AI Pen Testing Killed Traditional DAST

The Application Security Podcast

The Application Security Podcast
AI Pen Testing Killed Traditional DAST
Aug 31, 2026 Season 13 Episode 10
Chris Romeo and Robert Hurlbut

Is traditional DAST finally dead? James Berthoty explains how AI pentesting is changing the dynamics of security testing through contextual payloads, autonomous agents, and application-aware vulnerability discovery. We also explore token costs, AI-native security vendors, the future of bug bounties, testing in production, and whether model providers could eventually absorb today’s security tools.

This episode is sponsored by Corgea. Design it. Build it. Ship it. Corgea secures it. Learn more: https://bit.ly/4wMCNUf

About Corgea

Corgea is an AI-native application security platform that secures software from design to production. It brings together security design reviews, AI SAST, dependency and IaC scanning, code quality checks, and autonomous pentesting—helping security and engineering teams find risk earlier, fix what matters, and ship securely.

Learn more about Corgea → https://bit.ly/4wMCNUf


FOLLOW OUR SOCIAL MEDIA:

➜ X: @AppSecPodcast
➜ LinkedIn: The Application Security Podcast
➜ YouTube: @ApplicationSecurityPodcast
➜ Instagram: @appsecpodcast
➜ Facebook: Application Security Podcast

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Episode Artwork AI Pen Testing Killed Traditional DAST 43:46 Episode Artwork AI Security: OWASP Meets Global Standards 47:54 Episode Artwork The Future of Open-Source Threat Modeling 40:14 Episode Artwork Isaac Evans - AppSec in the Age of AI 49:09 Episode Artwork José Carlos Chávez - When Museums Get Hacked: OWASP Top 10 Lessons from Heists 52:39 Episode Artwork Michael Burch - AI-Enabled Citizen Developers 48:58 Episode Artwork Josh Grossman--AI & SAST: Is it a match? 40:29 Episode Artwork Dwayne McDaniel -- Secrets Sprawl and How AI is Impacting Secrets 45:27 Episode Artwork Tanya Janca - Secure Vibe Coding 47:57 Episode Artwork Caroline Wong--The AI Cybersecurity Handbook 44:53 Episode Artwork Steve Wilson--OpenClaw and Advanced AI Agents 49:30 Episode Artwork Brad Geesaman - Redefining AppSec with AI: Shrinking Toil, Expanding Impact - How LLMs are able to reduce toil in triage-heavy AppSec workflows 42:19 Episode Artwork OWASP Candidate Debate - 2025 Edition 1:08:09 Episode Artwork Francesco Cipollone - Agentic AI Manifesto 33:19 Episode Artwork Simon Gibbs & Devika Gibbs -- Building Bridges with Games 36:03 Episode Artwork Akansha Shukla - Modern AppSec: Securing APIs with Threat Modeling and DevSecOps 35:35 Episode Artwork Getting Ready for the EU CRA 40:46 Episode Artwork Marisa Fagan - Measuring Security Culture 50:05 Episode Artwork Aram Hovsepyan -- Your Security Dashboard is Lying to You: The Science of Metrics 40:52 Episode Artwork Sean Varga -- OWASP Top 10 for AppSec Sales 47:13 Episode Artwork Sarah-Jane Madden -- What AI means for AppSec 37:59 Episode Artwork Dag Flachet -- Kaizen for your Appsec Program 35:54 Episode Artwork Javan Rasokat and Andra Lezza -- When Chatbots Go Rogue - Lessons Learned from Building and Defending LLM Applications 47:31 Episode Artwork Jim Routh -- The CISO Transition to the rest of life 49:36 Episode Artwork Henrik Plate -- OWASP Top 10 Open Source Risks 38:26