--- title: "12:20 ET95% of Enterprises Prioritize Pentesting, Yet Only 32% of Attack Surfaces Are Tested, New Synack and Omdia Research Finds" type: "News" locale: "zh-CN" url: "https://longbridge.com/zh-CN/news/279823919.md" description: "A new report by Synack and Omdia reveals a significant gap in cybersecurity practices, with 95% of organizations prioritizing penetration testing but only 32% of their attack surfaces being tested. The study highlights the need for a shift towards agentic AI-driven security solutions, as traditional pentesting methods struggle to keep pace with modern threats. Key findings indicate that 87% of organizations are planning or using agentic AI for pentesting, with a preference for models that combine machine scalability with human oversight. The report emphasizes the urgency for enterprises to enhance their security testing approaches to address AI-driven threats effectively." datetime: "2026-03-19T16:22:16.000Z" locales: - [zh-CN](https://longbridge.com/zh-CN/news/279823919.md) - [en](https://longbridge.com/en/news/279823919.md) - [zh-HK](https://longbridge.com/zh-HK/news/279823919.md) --- > 支持的语言: [English](https://longbridge.com/en/news/279823919.md) | [繁體中文](https://longbridge.com/zh-HK/news/279823919.md) # 12:20 ET95% of Enterprises Prioritize Pentesting, Yet Only 32% of Attack Surfaces Are Tested, New Synack and Omdia Research Finds _Growing attack surfaces and increasing AI use by adversaries outweigh concerns over AI guardrails_ , /PRNewswire/ -- Synack, the leader in human-led and AI-powered penetration testing, and Omdia, a technology research firm, released a new report, "The 2026 State of Agentic AI in Pentesting," revealing a major gap between security priorities and real-world testing coverage. While 95% of organizations rank pentesting as a top priority, they are currently testing only 32% of their global attack surface on average. This massive security gap leaves 68% of the enterprise environment untested, creating significant blind spots as AI-enabled adversaries become more prevalent. The primary research study, commissioned by Synack, surveyed 200 U.S. security leaders to understand how organizations are adopting agentic AI to overcome the scalability limits of traditional, manual pentesting. This disconnect highlights a structural limitation in traditional pentesting models, which cannot scale with the speed and complexity of modern cloud and AI-driven environments. The report signals a fundamental shift from traditional pentesting to agentic, AI-driven offensive security while maintaining a human in the loop. "This research proves the industry is ready to move beyond the twice-a-year pentest model," said Jay Kaplan, Synack CEO and Co-founder. "We founded Synack on the idea that security requires machine speed for breadth and human judgment for creativity. This report confirms the market is catching up to that reality. Continuous, agent-led testing with human oversight is how the modern enterprise will stay ahead of today's sophisticated threats." Dr. Mark Kuhr, Synack CTO and Co-founder, added, "AI delivers scale and coverage, but real-world risk still requires human creativity. By combining agentic AI with our elite Synack Red Team, we enable continuous testing that reflects how attackers actually operate." "The data shows a clear disconnect—security leaders know pentesting is critical, yet most of their environment remains untested," said Angela Heindl-Schober, CMO at Synack. "That gap is redefining how organizations approach offensive security. Agentic AI is not a future concept—it's becoming the only scalable way to continuously test modern, dynamic environments." **Key Findings from the 2026 Research** - The findings underscore a growing urgency for enterprises to rethink how they approach continuous security testing. - 87% of organizations have moved beyond evaluation and are actively planning, piloting, or using agentic AI for penetration testing. - 95% of organizations anticipate that agentic AI will displace traditional pentesting services, though the degree varies: 49% expect complete or significant displacement. - 64% of organizations prefer an agent-led, human-oversight model, combining machine scalability with a human safety net. - 87% of leaders trust agentic AI, yet 93% state that comprehensive guardrails and transparent decision-making are critical for safe operation. The report serves as a call to action for security teams aiming to improve remediation times and prove business value to leadership. By delivering a complete offensive security platform, Synack is helping CISOs transition to a dynamic, resilient security posture to match the scale and speed of the modern threat landscape. As enterprises face AI-driven threats, closing the pentesting coverage gap will be a defining priority for modern cybersecurity. **Where to Get the Report** The full report, "The 2026 State of Agentic AI in Pentesting," is available for download at \[https://go.synack.com/ai-pentesting-report-omdia\]. **About Synack** Synack is the leader in human-led and AI-powered penetration testing, transforming offensive security to help organizations proactively reduce risk, stay compliant and defend against evolving cyber threats. Synack harnesses agentic AI innovations and a talented, vetted community of security researchers to deliver continuous penetration testing and autonomous vulnerability management. Founded by former NSA operatives, Synack has enabled nearly 10 million hours of expert testing to protect critical assets, from global financial systems to U.S. Defense Department networks. Learn more at www.synack.com. **About Omdia** Omdia, part of TechTarget, Inc. d/b/a Informa TechTarget (Nasdaq: TTGT), is a technology research and advisory group. Our deep knowledge of tech markets grounded in real conversations with industry leaders and hundreds of thousands of data points, make our market intelligence our clients' strategic advantage. From R&D to ROI, we identify the greatest opportunities and move the industry forward. Photo - https://mma.prnewswire.com/media/2938103/Jay\_Kaplan\_CEO\_Synack.jpg Photo - https://mma.prnewswire.com/media/2938104/Mark\_Kuhr\_CTO\_Synack.jpg Photo - https://mma.prnewswire.com/media/2938105/Angela\_Heindl\_Schober\_CMO\_Synack.jpg Logo - https://mma.prnewswire.com/media/838158/Synack\_Logo\_v2.jpg ## 相关资讯与研究 - [Got $5,000? 3 AI supercycle growth stocks at every layer of the stack](https://longbridge.com/zh-CN/news/281690338.md) - [The artificial intelligence (AI) hype is fading, and that's creating the best buying opportunity of 2026](https://longbridge.com/zh-CN/news/281403515.md) - [06:00 ETISC2 Publishes Guidance on the Inclusion of AI Security Concepts Across all its Certifications](https://longbridge.com/zh-CN/news/281502582.md) - [14:53 ETLattice Acquires Mandala Technology, Advancing the New Way to Work with People + AI](https://longbridge.com/zh-CN/news/281230817.md) - [Letter from the Editor Introducing AI Intelligence on American Banker](https://longbridge.com/zh-CN/news/281266312.md)