AI Agents Help Cato Slash ‘Time-to-Protect’ From New CVEs

AI Agents Help Cato Slash ‘Time-to-Protect’ From New CVEs

ComputerWeekly – DevOps
ComputerWeekly – DevOpsJun 1, 2026

Why It Matters

Accelerating vulnerability response cuts the window attackers have to exploit flaws, a critical advantage as CVE volume surges and traditional patch cycles lag behind.

Key Takeaways

  • Cato reduced CVE protection time to 45 minutes using AI agents.
  • AI agents automate monitoring, sandbox testing, signature deployment without human input.
  • NIST reports CVE submissions up 250% since early 2020s.
  • Only about half of edge-device vulnerabilities were mitigated in 2025.
  • Machine‑scale mitigation may push security ops toward fully automated cloud protection.

Pulse Analysis

The pace of vulnerability disclosure has exploded in recent years, with NIST noting a 250% increase in CVE submissions since the early 2020s and a 33% year‑on‑year rise in early 2026. This flood of flaws strains traditional security models that rely on manual patch cycles, often leaving organizations exposed for weeks. Moreover, Verizon data shows just over 50% of edge‑device vulnerabilities were fully mitigated in 2025, underscoring a widening gap between threat emergence and remediation.

Cato Networks tackles this gap by embedding artificial‑intelligence agents into its SASE platform. These agents continuously ingest CVE data, extract indicators of compromise, reproduce exploits in sandboxed environments, and generate threat signatures that are rigorously tested for false positives. Once validated, the signatures are automatically pushed across Cato’s global cloud infrastructure, eliminating the need for customer‑side configuration. The result is a near‑real‑time protection loop that compresses a multi‑week mitigation process into a 45‑minute cycle, effectively operating at machine speed rather than human speed.

The implications extend beyond Cato’s customer base. As AI‑driven mitigation proves viable, the security industry may shift toward fully automated, cloud‑native defenses, reducing reliance on legacy appliances and manual workflows. Enterprises that adopt such capabilities can expect shorter exposure windows, lower operational overhead, and a stronger posture against rapidly evolving threats. In a landscape where exploit timelines are measured in minutes, the ability to respond at comparable speed could become a decisive competitive advantage.

AI agents help Cato slash ‘time-to-protect’ from new CVEs

Comments

Want to join the conversation?

Loading comments...