New cybersecurity tools, August 2026: 27 added across 15 categories

September 8, 2026by Cyber Vendor Guide editorial teamNew tools

In August 2026, 27 listings were added to the directory, compared with 8 in July 2026. The directory total at the end of August was 218, and the listings span 15 categories.

Five of the additions are uncategorised. Among the categorised listings, Tier 2 SOC Automation has the most with 4, followed by SBOM Analysis with 3.

The month in numbers

  • 27 listings added in August 2026, against 8 in July 2026. The directory held 218 tools and companies at the end of the month.
  • Categories: 15, led by Tier 2 SOC Automation (4), SBOM Analysis (3), Application Security (2), Automotive Cybersecurity (2). 5 listings sit outside any category guide.
  • Pricing: 14 not published, 8 free tier plus paid plans, 3 published pricing, 2 open source. 13 of 27 let a buyer see a price or a free tier without asking.
  • Deployment: 21 cloud-hosted, 8 with a self-hosted option, 2 open source.
  • Founded: of the 24 with a sourced founding year, 7 were founded in 2024 or later; the oldest dates from 1988.
  • Most common capabilities (fixed-vocabulary tags, 27 of 27 tagged): ai soc agent (8), alert triage (8), incident response (6), penetration testing (5), soar automation (4), vulnerability management (4).

What was added in August 2026

ListingCategoryPricingWhat it does
A-LIGNPenetration Testing FirmsNot publishedA-LIGN is a compliance audit firm that helps organisations start and grow their compliance programmes across SOC 2, ISO 27001, CMMC and ISO 42001.
Andesite AITier 2 SOC AutomationNot publishedHuman-AI SOC platform for alert investigation, threat hunting, scoping and remediation
AtlasCyberTier 2 SOC AutomationNot publishedAgentic threat detection and investigation platform for critical infrastructure IT and OT
Ausculte ScanUncategorisedNot publishedFree external WordPress audit covering TLS, headers, exposure, DNS and performance
Command ZeroUncategorisedNot publishedQuestion-led autonomous investigation platform for escalated cases, root cause and threat hunting
Conifers.aiTier 2 SOC AutomationNot publishedCognitiveSOC agentic platform for multi-tier investigation, hunting and reviewable remediation
CVD PortalCyber Resilience Act ComplianceFree tier plus paid plansCRA compliance platform with a free whitelabel vulnerability disclosure portal for EU manufacturers
D3 Security MorpheusUncategorisedPublished pricingAgentic SOC platform doing autonomous triage, attack-path investigation and response execution
Dropzone AITier 1 SOC AutomationPublished pricingAI SOC analyst that autonomously investigates tier-1 security alerts
EclypsiumProduct Threat Intelligence ProvidersNot publishedFirmware and hardware integrity monitoring across a bank's own device estate.
ExaforceTier 2 SOC AutomationNot publishedAgentic SOC platform with separate agents for detection, triage, investigation and response
GuardNestVulnerability ManagementFree tier plus paid plansGuardNest is the vulnerability management and engagement platform of WorkNest Secure, the UK penetration testing provider formed in 2026 from Pentest People, Bulletproof, and Target Defense, combining live pen test reporting with continuous external and web scanning.
Keysight (Riscure Device Security)PCI PTS Compliance Testing CompaniesNot publishedAccredited payment device security lab: side-channel, fault injection, EMVCo and PCI MPoC.
MailinblackEmail SecurityNot publishedFrench email security suite filtering phishing, malware and spam for organisations
NetRiseSBOM AnalysisNot publishedBinary-derived SBOMs that show what actually executes, rather than what a manifest declares.
Opsis OSINTUncategorisedPublished pricingOSINT platform searching usernames, emails and domains across public sources
PII CrawlerData Security & GovernanceFree tier plus paid plansLocal, air-gapped desktop and CLI scanner that finds SSNs and 30+ PII types in files and databases
Prophet SecurityTier 1 SOC AutomationNot publishedAgentic AI platform for autonomous security alert triage and investigation
RoboShadowVulnerability ManagementFree tier plus paid plansVulnerability scanning and automated third-party patching with Microsoft 365 sync
Scalefusion OneIdPIdentity & Access ManagementFree tier plus paid plansUEM-linked IAM suite with SSO, MFA, conditional access and just-in-time admin
SurfaceDiffUncategorisedFree tier plus paid plansExternal attack surface monitoring focused on change detection and historical snapshots
UnderDefenseManaged Security Service ProvidersFree tier plus paid plansMDR, managed SOC and compliance services delivered from the US, Poland and Ukraine
Vector InformatikAutomotive CybersecurityNot publishedAutomotive embedded security stacks, fuzz testing tools and ISO 21434 consulting
VulertApplication Security, SBOM AnalysisFree tier plus paid plansAgentless SCA that monitors dependencies from uploaded manifests or SBOMs
VxLabsAutomotive Cybersecurity, SBOM AnalysisNot publishedAutomotive TARA, SBOM and compliance platform plus security engineering services
WarpgatePrivileged Access ManagementOpen sourceOpen-source clientless bastion for SSH, HTTPS, RDP, VNC, Kubernetes and databases
WebSlurpApplication SecurityOpen sourceChrome DevTools extension to capture, edit and replay HTTP requests

What they have in common

A clear shared theme is SOC automation. Tier 2 SOC Automation has 4 listings and Tier 1 SOC Automation has 2. Prophet Security and Dropzone AI are in the Tier 1 category, while Exaforce, Conifers.ai and Andesite AI are in Tier 2. Eight of the new listings are tagged with AI SOC agent, and 8 are tagged with alert triage.

Pricing is more often absent than present: 14 listings do not publish pricing, while 13 do. Among those 13, 2 are open source, 8 offer a free tier plus paid plans, and 3 have published pricing. Cloud hosting applies to 21 listings, and 8 offer a self hosted option. Of the 24 listings with a known founding year, 7 were founded in 2024 or later. Vector Informatik, founded in 1988, has the earliest founding year in this group.

How this is counted

Listings are counted by the date they were added to the directory, which is not a launch date: some were founded years earlier and some were listed within weeks of appearing. Every listing cites its sources on its own page, and free listings are placed in the one category guide that genuinely fits, so the category counts reflect editorial placement rather than vendor self-description. Pricing is read from each listing's published pricing: a listing counts as published if a figure or a free tier is visible without contacting sales. Capability tags are assigned from a fixed vocabulary of 60 terms and checked by an editor; the figures above come from the directory database and none are estimated.

All editions

Every month's additions are listed at New cybersecurity tools, month by month. Vendors can submit a tool for a free listing; Featured listings are the paid product.

new-cybersecurity-toolsmonthly-roundup2026-08