For those who have trialed an AI pentest solution: what was the single biggest gap you encountered?
Sort by:
CISO in Software6 days ago
Sometimes, they need more environmental context to target the right APIs and instances.
Sometimes, they need more environmental context to target the right APIs and instances.
Yes67%
No26%
Unsure5%
Yes, we're looking to add additional protections.43%
No, we're going to continue with our own operational models.49%
We're unsure.7%
No selling.
No recruiting.
No self promotion.
Rules of EngagementFAQsPrivacy
© 2025 Gartner, Inc. and/or its affiliates. All rights reserved.
From my experience, the biggest gap with AI-driven pentest tools is depth of context. They’re good at scanning broad attack surfaces quickly, but they often miss nuanced issues—like business logic flaws, privilege escalation paths, or chained exploits across systems. Without human creativity to connect the dots, results risk being shallow. The question is how to best blend AI speed with human expertise for meaningful coverage.