The Application Security Podcast

AI Pen Testing Killed Traditional DAST

Chris Romeo and Robert Hurlbut Season 13 Episode 10

Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.

0:00 | 43:46

Is traditional DAST finally dead? James Berthoty explains how AI pentesting is changing the dynamics of security testing through contextual payloads, autonomous agents, and application-aware vulnerability discovery. We also explore token costs, AI-native security vendors, the future of bug bounties, testing in production, and whether model providers could eventually absorb today’s security tools.

This episode is sponsored by Corgea. Design it. Build it. Ship it. Corgea secures it. Learn more: https://bit.ly/4wMCNUf

About Corgea

Corgea is an AI-native application security platform that secures software from design to production. It brings together security design reviews, AI SAST, dependency and IaC scanning, code quality checks, and autonomous pentesting—helping security and engineering teams find risk earlier, fix what matters, and ship securely.

Learn more about Corgea → https://bit.ly/4wMCNUf


FOLLOW OUR SOCIAL MEDIA:

➜ X: @AppSecPodcast
➜ LinkedIn: The Application Security Podcast
➜ YouTube: @ApplicationSecurityPodcast
➜ Instagram: @appsecpodcast
➜ Facebook: Application Security Podcast

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

People on this episode

Podcasts we love

Check out these other fine podcasts recommended by us, not an algorithm.

The Security Table Artwork

The Security Table

Izar Tarandach, Matt Coles, and Chris Romeo