-

Horizon3.ai Launches Endpoint Security Effectiveness in NodeZero®

Helping Organizations Get the Most Out of Their EDR Investment

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3.ai, the global leader in offensive security, today announced the availability of Endpoint Security Effectiveness (ESE) in the NodeZero® Offensive Security Platform. This capability gives security teams clear, evidence-backed insight into how effectively their Endpoint Detection and Response (EDR) tools detect and stop real-world attacker tactics.

Traditional EDR metrics, like verifying agent installation or confirming signature updates, offer only a surface-level view of protection. They create a false sense of security because they don’t reveal whether attackers can actually slip through. Horizon3.ai’s analysis of more than 7,000 NodeZero remote access tool (RAT) installation attempts across customer environments demonstrates the reality: in most cases, NodeZero bypassed EDRs by reusing stolen credentials rather than exploiting software flaws. In fact, only 3% of bypasses relied on vulnerabilities. Once inside, NodeZero moved quickly—completing critical actions such as data collection or user impersonation in a median of just 3 minutes, with Linux-based compromises taking as little as 20 seconds.

These findings highlight a fundamental challenge: many EDRs depend too heavily on static signatures, which can be evaded by simple code changes, while behavioral triggers are often inconsistent. As a result, credential-driven attacks, the same methods favored by real-world adversaries, routinely avoid detection.

The Endpoint Security Effectiveness (ESE) healthcheck transforms every NodeZero pentest into a safe, controlled evaluation of EDR performance in live environments, without disrupting operations. NodeZero deploys a test RAT, simulates attacker behavior, and reports whether the EDR blocked, alerted, or missed the activity. Security teams gain actionable data to identify blind spots, tune configurations, and confirm improvements over time.

“Our research shows that credential-based attacks can bypass EDRs in minutes, often undetected,” said Snehal Antani, CEO and Co-founder of Horizon3.ai. “The new ESE healthcheck gives security teams proof of where their defenses hold and where they don’t, helping them strengthen EDR performance and maximize the return on their EDR investment.”

The ESE healthcheck enables teams to:

  • Assess how their EDR responds to real-world tactics, including credential-based intrusions.
  • Improve detection by identifying missed activity and refining policies, logging, and integrations.
  • Confirm resilience by rerunning NodeZero to validate fixes against rapid attacks.

This launch underscores Horizon3.ai’s mission to move cybersecurity from assumptions to evidence, from static safeguards to continuous validation, and from reactive firefighting to proactive resilience.

Availability

Endpoint Security Effectiveness is available today to all NodeZero customers worldwide.

For more information, visit www.horizon3.ai.

About Horizon3.ai

Horizon3.ai empowers organizations to continuously verify their security posture with NodeZero®, the industry’s leading autonomous pentesting platform. Built to think and act like an attacker — but operate safely in production — NodeZero identifies exploitable weaknesses, prioritizes fixes based on real-world impact, and verifies remediation at scale. Customers across manufacturing, healthcare, finance, and national security rely on NodeZero to reduce risk and accelerate security outcomes.

Follow Horizon3.ai on LinkedIn and X.

Contacts

Horizon3.ai Media Contact
Brittney Blanchard
Highwire
horizon3.ai.pr@teamhighwire.com

Horizon3.ai


Release Versions

Contacts

Horizon3.ai Media Contact
Brittney Blanchard
Highwire
horizon3.ai.pr@teamhighwire.com

Social Media Profiles
More News From Horizon3.ai

Horizon3.ai Recognized as a Customers’ Choice in the October 2025 Gartner® Peer Insights™ “Voice of the Customer”: Adversarial Exposure Validation Report

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3.ai today announced that it has been recognized as a Customers’ Choice in the October 2025 Gartner® Peer Insights™ “Voice of the Customer”: Adversarial Exposure Validation report. “Voice of the Customer” is a document that synthesizes Gartner Peer Insights reviews into insights for buyers of technology and services. This aggregated peer perspective, along with the individual detailed reviews, is complementary to Gartner expert research and can play a key...

Horizon3.ai Ranked 3rd Fastest-Growing Company in North America on the 2025 Deloitte Technology Fast 500™

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3.ai, the leading provider of offensive security solutions, today announced it ranked third overall on the Deloitte Technology Fast 500™, a ranking of the 500 fastest-growing technology, media, telecommunications, life sciences, fintech, and energy tech companies in North America, now in its 31st year. “Our growth reflects a major shift in cybersecurity as defenders are now thinking like attackers and adopting the machine-speed solutions needed to outpace...

Horizon3.ai Enhances NodeZero® Platform to Empower Enterprises to Prioritize Their Most Business-Critical Cyber Risks

SAN FRANCISCO--(BUSINESS WIRE)--Horizon3.ai, the leading provider of offensive security solutions, today announced the availability of High-Value Targeting, Advanced Data Pilfering, Threat Actor Intelligence, and Vulnerability Risk Intelligence. Together, these capabilities bring attacker context directly into risk-based vulnerability management (RBVM) – defining a new standard for how enterprises identify, prioritize, and fix what matters most. “Today we’re closing a gap by giving defenders th...
Back to Newsroom