Rob Gurzeev on Why AI Has Changed Cybersecurity’s Biggest Blind Spot
July 19, 2026 – 12:56 pm
Image by: CyCognito
Summary
AI makes it trivially easy for anyone in an organization to deploy internet-facing applications, often outside established security processes. CyCognito CEO Rob Gurzeev argues that the resulting blind spots are more dangerous than known vulnerabilities. His solution? Continuous, outside-in attack-surface mapping that validates exploitable assets rather than scanning a known list.
Artificial Intelligence and its Impact on Cybersecurity
Artificial intelligence is revolutionizing software development, deployment, and security. While AI has accelerated innovation, it has also increased the number of internet-facing assets organizations need to protect. According to Rob Gurzeev, CEO and Co-Founder of CyCognito:
The challenge is no longer just identifying known vulnerabilities; it’s understanding what is actually exposed, how those assets connect, and how attackers can exploit them.
A Security Mindset for the Unknown
Gurzeev’s journey into cybersecurity began in his teens, exploring computers and Internet Relay Chat (IRC) communities, sparking an interest in hacking. This curiosity led him to an intelligence unit where he worked on reconnaissance and attack-surface operations.
Honestly, this work chose me more than I chose it.
He highlights that traditional security approaches often start with a presumed knowledge of assets, but this gap is becoming critical as AI simplifies application deployment.
Attack Surface Mapping: A New Approach
Gurzeev believes CyCognito’s unique approach starts by mapping everything exposed to the internet—even forgotten or unmanaged assets—and then actively testing them for weaknesses.
We map everything a company has exposed to the internet, then trace the handful of paths that actually lead to its internal networks and sensitive data.
The platform mimics an attacker’s mindset to identify genuinely exploitable vulnerabilities, which sets it apart from traditional vulnerability scanning methods.
The Expanding Attack Surface
Modern enterprises expose around 100,000 applications, devices, and cloud assets to the internet, with some organizations having even larger attack surfaces. This massive scale presents significant challenges for traditional security programs.