<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>SQUR Blog</title>
  <subtitle>Insights on AI-Powered Autonomous Pentesting</subtitle>
  <link rel="self" type="application/atom+xml" href="https://squr.ai/feed.xml"/>
  <link rel="alternate" type="text/html" href="https://squr.ai/blog"/>
  <id>https://squr.ai/feed.xml</id>
  <updated>2026-09-06T00:00:00Z</updated>
  <author><name>SQUR</name></author>
  <entry>
    <title>Five 2026 AI breaches an autonomous pentest would have caught first</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/ai-breaches-a-pentest-would-have-caught"/>
    <id>https://squr.ai/blog/ai-breaches-a-pentest-would-have-caught</id>
    <updated>2026-09-06T00:00:00Z</updated>
    <published>2026-09-06T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Five real 2026 AI-related breaches, taken apart at the endpoint: Langflow, marimo, Meta, Lena Health. Each began with a flaw a continuous web and API pentest tests for.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>7 Pentera Alternatives for EU Companies (DORA-Ready)</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/pentera-alternatives-eu-dora"/>
    <id>https://squr.ai/blog/pentera-alternatives-eu-dora</id>
    <updated>2026-09-02T00:00:00Z</updated>
    <published>2026-09-02T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Pentera starts near $35K/year. Compare 7 EU-friendly alternatives on price, turnaround, EU data residency and DORA fit, including SQUR at €1,995 flat.</summary>
    <category term="compliance"/>
  </entry>
  <entry>
    <title>47% of EMEA breaches start with an exploited vulnerability</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/verizon-dbir-2026-europe"/>
    <id>https://squr.ai/blog/verizon-dbir-2026-europe</id>
    <updated>2026-08-22T00:00:00Z</updated>
    <published>2026-08-22T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Verizon's 2026 DBIR puts exploitation of a vulnerability at 47% of EMEA breaches and 31% globally. The figures, the populations behind them, and what the report does not say.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>Exploitation became the front door, and testing stayed annual</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/one-pentest-is-a-sample"/>
    <id>https://squr.ai/blog/one-pentest-is-a-sample</id>
    <updated>2026-08-19T00:00:00Z</updated>
    <published>2026-08-19T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Exploitation is now the top way into a breach, at 31%, up from 20%. How often to pentest, and what the CRA, NIS2 and DORA actually require.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>The Day Our Agent Taught Itself to Write a Cipher</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/agent-taught-itself-to-write-a-cipher"/>
    <id>https://squr.ai/blog/agent-taught-itself-to-write-a-cipher</id>
    <updated>2026-07-23T00:00:00Z</updated>
    <published>2026-07-23T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">A naive string-matching guardrail blocked a legitimate SSRF test. Two minutes later our offensive agent had reverse-engineered it, hidden the URL behind a Caesar cipher, and reached the target. Why roughly a fifth of SQUR is built to say no.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>SQUR Takes 3rd Place at the Cyber AI Innovation World Cup 2026</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/squr-third-place-cyber-ai-innovation-world-cup"/>
    <id>https://squr.ai/blog/squr-third-place-cyber-ai-innovation-world-cup</id>
    <updated>2026-06-24T00:00:00Z</updated>
    <published>2026-06-24T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">SQUR placed third at the Cyber AI Innovation World Cup 2026, decided at the finale at Cyber / AI Expo Munich on June 24, after a live pitch in front of the expert jury.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>SQUR Takes 1st Place at the Black Forest Hackathon: badenova Edition</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/squr-wins-black-forest-hackathon-badenova"/>
    <id>https://squr.ai/blog/squr-wins-black-forest-hackathon-badenova</id>
    <updated>2026-06-19T00:00:00Z</updated>
    <published>2026-06-19T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Competing as team Whiteforest, SQUR took first place and the EUR 5,000 prize at the 48-hour pentest edition of the Black Forest Hackathon, built around real scenarios from energy provider badenova.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>There's No Such Thing as a Noisy Exploit: Signal vs Noise in Vulnerability Management</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/signal-vs-noise-vulnerability-management"/>
    <id>https://squr.ai/blog/signal-vs-noise-vulnerability-management</id>
    <updated>2026-06-01T00:00:00Z</updated>
    <published>2026-06-01T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Critics say autonomous pentesting just adds noise. They're right about scanners, and wrong about proof. Why a verified exploit can't be a false positive, and why the only honest exception is accepted risk, not noise.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>SQUR Wins ECSO STARtup Award Qualifier, Heads to the 2027 European Final</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/squr-wins-ecso-startup-award-qualifier"/>
    <id>https://squr.ai/blog/squr-wins-ecso-startup-award-qualifier</id>
    <updated>2026-04-16T00:00:00Z</updated>
    <published>2026-04-16T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">SQUR won the ECSO STARtup Award qualifier hosted in Bochum in April 2026, competing against peer European cybersecurity startups, and is qualified for the European final in 2027.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>SQUR Wins the First Startup:Kraichgau Award</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/squr-wins-startup-kraichgau-award"/>
    <id>https://squr.ai/blog/squr-wins-startup-kraichgau-award</id>
    <updated>2026-03-16T00:00:00Z</updated>
    <published>2026-03-16T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">SQUR is one of the first two winners of the Startup:Kraichgau Award, presented on March 16, 2026 at HubWerk01 in Bruchsal for bringing self-service pentesting to mid-sized companies.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>DORA Pentesting Requirements: What Financial Entities Need to Know in 2026</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/dora-pentesting-requirements"/>
    <id>https://squr.ai/blog/dora-pentesting-requirements</id>
    <updated>2026-03-11T00:00:00Z</updated>
    <published>2026-03-11T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">A practical guide to DORA penetration testing requirements under Articles 24 and 25, compliance timelines, and how autonomous pentesting helps meet DORA regulations.</summary>
    <category term="compliance"/>
  </entry>
  <entry>
    <title>Pentest vs Vulnerability Scan: What's the Difference and Which Do You Need?</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/pentest-vs-vulnerability-scan"/>
    <id>https://squr.ai/blog/pentest-vs-vulnerability-scan</id>
    <updated>2026-03-11T00:00:00Z</updated>
    <published>2026-03-11T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Understand the critical differences between penetration testing and vulnerability scanning - and when you need both for complete security coverage.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>GDPR Pentesting Requirements: Does GDPR Require Penetration Testing?</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/gdpr-pentesting-requirements"/>
    <id>https://squr.ai/blog/gdpr-pentesting-requirements</id>
    <updated>2026-03-11T00:00:00Z</updated>
    <published>2026-03-11T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Understand GDPR pentesting requirements under Article 32. Learn how regulators interpret GDPR security testing, DPA enforcement, and compliance best practices.</summary>
    <category term="compliance"/>
  </entry>
  <entry>
    <title>The Cybersecurity Paradox: Why More Tools Don't Mean More Security</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/cybersecurity-paradox-offensive-security"/>
    <id>https://squr.ai/blog/cybersecurity-paradox-offensive-security</id>
    <updated>2026-02-13T00:00:00Z</updated>
    <published>2026-02-13T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">The cybersecurity paradox explains why spending more on security tools can weaken your security posture. Learn why offensive security through pentesting breaks the cycle.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>The Fastest Autonomous Pentest Tools When You Need a Report Tomorrow</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/best-autonomous-pentesting-tools-2026"/>
    <id>https://squr.ai/blog/best-autonomous-pentesting-tools-2026</id>
    <updated>2026-02-06T00:00:00Z</updated>
    <published>2026-02-06T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Compare the fastest autonomous pentesting tools for early-stage startups in 2026 and see why SQUR delivers compliance-ready reports in 24 hours.</summary>
    <category term="benchmarks"/>
  </entry>
  <entry>
    <title>SQUR Beat Humans in an Independent Pentest Benchmark</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/squr-beats-humans-pentest-benchmark"/>
    <id>https://squr.ai/blog/squr-beats-humans-pentest-benchmark</id>
    <updated>2026-01-26T00:00:00Z</updated>
    <published>2026-01-26T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">SQUR solved 91 of 104 challenges in an independent pentest benchmark. Here's what the results indicate, what they don't, and where SQUR is heading next.</summary>
    <category term="benchmarks"/>
  </entry>
  <entry>
    <title>The Risks of Traditional Pentesting</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/risks-of-traditional-pentesting"/>
    <id>https://squr.ai/blog/risks-of-traditional-pentesting</id>
    <updated>2026-01-14T00:00:00Z</updated>
    <published>2026-01-14T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Explore the structural, operational, and ethical risks of traditional pentesting - from slow timelines and high costs to human bias and insider threats.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>How to Spot a Scanner Posing as an Autonomous Pentest Tool</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/how-to-spot-scanner-posing-as-autonomous-pentest-tool"/>
    <id>https://squr.ai/blog/how-to-spot-scanner-posing-as-autonomous-pentest-tool</id>
    <updated>2025-12-03T00:00:00Z</updated>
    <published>2025-12-03T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Why most so-called autonomous pentesting tools are just rebranded scanners, and how to tell the difference in under 10 minutes.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>AI's Dark Side: How Autonomous Agents Are Fueling the Next Wave of Cyber Espionage</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/ai-autonomous-cyber-espionage"/>
    <id>https://squr.ai/blog/ai-autonomous-cyber-espionage</id>
    <updated>2025-11-19T00:00:00Z</updated>
    <published>2025-11-19T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Anthropic disrupted the first large-scale AI-run espionage campaign. Here's what happened and how SQUR's autonomous pentesting fights back.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>Autonomous Penetration Testing: Why SQUR Suits Early-Stage Startups</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/autonomous-pentesting-early-stage-startups"/>
    <id>https://squr.ai/blog/autonomous-pentesting-early-stage-startups</id>
    <updated>2025-11-13T00:00:00Z</updated>
    <published>2025-11-13T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Discover why SQUR's autonomous penetration testing is the perfect compliance solution for early-stage startups - fast, affordable, and auditor-approved.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>Defining Duplicate Security Vulnerabilities: The SQUR Framework</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/defining-duplicate-security-vulnerabilities"/>
    <id>https://squr.ai/blog/defining-duplicate-security-vulnerabilities</id>
    <updated>2025-09-16T00:00:00Z</updated>
    <published>2025-09-16T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Learn how to accurately identify duplicate vulnerabilities with a systematic framework that reduces confusion, improves efficiency, and ensures fair treatment of security findings.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>Cybersecurity Awareness Month 2025: Navigating AI-Enhanced Threats</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/cybersecurity-awareness-month-2025"/>
    <id>https://squr.ai/blog/cybersecurity-awareness-month-2025</id>
    <updated>2025-08-27T00:00:00Z</updated>
    <published>2025-08-27T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">As Cybersecurity Awareness Month 2025 begins, explore how AI is transforming both cyber threats and defensive capabilities.</summary>
    <category term="industry"/>
  </entry>
  <entry>
    <title>Building Trust in Autonomous AI Security: SQUR's Research Collaboration with KASTEL Labs</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/building-trust-autonomous-ai-security"/>
    <id>https://squr.ai/blog/building-trust-autonomous-ai-security</id>
    <updated>2025-08-15T00:00:00Z</updated>
    <published>2025-08-15T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Discover how SQUR collaborates with Germany's leading cybersecurity research center to advance AI governance and build trust in autonomous pentesting.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>Update: The Superhuman Hackbot Era Has Arrived</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/superhuman-hackbots-era"/>
    <id>https://squr.ai/blog/superhuman-hackbots-era</id>
    <updated>2025-08-06T00:00:00Z</updated>
    <published>2025-08-06T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Fourteen months after predicting superhuman hackbots, we evaluate the rapid progress across AI agent systems that have delivered autonomous cyber attack systems ahead of schedule.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>Cutting Through the Noise: How AI Validation Reduces False Positives in Pentesting</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/ai-validation-reduces-false-positives"/>
    <id>https://squr.ai/blog/ai-validation-reduces-false-positives</id>
    <updated>2025-07-27T00:00:00Z</updated>
    <published>2025-07-27T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Discover how AI-driven validation in fully autonomous pentesting dramatically reduces false positives, ensuring security teams focus on real threats.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>Autonomous Pentesting: The Key to Fintech Compliance</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/autonomous-pentesting-fintech-compliance"/>
    <id>https://squr.ai/blog/autonomous-pentesting-fintech-compliance</id>
    <updated>2025-03-25T00:00:00Z</updated>
    <published>2025-03-25T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Learn how autonomous pentesting helps fintech companies meet DORA compliance requirements while reducing costs and improving security posture.</summary>
    <category term="compliance"/>
  </entry>
  <entry>
    <title>AI-Powered Cyber Attacks: What Business Leaders Need to Know in 2025</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/ai-powered-cyber-attacks"/>
    <id>https://squr.ai/blog/ai-powered-cyber-attacks</id>
    <updated>2024-12-23T00:00:00Z</updated>
    <published>2024-12-23T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Discover how AI is transforming cyber threats and what business leaders need to know to protect their organizations.</summary>
    <category term="ai-security"/>
  </entry>
  <entry>
    <title>From Traditional to Fully Autonomous: Choosing the Right Pentesting Approach</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/choosing-pentesting-approach"/>
    <id>https://squr.ai/blog/choosing-pentesting-approach</id>
    <updated>2024-12-20T00:00:00Z</updated>
    <published>2024-12-20T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Navigate the evolving landscape of penetration testing approaches and discover which option best fits your organization's security needs.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>Fully Autonomous Pentesting 101: Understanding the Basics and Its Impact</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/fully-autonomous-pentesting-101"/>
    <id>https://squr.ai/blog/fully-autonomous-pentesting-101</id>
    <updated>2024-12-13T00:00:00Z</updated>
    <published>2024-12-13T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Learn how fully autonomous penetration testing combines AI with security expertise to transform how businesses identify and address vulnerabilities.</summary>
    <category term="pentesting"/>
  </entry>
  <entry>
    <title>The Autonomous Pentesting Revolution: How AI is Transforming Security Testing</title>
    <link rel="alternate" type="text/html" href="https://squr.ai/blog/autonomous-pentesting-revolution"/>
    <id>https://squr.ai/blog/autonomous-pentesting-revolution</id>
    <updated>2024-12-06T00:00:00Z</updated>
    <published>2024-12-06T00:00:00Z</published>
    <author><name>Adam Lundqvist</name></author>
    <summary type="text">Discover how artificial intelligence is revolutionizing penetration testing, making it more efficient, thorough, and accessible than ever before.</summary>
    <category term="pentesting"/>
  </entry>
</feed>
