Back to vendors
H

Horizon3.ai

Also known as: Horizon3.ai, Horizon3, NodeZero, NodeZero Federal, horizon3.ai

Visit site
Security / SOC agentindependentVerified 2026-07-22

NodeZero: continuous autonomous penetration testing that runs safely in production with no persistent agents, chaining real attack paths across internal, external, cloud, AD, and web app surfaces and verifying fixes instantly. FedRAMP High Authorized, first AI to solve the Game of Active Directory; founded by national-security veterans.

Horizon3.ai makes NodeZero, the autonomous penetration-testing platform that executes real attack techniques without persistent agents and without disrupting production, showing exactly how attackers would move, what they could access, how to stop them, and verifying fixes instantly. Built to think and act like an attacker while operating safely in production (with zero downtime across all production tests), NodeZero autonomously discovers and exploits weaknesses, compromising credentials, moving laterally, and escalating privilege, then orchestrates hundreds of offensive tools to chain weaknesses into the impacts attackers actually seek, such as ransomware exposure via a domain-admin compromise. It runs a continuous find, fix, verify loop: teams can schedule pentests to run every day with no user intervention, no need to launch tests or even sign in. It is the first autonomous platform to offer internal and external pentesting in one self-service product, and has extended to cloud pentesting across AWS and Azure, Active Directory password audits, and web application testing at the intersection of apps, identity, and infrastructure. NodeZero learns from hundreds of thousands of autonomous production tests, was the first AI to fully solve the Game of Active Directory benchmark, and is FedRAMP High Authorized for federal use. Founded in 2019 by national-security veterans, Horizon3.ai anchors the offensive/pentest cluster of the security lane alongside XBOW, with an internal-network and production-safe emphasis complementing XBOW's external, bug-bounty-proven approach.

Vendor details

Canonical URL

https://horizon3.ai

Category

Security / SOC agent

Funding status

Founded 2019 by CEO Snehal Antani and former industry and U.S. National Security veterans; Inc. 5000 fastest-growing company; NodeZero is FedRAMP High Authorized (NodeZero Federal) and trusted by global governments, Fortune 10 enterprises, and major healthcare providers; hundreds of thousands of autonomous tests performed

Company status

independent

Use cases & customers

Primary use cases

continuous autonomous internal and external penetration testingcloud pentesting across AWS and AzureActive Directory password audits and credential-exposure testingweb application pentesting across app, identity, and infrastructureremediation verification with a find, fix, verify loop

Target customers

enterprise security teamsfederal and government agencies (FedRAMP High)healthcare, finance, and manufacturing organizationsMSSPs and offensive security teams

Deployment options

self-service cloud platforminternal tests via a free Docker host or OVA runner in the customer environmentNodeZero Federal (FedRAMP High Authorized) for governmenton-prem, cloud, or hybrid coverage

Integrations

Orchestrates hundreds of offensive security tools and chains weaknesses into real attack paths; runs internal tests from a free Docker host or OVA runner and external and cloud tests from the Horizon3.ai cloud; scans launch from a console or API; covers internal networks, external perimeter, AWS and Azure cloud, Active Directory (password audits), and web applications, testing with or without credentials.

Capability coverage

8.5 / 14 capabilities · 61%

Integrations & Tool CallingOrchestrates hundreds of offensive tools, launches scans from a console or API, and integrates across internal networks, external perimeter, AWS and Azure cloud, and Active Directory, Horizon3.ai and Medium writeup 2026-07-22 Full
Workflow OrchestrationNodeZero orchestrates hundreds of offensive security tools and chains weaknesses together to autonomously execute full attack paths end to end, running a continuous find, fix, verify loop, Horizon3.ai internal-pentesting page 2026-07-22 Full
Knowledge Grounding & RAGNodeZero learns from hundreds of thousands of autonomous production tests and maps tens of thousands of on-prem and cloud terrains to inform its attack reasoning, a strong learning corpus short of a documented knowledge base or retrieval product, Horizon3.ai and Business Wire 2026-07-22 Partial
Human Oversight & GuardrailsExecution is autonomous with no user intervention, but customers configure scope and credentials and use guardrails and blast-radius settings to keep production testing safe, a scope-and-guardrail oversight model rather than step approval, Horizon3.ai and Medium writeup 2026-07-22 Partial
Security, Identity & GovernanceNodeZero Federal is FedRAMP High Authorized, tests run safely in production with zero downtime and blast-radius guardrails, and it is trusted by governments, Fortune 10, and healthcare in high-security environments, Horizon3.ai and Carahsoft 2026-07-22 Full
Observability & AuditabilityDelivers proof-and-impact attack-path reports, prioritizes fixes by real-world impact, verifies remediation instantly, and measures posture improvements over time, giving first-class observability and auditability, Horizon3.ai platform pages 2026-07-22 Full
Memory & State PersistenceFully maps and retains terrain models of the environment and tracks security-posture improvements over time across repeated tests, a persistent state model short of a documented agent memory layer, Horizon3.ai and Business Wire 2026-07-22 Partial
Deployment & Data ResidencyInternal tests run from a free Docker host or OVA runner inside the customer environment, external and cloud tests from the Horizon3.ai cloud, with on-prem, cloud, and hybrid coverage and a FedRAMP High federal deployment, Horizon3.ai and Business Wire 2026-07-22 Full
Prebuilt Agents, Templates & PacksShips a menu of pre-built pentest operations (internal Autonomous Pentesting, external, cloud, AD password audit, web app) that customers select and run out of the box, a productized operation set short of a customer template library, Horizon3.ai platform page 2026-07-22 Partial
Triggers & Channel CoverageRuns continuously with pentests scheduled to run every day and no user intervention (no need to launch or sign in), plus on-demand runs, across internal, external, cloud, AD, and web app surfaces, Horizon3.ai platform pages 2026-07-22 Full
Model Flexibility & RoutingNo customer facing model choice or routing documented; the autonomous reasoning engine is internal, Horizon3.ai materials 2026-07-22 Unable to verify
APIs, SDKs & MCP ExtensibilityScans can be fired from an API in addition to the console, indicating an automation and integration API surface short of a documented public SDK or MCP, Horizon3.ai and Medium writeup 2026-07-22 Partial
Testing, Debugging & OptimizationNodeZero is itself the security-testing product and verifies its own findings, but exposes no customer-facing tooling to test, debug, or optimize a configurable agent, Horizon3.ai materials 2026-07-22 Unable to verify
Browser & Computer UseAttacks networks, cloud, and applications through an offensive toolkit rather than documented browser or GUI computer use, Horizon3.ai materials 2026-07-22 Unable to verify

Pricing

Self-service subscription (rates not published)

annual subscription (unlimited pentests)

Contact onlyLow variable costTrial available

What is public

The model is public (self-service platform, annual subscription with unlimited pentests, choose from operations like internal pentesting and password audits); exact rates are not published in retrieved materials.

Variable cost rationale

Subscription with unlimited pentests means cost is largely fixed rather than scaling with test volume.

Sales call required

No — self-serve available

Free / trial

Create an account to run operations; demo available

Verified 2026-07-22

Contact us

Found a vendor we missed? Have feedback on the index? We'd love to hear from you.