New feature

AWS Security Agent adds budget controls and finding revalidation

AWS Security Agent now includes task-hour limits for penetration tests and revalidation of fixed vulnerabilities, improving cost management and security verification efficiency

AWS Security Agent, part of AWS Continuum, offers an AI-driven penetration testing service for web applications. Previously, teams lacked ways to cap test costs or confirm fixes for vulnerabilities. New features now allow setting maximum task-hour limits (preset, custom, or none) for tests, which stop gracefully when reached while preserving findings. Users can also revalidate individual findings after fixes without rerunning full tests, receiving clear active or resolved statuses with full history linked to original findings

Why it matters

Targeted at security teams and DevSecOps engineers, this update improves cost management and verification of vulnerability fixes

Read the original AWS announcement