law firm with offices in Pennsylvania and California. In addition to data breach litigation, the firm handles class and collective actions involving securities and investment fraud, federal antitrust violations, ERISA employee benefit plans, wage theft, and consumer fraud.

Media and Partnership Inquiries: Use the contact information above to connect with our team regarding interviews, co-counsel opportunities, and referral partnerships.

Legal Notice: This press release may be considered Attorney Advertising in some jurisdictions. Prior results do not guarantee a similar outcome. The reported data breach and the hackers’ claims described above are unconfirmed.

View original content to download multimedia:https://www.prnewswire.com/news-releases/aecom-data-breach-investigation-edelson-lechtzin-llp-probes-class-action-claims-after-hackers-allege-theft-of-more-than-1-tb-of-data-302884076.html

SOURCE Edelson Lechtzin LLP

Continue Reading

Technology

iScreen Reaches No. 1 in Graphics & Design Across 94 Markets Following iOS 27 Update

Published

on

By

Extra-large widget experiences, iOS 27-inspired themes and new customization tools drive iScreen’s latest global growth

LOS ANGELES, Sept. 20, 2026 /PRNewswire/ — iScreen, a mobile customization app for iOS and Android, announced that it has reached No. 1 in the Graphics & Design category across 94 countries and regions following its latest iOS 27-focused update.

The update expands iScreen’s Home Screen customization experience with new extra-large widgets, iOS 27-inspired themes, layouts optimized for new screen proportions, and AI-assisted design tools.

Extra-Large Widgets

Built for the larger widget canvas available in iOS 27, iScreen’s new extra-large widgets go beyond simply scaling up existing formats. The collection includes Photo, Album, Music, Calendar, Interactive Refrigerator and Quick Launch widgets, among others. Users can also customize content, layouts and visual styles to create more functional and expressive Home Screen experiences.

iOS 27-Inspired Themes and iPhone Duo Theme Support

iScreen has introduced new iOS 27-inspired themes that combine coordinated wallpapers, transparent-style widgets, icons and other visual elements into complete Home Screen setups.

Selected themes have also been optimized for iPhone Duo’s screen proportions and display dimensions, with wallpapers, widgets and icons adjusted to better fit the new format while maintaining a cohesive visual experience.

AI-Assisted Home Screen Design

iScreen is also testing AI Home Screen Designer with a limited group of users. The feature generates coordinated design suggestions based on users’ preferences for style, color and visual elements, combining wallpapers, widgets and icons into a unified setup.

“The latest iOS update has opened up new possibilities for mobile personalization,” said the iScreen team. “We want to turn those capabilities into practical and creative experiences that make Home Screen design easier and more expressive.”

About iScreen

iScreen is a mobile customization app offering widgets, wallpapers, themes and Home Screen customization tools for iOS and Android devices. With more than 100 million users worldwide, iScreen has ranked No. 1 in Graphics & Design across 94 countries and regions and has been featured by Apple Editorial in 128 countries for five consecutive days.

Official Website: iScreen – Phone Style, iScreen it!
iOS Download: ‎‎iScreen – Widgets & Wallpaper App – App Store
Android Download: iScreen Google Play

View original content:https://www.prnewswire.co.uk/news-releases/iscreen-reaches-no-1-in-graphics–design-across-94-markets-following-ios-27-update-302883972.html

Continue Reading

Trending