Spektion developed a sensor that observes what executed on the host, at what privilege, reaching what, independent of what the agent reported doing.
Public source
Publisher name
Public post
In about 7% of the transcripts METR and Redwood reviewed, an agent's record of what it ran did not match what it ran. That is 96 of roughly 1,300, from the OpenAI agents…
Company
Spektion
Continuous Runtime Exposure Management: what executes, at what privilege, what it can reach, before any CVE exists.
- Industry
- Computer and Network Security
- Location
- Dripping Springs, US
- Company size
- 11–50 employees
About Spektion
Spektion is the Continuous Runtime Exposure Management (CREM) platform. A lightweight sensor records what actually executes on every workstation and server, at what privilege, reachable from where, and with what blast radius. That evidence sets which CVEs get patched first and surfaces the exploitable weaknesses that have no CVE. What customers measure: → 60% fewer emergency patch events (anonymized customer data) → 27% attack surface reduction in 30 days (anonymized customer data) → 50 to 80 percent fewer critical CVEs pushed to remediation, validated in proof-of-value Why the numbers hold: about 70% of critical CVEs sit in software that is not running. The same CVE scores 9.76 where it runs as SYSTEM and 4.00 where it sits idle. Spektion Research found 71% of applications with exploitable flaws had no CVE assigned. Founded in 2024 by red teamers, vulnerability researchers, and CISOs. Backed by LiveOak Ventures. Customers include NielsenIQ, Granicus, and Juul Labs. Runtime Insights, the monthly newsletter, lives on this page. Demo requests at spektion.com/demo.
See moreLatest activity
Latest activity from Spektion
3 signals
Products & Services
Spektion deployed a sensor that continuously reads the execution state, privilege, and network exposure of AI agents running on a host.
Research & Knowledge
Spektion published a full disclosure, detection guidance, and indicators for CVE-2026-71381 related to Adobe Genuine Service vulnerabilities.
Discover more
Similar signals
Similar public activity from other companies.
Research & Knowledge
Spectrum Security
Spectrum Security verified detection rules across six SIEM platforms for the Detection Debt Report, showing a wide internal spread of 16.9% to 45.7% on one, 18.8% to 39.9% on another, and 18.0% to 39.2% on a third.
Research & Knowledge
Reach Security
Reach Security is leading the industry in understanding the scale and impact of security control drift.
Research & Knowledge
RAD Security
RAD Security surfaced threats at Runtime.
Research & Knowledge
Mitiga
Mitiga shipped over 1,000 validated detections using a seven-stage automated detection engineering pipeline.
Research & Knowledge
Sysdig