All news

Coverage, announcements and recognition, newest first.

2026

  1. Analyst Latio

    Recognized as an Endpoint AI Security Leader in Latio’s 2026 AI Security Market Report

    Latio’s independent 2026 AI Security Market Report recognizes Pluto as an Endpoint AI Security Leader. Get the full report.

  2. Announcement Pluto Research

    Introducing MCP Inspector: know an MCP server’s risks before you install it

    A free tool from Pluto Research that checks MCP servers for security risks before you install them, built from the findings behind Operation:MCP.

  3. Press N2K CyberWire · Breaking Through in Cybersecurity Marketing

    Building a Security Company for a Market That Changes Every Four Months with Shahar Bahat of Pluto Security (opens thecyberwire.com in a new tab)

    Podcast: Pluto co-founder and CEO Shahar Bahat on why security teams lack visibility into what employees build with AI tools, and what she saw at RSAC 2026.

  4. Analyst Gartner®

    Named a Sample Vendor in two Gartner® research notes on AI endpoint security

    Gartner named Pluto Security as a sample vendor in “Shadow AI Demands Stricter Endpoint Application Control” and “Use the SAFE Framework to Secure AI Agents and Browsers in Endpoints”.

  5. Announcement Pluto Security

    Introducing Plutonium, a free security hub for the AI assistant ecosystem

    ClaudeSec and CopilotSec come together in Plutonium, a vendor-neutral hub for evaluating third-party risk across AI assistants.

  6. Press CSO Online

    Hugging Face Transformers RCE flaw enables stealthy compromise via AI model configs (opens csoonline.com in a new tab)

    CSO Online covers the remote code execution flaw in Hugging Face Transformers that Pluto Security researchers found and disclosed.

  7. Press SiliconANGLE

    Critical Hugging Face Transformers flaw ran attacker code on a routine model load (opens siliconangle.com in a new tab)

    SiliconANGLE reports Pluto's Hugging Face Transformers disclosure, with comments from Yotam Perkal and Pluto co-founder and CEO Shahar Bahat.

  8. Announcement Pluto Security

    Pluto integrates with Anthropic’s Compliance API for Claude Enterprise

    Security and compliance teams can now monitor Claude Enterprise activity directly in Pluto, alongside the rest of their AI estate.

  9. Award Innovate Cybersecurity Summit

    Pluto wins the inaugural Best Emerging Technology Award at the 2026 Innovate Cybersecurity Summit (opens innovatecybersecurity.com in a new tab)

    Voted first place by 160 CISOs and security executives at the summit in Marco Island, Florida.

  10. Announcement Pluto Security

    Introducing CopilotSec: a community knowledge hub for Microsoft AI ecosystem security

    Security guidance for Copilot Studio, M365 Copilot and Azure AI Foundry, built for the practitioners adopting them.

  11. Announcement Pluto Security

    Introducing ClaudeSec: a community knowledge hub for Claude ecosystem security

    A free, community-driven hub for evaluating the security of connectors, desktop extensions, managed agents and other Claude surfaces.

  12. Press BleepingComputer

    Critical Nginx UI auth bypass flaw now actively exploited in the wild (opens bleepingcomputer.com in a new tab)

    BleepingComputer reports active exploitation of CVE-2026-33032, the nginx-ui MCP flaw reported by Pluto Security, citing Pluto's analysis and its Shodan scan of about 2,600 exposed instances.

  13. Press Dark Reading

    Critical MCP Integration Flaw Puts NGINX at Risk (opens darkreading.com in a new tab)

    Dark Reading reports on CVE-2026-33032 in nginx-ui, reported by Pluto Security researchers, with commentary from Yotam Perkal, director of security research at Pluto.

  14. Press SecurityWeek

    Exploited Vulnerability Exposes Nginx Servers to Hacking (opens securityweek.com in a new tab)

    SecurityWeek covers the exploited nginx-ui vulnerability that Pluto Security researchers discovered and disclosed, with comments from Yotam Perkal, director of security research at Pluto.

  15. Press The Hacker News

    Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover (opens thehackernews.com in a new tab)

    The Hacker News covers MCPwn, the critical nginx-ui MCP flaw found by Pluto Research, including the advice to upgrade to nginx-ui v2.3.4.

  16. Announcement Amazon / AWS press center

    Pluto selected for the 2026 CrowdStrike, AWS and NVIDIA Cybersecurity Startup Accelerator (opens press.aboutamazon.com in a new tab)

    CrowdStrike, AWS and NVIDIA named Pluto Security among the 35 startups in the third annual Cybersecurity Startup Accelerator cohort.

For journalists & analysts

Press kit

Everything you need to write about Pluto.

About Pluto Security

Pluto Security secures what people build with AI. Its AI Workspace Security Platform lets security teams oversee and protect all AI building ventures in their organization, across AI builders, developer tools and business workspaces, with visibility, risk understanding and real-time guardrails.

Pluto was founded by a team from Unit 8200, Microsoft and Palo Alto Networks, and is part of top accelerators including AWS, CrowdStrike and NVIDIA. Instead of forcing security teams to block everything or accept the risk, Pluto offers a third way: let people build, while security stays in control.

Category
AI Workspace Security
Founding team
Unit 8200, Microsoft, Palo Alto Networks
Accelerators
AWS, CrowdStrike and NVIDIA
Research
Pluto Research

Keep exploring

  • About us

    Pluto’s Story

    Who we are, why we started Pluto and the values behind how we build.

  • Resources

    Analyst & research reports

    Read the reports behind the recognition, plus guides and technical resources.

  • Blog

    In our own words

    Product launches, company perspectives and original research from the Pluto team.