New cybersecurity tools, June 2026: 29 added across 11 categories

September 8, 2026by Cyber Vendor Guide editorial teamNew tools

In June the directory added 29 listings, compared with 2 in May. The total at the end of the month was 183, spread across 11 categories.

Pricing is not published for 25 of the 29. Two listings are open source, one has a free tier plus paid plans, and one has published pricing.

The month in numbers

  • 29 listings added in June 2026, against 2 in May 2026. The directory held 183 tools and companies at the end of the month.
  • Categories: 11, led by Cyber Resilience Act Compliance (6), Penetration Testing Firms (6), Managed Security Service Providers (5), PCI PTS Compliance Testing Companies (5), Network Detection & Response (NDR) (4).
  • Pricing: 25 not published, 2 open source, 1 free tier plus paid plans, 1 published pricing. 4 of 29 let a buyer see a price or a free tier without asking.
  • Deployment: 17 cloud-hosted, 8 with a self-hosted option, 2 open source.
  • Founded: of the 25 with a sourced founding year, 1 were founded in 2024 or later; the oldest dates from 1828.
  • Most common capabilities (fixed-vocabulary tags, 29 of 29 tagged): certification audit services (9), penetration testing (9), eu cyber resilience act (6), red teaming (6), managed detection response (5), network detection response (5).

What was added in June 2026

ListingCategoryPricingWhat it does
Acronis Cyber ProtectEndpoint & EDRNot publishedIntegrated backup, disaster recovery, and AI-based endpoint security (anti-ransomware, EDR) in one platform.
Arista NDRNetwork Detection & Response (NDR)Not publishedAgentless, AI-assisted network detection and response for campus, data center and cloud
Bishop FoxPenetration Testing FirmsNot publishedOffensive security firm pairing high-end penetration testing with Cosmos, a continuous attack-surface management platform.
Bureau VeritasCyber Resilience Act ComplianceNot publishedGlobal TIC group whose cybersecurity unit delivers end-to-end CRA compliance, RED testing, penetration testing, and conformity assessment for connected products.
CorelightNetwork Detection & Response (NDR)Open sourceOpen NDR platform built on the open-source Zeek network monitoring framework
Critical StartManaged Security Service ProvidersNot publishedMDR provider built around its Trusted Behavior Registry and MOBILESOC app, delivering managed detection across multiple EDR, XDR, and SIEM platforms.
DEKRACyber Resilience Act ComplianceNot publishedMajor TIC organization offering CRA readiness, security evaluation, and certification, with EUCC accreditation and CRA notified-body status from June 2026.
eSentireManaged Security Service ProvidersNot publishedCanadian MDR pioneer delivering 24/7 SOC services on the Atlas security operations platform, with strong financial-services and legal-vertical specialisation.
ExpelManaged Security Service ProvidersNot publishedVendor-neutral MDR founded by former Mandiant leaders, known for transparent operations and an API-only bring-your-own-tech model.
Fidelis NetworkNetwork Detection & Response (NDR)Not publishedNetwork detection and response component of the Fidelis Elevate XDR platform
IOActive, Inc.Penetration Testing FirmsNot publishedIndependent global research-driven security consultancy specialising in full-stack, hardware, embedded, and critical-infrastructure testing.
Lepide Data Security PlatformData Security & GovernancePublished pricingUnstructured data security, access governance, auditing, threat detection and DSPM across AD, M365 and file servers.
Mandiant (part of Google Cloud)Penetration Testing FirmsNot publishedElite incident response and offensive security consultancy operating as the threat-intelligence arm of Google Cloud Security.
NCC GroupPenetration Testing FirmsNot publishedFTSE 250 global cybersecurity and software resilience firm offering technical assurance, managed detection, and incident response.
ONEKEYCyber Resilience Act Compliance, SBOM AnalysisNot publishedEuropean product-cybersecurity platform automating SBOM generation, vulnerability management, and CRA compliance for connected-device makers.
PCA Cyber SecurityAutomotive Cybersecurity, PCI PTS Compliance Testing Companies, Product Threat Intelligence Providers, SBOM AnalysisNot publishedOffensive security and threat intelligence for payment devices, vehicles and embedded systems
pi3gCyber Resilience Act ComplianceNot publishedGerman embedded-Linux and IoT specialist helping SME manufacturers make connected products compliant with the EU Cyber Resilience Act.
PraetorianPenetration Testing FirmsNot publishedOffensive security firm delivering continuous penetration testing and attack-surface management through its Chariot platform.
Red Canary (a Zscaler company)Managed Security Service ProvidersNot publishedMDR provider known for deep Microsoft Defender expertise and high-fidelity detection engineering, acquired by Zscaler in 2025.
SawmillsObservability PipelinesFree tier plus paid plansAI telemetry pipeline that filters and optimises logs, metrics and traces pre-ingestion to cut observability cost.
Secureworks (a Sophos company)Managed Security Service ProvidersNot publishedLong-established MDR and XDR provider built around the Taegis platform, now operating as part of Sophos.
SERMA Safety & SecurityPCI PTS Compliance Testing CompaniesNot publishedFrench security evaluation lab (ITSEF); PCI Recognized for PTS, plus EMVCo and Common Criteria.
SGSCyber Resilience Act ComplianceNot publishedWorld-leading testing and certification company that, through SGS Brightsight, provides CRA and RED security evaluation, conformity assessment, and notified-body services.
SGS BrightsightPCI PTS Compliance Testing CompaniesNot publishedMajor PCI Recognized security evaluation lab for payment devices, EMVCo and Common Criteria.
SRC Security Research & ConsultingPCI PTS Compliance Testing CompaniesNot publishedGerman PCI Recognized lab for PCI PTS device evaluation and German payment terminal schemes.
Stamus NetworksNetwork Detection & Response (NDR)Open sourceSuricata-based network detection and response with an open-source community edition
Trail of BitsPenetration Testing FirmsNot publishedHigh-end security research and engineering firm known for deep code audits, cryptography reviews, and smart-contract security work.
TUV SUDCyber Resilience Act ComplianceNot publishedGlobal testing and certification body offering CRA readiness assessment, vulnerability-management support, third-party conformity assessment, and training.
UL SolutionsPCI PTS Compliance Testing CompaniesNot publishedGlobal TIC firm and PCI Recognized lab for payment terminal (PTS POI/HSM) and EMVCo testing.

What they have in common

The additions are concentrated in compliance and testing. Cyber Resilience Act Compliance and Penetration Testing Firms each gained 6 listings, while Managed Security Service Providers and PCI PTS Compliance Testing Companies each gained 5. The most common tags are certification audit services and penetration testing, each on 9 listings.

Founding years are known for 25 of the 29. The oldest addition is Bureau Veritas, founded in 1828, and the most recent is Sawmills, founded in 2024. Pricing is not published for 25 of the 29. Corelight and Stamus Networks are open source, and Lepide Data Security Platform has published pricing.

How this is counted

Listings are counted by the date they were added to the directory, which is not a launch date: some were founded years earlier and some were listed within weeks of appearing. Every listing cites its sources on its own page, and free listings are placed in the one category guide that genuinely fits, so the category counts reflect editorial placement rather than vendor self-description. Pricing is read from each listing's published pricing: a listing counts as published if a figure or a free tier is visible without contacting sales. Capability tags are assigned from a fixed vocabulary of 60 terms and checked by an editor; the figures above come from the directory database and none are estimated.

All editions

Every month's additions are listed at New cybersecurity tools, month by month. Vendors can submit a tool for a free listing; Featured listings are the paid product.

new-cybersecurity-toolsmonthly-roundup2026-06