"Not stated" means we couldn't find it on the vendor's site on 2026-09-26. It doesn't mean the tool can't do it. If you're a vendor and a cell is wrong, email contact@barrion.io with a link and we'll fix it.
1. Barrion
Barrion's AI agents run pentests of web apps and APIs, the way an attacker would, across 8 testing areas and all 97 OWASP WSTG v4.2 test cases. They log in as several users in named roles, so access-control bugs between accounts show up.
Every finding is checked against your live app before it's reported. Confirmed findings come with the request and response that prove them. Anything we couldn't confirm is clearly marked and capped in severity. From Standard level up, a security engineer reviews the findings, and deeper tests come with a report signed off by that engineer. Retests of found issues are free.
You can run pentests on a schedule or on demand, or from your CI/CD pipeline via the Barrion API, and each run labels findings new, still open, resolved or regressed. Data is stored and hosted in Sweden, with AI processing in the EU.
Where others are stronger: we test web apps and APIs only. No internal network, Active Directory, mobile, physical or social engineering testing. Expert review is a check of the findings, not a human tester doing the work. For that, look at Terra, Cobalt or Synack.
Single pentests are self-serve. Essential starts at €199/month, and per-run prices are on the pricing page. Business, with scheduled pentests, goes through sales. Compare us head to head with XBOW, Escape, Aikido, Terra, Cobalt and Pentera.
2. XBOW
XBOW is one of the best-known names in autonomous pentesting. In June 2025 it became the first autonomous system to reach #1 on HackerOne's US leaderboard, and in March 2026 it raised $120M at a valuation above $1B (SecurityWeek). Its agents test web apps and their APIs, and independent validators confirm each exploit. Issues it can't exploit are listed separately as informational.
Stronger than Barrion at: scale, from one app to thousands, and a public track record against human hackers. It's sold on the AWS, Google Cloud, Oracle and Microsoft marketplaces on usage-based pricing.
Watch for: no public price and no self-serve start. The default region is the US, with EU and Singapore regions in private preview for Enterprise. Its docs say it may not test every endpoint in one assessment. Barrion vs XBOW.
3. RunSybil
RunSybil was founded by OpenAI's first security hire and raised a $40M Series A led by Khosla Ventures in March 2026 (Fortune). It tests your web and API attack surface as a system of AI agents, authenticated or not, and says nothing is reported until it's reproduced independently. Runs start from pull requests, a schedule or on demand.
Stronger than Barrion at: login support. It handles SSO, TOTP, magic links and email OTP out of the box. Retests finish in under an hour, per the vendor.
Watch for: no public price, no self-serve start and no human review stated.
4. Escape
Escape combines a multi-agent AI pentesting engine with business-logic DAST and attack surface management. It tests as several users at once, handles OAuth, SSO and multi-tenant apps, and turns proven findings into regression tests on every build.
Stronger than Barrion at: GraphQL, attack surface discovery, and security gates on every push. Barrion vs Escape.
Watch for: no public pricing and no self-serve start.
5. Aikido
Aikido's AI pentest is one part of a developer security suite that also does dependency, code, secrets, cloud and container scanning. Separate agents re-exploit each finding before it's reported. Aikido Infinite runs a pentest scoped to the diff whenever new code lands, then proposes a fix PR and retests it.
Stronger than Barrion at: one vendor for the whole pipeline, fix PRs, and more API protocols (REST, GraphQL, gRPC, SOAP). The suite has a free plan, and Aikido offers EU, US, Australian and Middle East regions.
Watch for: a diff-scoped run doesn't retest the rest of the app. Public prices on 2026-09-26: $4,000 for a standard pentest per app and $10 per agent on Infinite. Barrion vs Aikido.
6. Equixly
Equixly, from Florence, Italy, is built around APIs. Its agents look for business-logic flaws across chained API calls, and findings are grounded in demonstrated exploitability.
Stronger than Barrion at: depth on API-heavy products with many services.
Watch for: the €4,999 public price buys a single test with the report in two business days. Continuous testing is on the platform plan, by quote.
7. Novee
Novee came out of stealth in January 2026 with a $51.5M round. It tests web apps, mobile apps, APIs, AI apps and agents, and shows you a reviewable test plan before it runs. Every issue comes with steps to replicate.
Stronger than Barrion at: mobile app testing, and deployment choice: SaaS, a bastion node or on-prem.
Watch for: no public price and no self-serve start.
8. Terra Security
Terra pairs swarms of AI agents with certified human pentesters, who approve intrusive actions and sign off findings. Since May 2026 it tests internal and external networks, including Active Directory, as well as web apps and AI systems.
Stronger than Barrion at: human pentesters in the loop, and network coverage. Barrion vs Terra.
Watch for: no public pricing and no self-serve start.
9. Cobalt
Cobalt is a PTaaS platform with 500+ vetted pentesters (Cobalt Core) across web, API, network, cloud and AI targets. Its Autonomous Pentest, launched in July 2026, delivers AI-run findings with proof of exploit in 24 hours, with Core pentesters reviewing the plan and managing scope. It's offered at $3,500 per test until the end of 2026.
Stronger than Barrion at: human testers and breadth of asset types. Retesting is unlimited during the contract. Barrion vs Cobalt.
Watch for: annual credit packages by quote, and credits don't roll over.
10. Synack
Synack's AI agent, Sara, went generally available in May 2026. The Synack Red Team (1,500+ researchers) confirms exploitability of what Sara finds. A Sara pentest starts at $4,181, and human-led plans at $10,283.
Stronger than Barrion at: a large human researcher network, host testing, and mobile on its human-led plans.
Watch for: Synack says Sara can only test external web and host assets for now, and doesn't support MFA or OTP yet.
Network, Active Directory and cloud identity
These tools answer a different question: what can an attacker do once they're on your network? Of the tools above, only Terra's platform and Cobalt's human pentesters cover it. Ours doesn't.
See Barrion vs Pentera for how the two layers fit together.
Open-source AI pentesting frameworks
These are frameworks you run yourself, not managed services. You bring the LLM key, the machine and the judgement. They're good for learning, for research and for testing your own code before release. They don't come with scheduling, human review or a report an auditor will accept.
Every one of these projects says to test only systems you own or have written permission to test. Take that seriously: their agents send real exploit traffic.
How to choose
You're a SaaS team and your risk is your own web app and APIs. Start with a tool that proves findings and tests as several users: Barrion, XBOW, RunSybil, Escape or Aikido. If you want to start today without a sales call, Barrion and Aikido let you.
You have many apps, or an enterprise portfolio. XBOW is built for that scale. Escape adds attack surface discovery.
Your product is mostly APIs. Equixly first, then Escape if you use GraphQL.
You need internal network or Active Directory coverage. NodeZero or Pentera, next to a web app tool. Terra covers both with humans in the loop.
You need human pentesters and audit-ready reports. Cobalt, Synack or Terra. Barrion's deeper tests come with a report signed off by a security engineer, which you can offer your auditor. Whether it counts is their call.
You want to experiment for free. Strix or Shannon on a test app you own.
You need tests to rerun as you ship. Read best continuous pentesting tools, which compares only that.