RiskProfiler has introduced KnyX Autonomous Investigations, a new capability designed to automate the investigation, validation, and policy-governed response to external cyber threats. The solution is being showcased at Black Hat USA and will also be demonstrated at DEF CON 34 in Las Vegas.
The company said security teams are increasingly dealing with large volumes of alerts, including look-alike and typosquatted domains, leaked credentials, vendor-breach signals, phishing pages and threat intelligence feeds. While detection tools continue to generate alerts, investigating and validating every incident often remains a manual and time-consuming process.
KnyX Autonomous Investigations is built around a continuous workflow of Alert – Investigate – Verdict – Remediate, where AI agents collect evidence, generate confidence-scored verdicts and, based on customer-defined policies, execute or initiate remediation actions.
According to RiskProfiler, the agents follow deterministic and structured investigation processes instead of relying solely on free-form AI outputs. Each investigation is supported by schema-validated evidence and a detailed audit trail, making the findings transparent, reproducible and verifiable.
The platform allows organisations to control how remediation actions are handled. Based on customer-defined policies, actions can be executed automatically, routed for approval or disabled. Credential validation is limited to verified customer-owned domains and authorised identity providers, while vendor-breach claims are verified across multiple trusted sources before any response is initiated.
Every investigation records its inputs, outputs, evidence, execution history and the versions of the agents and skills used, creating a complete audit trail to support governance and compliance requirements.
At launch, KnyX includes autonomous agents for leaked credential investigations and policy-based password resets, look-alike and typosquatted domain investigations, phishing-page analysis and evidence collection, vendor-breach validation and exposure assessment, and threat intelligence filtering and prioritisation. These agents can validate compromised credentials, prepare evidence for takedown requests, cross-check breach claims and prioritise threat intelligence based on an organisation’s technology stack, vendor ecosystem and risk environment.
Commenting on the launch, Setu Parimi, Co-Founder and Chief Technology Officer of RiskProfiler, said security teams are overwhelmed by the volume of manual investigations rather than a lack of detection tools. He said KnyX is designed to perform investigations in a structured manner and automate responses where customer policies permit, while maintaining governance and evidence-backed oversight.
Kamran Siddique, Chief Information Security Officer at Steve Madden, said KnyX enables organisations to adopt autonomous response gradually, with customer-defined policies and audit trails supporting every action.
KnyX Autonomous Investigation Agents are now available to RiskProfiler customers. The company’s founding team is conducting live demonstrations of the capability at Black Hat USA and DEF CON 34 in Las Vegas.
Send news announcements/press releases to:
editor@thefoundermedia.com
