A new cybersecurity threat landscape is emerging, driven by rapidly advancing artificial intelligence (AI) capabilities of attackers. To stay ahead of this curve, a startup called RemoteThreat has developed an integrated offensive cyber operations platform that uses AI to assist teams in enterprises and government organizations during simulated attacks. The goal: to help security teams prepare for the moment when their defenses fail.
RemoteThreat was founded by Chris Thompson and Shawn Jones, who come from a background of breaking into banks, nuclear power plants, and defense contractors – but this time, they’re getting paid to simulate those types of attacks on behalf of their clients. The platform uses AI to assist teams in conducting mission objectives while testing how well their defenses hold up against various threats. This is not about replacing human security experts, but rather augmenting them with the ability to test and prepare for increasingly sophisticated attacks.
Traditional penetration testing models are breaking down as economic pressures increase and organizations demand faster, more cost-effective solutions. Thompson predicts that even high-end red teaming work will soon be done at scale, like a commodity market. RemoteThreat aims to fill this gap by providing a platform that allows teams to build and play on their own, rather than outsourcing it to other providers.
One of the key features of the platform is its unique tooling, which is designed to mimic the adaptable nature of real nation-state actors. These attackers don’t reuse the same tools twice and are highly skilled at bypassing security controls, including endpoint detection and response (EDR) providers. RemoteThreat’s tooling can also bypass EDR providers and security controls, allowing teams to simulate attacks that evade traditional defenses.
The platform is designed to push teams to challenge their assumptions about how well their networks are protected. It asks questions like: What happens when attackers bypass an organization’s EDR? How do they simulate an adversary going after critical objectives once they’re inside? And perhaps most importantly, how do organizations design defenses that force attackers to make enough noise to get caught?
RemoteThreat is not about automating all processes; it’s about moving faster and at a scale that was previously unachievable. Organizations are allowed to use their own AI models, but they don’t need AI expertise to operate the platform. By providing a scalable solution, RemoteThreat aims to help organizations stay ahead of the rapidly evolving threat landscape.
So what does this mean for security teams? It’s time to think beyond traditional penetration testing and consider how to prepare for the moment when defenses fail. With RemoteThreat, teams can simulate attacks that mimic the sophisticated tactics of real nation-state actors, forcing them to challenge their assumptions about network protection. By doing so, organizations can design more effective defenses that force attackers to make enough noise to get caught – ultimately making it harder for them to succeed in the first place.
Source: Dark Reading — 2026-10-02