Cato Networks Slashes CVE Mitigation Time to 45 Minutes with AI-Driven Automation
Event summary
- Cato Networks reduced time-to-protect for newly disclosed vulnerabilities to 45 minutes using agentic threat research and cloud-native architecture.
- Traditional CVE mitigation typically takes weeks, while Cato previously compressed this to hours.
- Cato's agentic CVE mitigation automates the full protection lifecycle, including monitoring, triage, exploit reproduction, and global deployment.
- NIST reported a 263% increase in CVE submissions between 2020 and 2025, with submissions in early 2026 up nearly one-third year-over-year.
- Verizon's 2025 DBIR found only 54% of edge device vulnerabilities were fully remediated, with a median remediation time of 32 days.
The big picture
Cato Networks' achievement underscores the growing gap between traditional security operations and the demands of the AI era. As CVE disclosures accelerate and attackers move faster, cloud-native platforms with AI-driven automation are becoming essential for real-time protection. This shift represents a broader industry move from manual, customer-operated workflows to continuous, machine-scale security operations.
What we're watching
- Adoption Pace
- The pace at which enterprises will migrate from traditional appliance-based security to cloud-native, AI-driven solutions like Cato's.
- Competitive Response
- How competitors like Anthropic and OpenAI will react to Cato's breakthrough in agentic CVE mitigation.
- Regulatory Impact
- Whether regulatory bodies like NIST will update guidelines to reflect the new standards set by AI-driven security operations.
Related topics
