Best Breach and Attack Simulation (BAS) Software - Page 2

How Many Breach and Attack Simulation (BAS) Software Products Does G2 Track?

Total Products under this Category: 59

Category Stats (Sep 2026)

  • Average Rating: 4.56/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Right-Hand Cybersecurity (+0.27%) - Among all products in this category, Right-Hand Cybersecurity recorded the largest rating increase compared to last month

Last updated: September 06, 2026

How Does G2 Rank Breach and Attack Simulation (BAS) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 1,300+ Authentic Reviews
  • 59+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Breach and Attack Simulation (BAS) Software

G2 Grid® for Breach and Attack Simulation (BAS) Software plotting products by satisfaction and market presence

Highlighted products: Picus Security, Cymulate, Adaptive Security, Pentera, Sophos PhishThreat, HTB CTF & Threat Range, vPenTest, and Right-Hand Cybersecurity.

Underlying data: [Grid® JSON](https://www.g2.com/categories/breach-and-attack-simulation-bas/grids.json?focus%5B%5D=picus-security&focus%5B%5D=cymulate&focus%5B%5D=adaptive-security&focus%5B%5D=pentera&focus%5B%5D=sophos-phishthreat&focus%5B%5D=htb-ctf-threat-range&focus%5B%5D=vpentest&focus%5B%5D=right-hand-cybersecurity)

Atrapa

The all-in-one platform to capture, convert, and retain customers across every messaging channel.

Average Rating: 5.0/5.0

Total Reviews: 2

Who Is the Company Behind Atrapa?

Who Uses This Product?

  • Company Size: 50% Medium, 50% Small

What Are Recent G2 Reviews of Atrapa?

OpenAEV by Filigran

OpenAEV (formerly OpenBAS) Community Edition (CE) is the free base platform, while the Enterprise Edition (EE) is a commercial license upgrade that provides powerful AI-driven features and automation for faster, more contextual scenario creation and remediation actions. Convert threat/exposure data into validated, actionable security outcomes with industry’s first open-source, threat-informed AEV platform. - Unified Threat Context: Know what you need to defend against - Proactive Defense: Emulate real-world attacks to see how your defenses hold up - Adaptable interface: Customize for your use case – validate tools, people & processes - Accelerated Time-to-Remediation: Quickly detect and fix vulnerabilities

Average Rating: 4.8/5.0

Total Reviews: 2

Who Is the Company Behind OpenAEV by Filigran?

  • Seller: Filigran
  • Company Website:
  • Year Founded: 2022
  • HQ Location: New York, US
  • Twitter: @FiligranHQ
    841 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    270 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Large, 50% Medium

What Are Recent G2 Reviews of OpenAEV by Filigran?

RADAR™

MazeBolt RADAR is a patented DDoS Vulnerability Management solution. Using thousands of non-disruptive DDoS attack simulations and without affecting online services, RADAR identifies and enables the remediation of vulnerabilities in deployed DDoS protection solutions.

Average Rating: 4.3/5.0

Total Reviews: 2

Who Is the Company Behind RADAR™?

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of RADAR™?

AttackIQ Platform

AttackIQ is the industry’s leading Continuous Threat Exposure Management (CTEM) platform, enabling organizations to measure true exposure, prioritize risk, and disrupt real-world attack paths. By moving beyond static vulnerability data, AttackIQ operationalizes CTEM by continuously validating exposures against real adversary behavior and defensive controls. The platform connects vulnerabilities, configurations, identities, and detections into adversary-validated attack paths—quantifying the likelihood of attacker movement and impact. This evidence-based approach empowers security leaders to focus on what matters most, optimize defensive investments, and strengthen resilience through threat-informed, AI-driven security operations. The company is committed to supporting its MSSP partners with a Flexible Preactive Partner Program that provides turn-key solutions, empowering them to elevate client security. AttackIQ is passionate about giving back to the cybersecurity community through its free award-winning AttackIQ Academy and founding research partnership with MITRE Center for Threat-Informed Defense.

Average Rating: 4.5/5.0

Total Reviews: 1

Who Is the Company Behind AttackIQ Platform?

  • Seller: AttackIQ
  • Year Founded: 2013
  • HQ Location: Los Altos, US
  • Twitter: @AttackIQ
    7,101 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    168 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of AttackIQ Platform?

CyBot

CyBot is a next-generation vulnerability management tool as well as the world first Automated pen testing solution, that continuously showcases validated, global, multi-vector, Attack Path Scenarios (APS), so you can focus your time and resources on those vulnerabilities that threaten your critical assets and business processes. CyBot has one core engine: CyBot Pro, plus two additional management consoles. One for Enterprises and one for MSSPs.

Average Rating: 4.5/5.0

Total Reviews: 1

Who Is the Company Behind CyBot?

  • Seller: Cronus-Cyber
  • Year Founded: 2014
  • HQ Location: Haifa, IL
  • Twitter: @CronusCyber
    97 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    6 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of CyBot?

FourCore ATTACK

FourCore ATTACK provides a comprehensive view of security effectiveness by validating controls with realistic attacks. • Identify gaps in endpoint, email and network security controls before real attackers do • Continuously test defenses in production without disrupting users or IT operations • Focus internal red teams on high value assets while FourCore ATTACK covers routine controls testing • Give blue teams real attack data to improve threat detection and response capabilities • Enable security and IT teams to make effective risk-based security decisions FourCore ATTACK is backed by FourCore's advanced adversary emulation technology. Emulate threats consistently and realistically, to make sure you can defend against the script kiddies and advanced APTs alike.

Average Rating: 3.5/5.0

Total Reviews: 1

Who Is the Company Behind FourCore ATTACK?

  • Seller: FourCore
  • Year Founded: 2021
  • HQ Location: New Delhi, IN
  • LinkedIn® Page: www.linkedin.com
    12 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

SafeBreach

The SafeBreach CTEM Platform is designed to operationalize the full Continuous Threat Exposure Management lifecycle, empowering organizations to move from reactive security to a proactive, closed-loop risk management program that continuously identifies, prioritizes, and remediates cyber risk at scale. It is powered by SafeBreach Helm, an AI infrastructure layer that orchestrates three purpose-built AI agents that combine continuous exposure discovery, adversarial validation, and AI-driven remediation. The SafeBreach CTEM Platform is built on SafeBreach's Exposure Validation Platform, the only enterprise-grade Adversarial Exposure Validation (AEV) platform that simulates attacker behavior both before and after a breach—validating not just whether defenses fail, but how far an attacker could go and what they could impact. The platform combines the breach and attack simulation capabilities of SafeBreach Validate with the attack path validation capabilities of SafeBreach Propagate. SafeBreach Validate is an award-winning breach and attack simulation (BAS) technology that uses patented technology to test the efficacy of deployed security controls against real-world threats. Leveraging the tactics, techniques, and procedures (TTPs) used by malicious actors, Validate automates adversarial attacks to help organizations continuously test their defenses, understand and limit their exposure, reduce their attack surface and improve security posture, and accelerate remediation. SafeBreach Propagate is the enterprise-grade automated penetration testing and attack path validation technology that emulates lateral movement, privilege escalation, and credential harvesting within the network—safely, automatically, and continuously—to help security teams understand potential post-breach impact. SafeBreach Propagate allows organizations to uncover high-risk paths to critical organizational assets, identify security gaps and strengths, prioritize remediation activities, and streamline communication with key stakeholders using built-in reports and dashboards. These dashboards distill data into business-ready metrics: breach likelihood, control failure rates, and remediation priorities—aligned to frameworks like MITRE ATT&CK, NIST CSF, DORA, and NIS2. SafeBreach technology is backed by SafeBreach Labs, a dedicated, in-house adversary research team building production-grade playbooks for new CVEs, FBI Flash/CISA Alerts, and named threat actors; and The Hacker’s Playbook, the industry’s largest curated attack library of over 33,000 attacks mapped end-to-end to MITRE ATT&CK and continuously refreshed. In 2025 alone, the platform ran more than 46.8 million individual attack executions across 32,620+ scenarios in customer environments. SafeBreach was also named a Representative Vendor in the 2025 Gartner® Market Guide for AEV.

Average Rating: 4.5/5.0

Total Reviews: 1

Who Is the Company Behind SafeBreach?

  • Seller: SafeBreach
  • Year Founded: 2014
  • HQ Location: Sunnyvale, California, United States
  • Twitter: @safebreach
    2,504 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    135 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of SafeBreach?

SCYTHE

SCYTHE is an adversary emulation platform (BAS+) catering to the commercial, government, and cybersecurity consulting market. The SCYTHE platform empowers Red, Blue, and Purple teams to swiftly construct and simulate real-world attacks. SCYTHE serves as a robust proactive security tool for scrutinizing detective and preventive controls across multiple communication vectors. Through SCYTHE, with its prepackaged action/behavior logic and threat intelligence, organizations can maintain a continuous evaluation of their risk profile, prioritize vulnerabilities, and take action against threats that matter.

Average Rating: 4.5/5.0

Total Reviews: 1

Who Is the Company Behind SCYTHE?

  • Seller: SCYTHE
  • Year Founded: 2017
  • HQ Location: Columbia, US
  • Twitter: @scythe_io
    6,863 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    33 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of SCYTHE?

SimLight

SimLight by Thawd is an advanced Breach and Attack Simulation solution designed to deploy in minutes and continuously validate your security controls by simulating realistic attacker behaviors. SimLight provides comprehensive visibility into your organization's security posture, empowering proactive defense against real-world threats.

Average Rating: 5.0/5.0

Total Reviews: 1

Who Is the Company Behind SimLight?

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of SimLight?

Validato - Continuous Security Validation Platform

Validato is a leading Continuous Security Controls Validation platform designed to empower modern security teams to definitively prove their cyber resilience. As a pioneer in the Adversarial Exposure Validation (AEV) and Breach & Attack Simulation (BAS) market, Validato provides an automated, evidence-based approach to identifying hidden misconfigurations and security gaps within live production environments. Why Validato? In an era of evolving regulations like DORA and NIS2, and board-level concerns such as Ransomware, traditional annual penetration testing and static vulnerability scans are no longer sufficient. Validato transforms security from a "check-box" exercise into a proactive, continuous strategy for operational resilience. Threat-Informed Defence: We safely simulate the methods cyber adversaries use to manipulate standard features and over-privileged users across Windows, Linux, and Mac environments. MITRE ATT&CK® Alignment: Unlike tools that merely emulate Indicators of Compromise (IOCs), Validato directly tests the specific MITRE ATT&CK Techniques exploited by threat actors to validate the actual effectiveness of your detection and protection capabilities. Safe for Production: Our simulations are engineered to be non-disruptive, allowing for continuous validation without risk to critical business operations. Actionable Remediation: We move beyond identifying issues by providing clear, guided hardening steps based on the Principle of Least Privilege, helping you strategically reduce your attack surface. Key Outcomes for Security Leaders CISOs & Risk Teams: Access impartial, fact-based data to demonstrate cyber resilience to the Board and meet strict regulatory compliance mandates (DORA, NIS2, ISO 27001). SOC & Security Engineering: Optimise the ROI of existing security investments, such as EDR and SIEM tools, by validating log data fidelity and fine-tuning threat detection. Red Teams: Scale testing efficiency by automating repetitive TTP testing, freeing expert resources to focus on complex, high-value adversarial emulations. Deploy in Minutes, Validate Forever Validato is a cloud-based SaaS platform that can be operational within 30 minutes. By providing a continuous feedback loop on security effectiveness, Validato helps organisations shift from reactive defence to a proactive, resilient security posture.

Average Rating: 4.0/5.0

Total Reviews: 1

Who Is the Company Behind Validato - Continuous Security Validation Platform?

  • Seller: Validato
  • Year Founded: 2021
  • HQ Location: London, GB
  • LinkedIn® Page: www.linkedin.com
    10 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Do G2 Reviewers Say About Validato - Continuous Security Validation Platform?

AI-generated summary from verified user reviews

Pros
  • Users praise the continuous system validation and simulation services of Validato as the best on the market.
  • Users highlight the top-notch continuous system validation of Validato, recognizing its exceptional value for their firms.
Cons
  • Users highlight the need for more product awareness to improve the induction training experience for Validato.

What Are Recent G2 Reviews of Validato - Continuous Security Validation Platform?

XM Cyber Exposure Management Platform

XM Cyber is a leading hybrid cloud security company that’s changing the way innovative organizations approach cyber risk. By continuously uncovering hidden attack paths to businesses’ critical assets and security controls gaps across cloud and on-prem environments, it enables security teams to remediate exposures at key junctures and eradicate risk with a fraction of the effort. Many of the world’s largest, most complex organizations choose XM Cyber to help eradicate risk. Founded by top executives from the Israeli cyber intelligence community, XM Cyber has offices in North America, Europe, and Israel.

Average Rating: 3.5/5.0

Total Reviews: 1

Who Is the Company Behind XM Cyber Exposure Management Platform?

  • Seller: XM Cyber
  • Year Founded: 2016
  • HQ Location: Tel Aviv-Yafo, Tel Aviv District, Israel
  • Twitter: @XMCyber_
    3,470 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    421 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

AI Risk Detection

Enkrypt AI's Risk Detection with Red Teaming is a comprehensive solution designed to identify and mitigate vulnerabilities in Large Language Models (LLMs) and Generative AI applications. By simulating real-world attack scenarios, this technology enables organizations to proactively detect risks such as prompt injections, data loss, and the generation of harmful content, ensuring the development of secure and compliant AI systems.

Who Is the Company Behind AI Risk Detection?

AISOC

The premier cyber security company that protects you before, during and after a breach

Who Is the Company Behind AISOC?

ARTEMIS

ARTEMIS by Repello AI hunts for vulnerabilities in your AI applications by simulating attacks that malicious actors would use. ARTEMIS tests, identifies, and helps remediate security risks before they can be exploited in production environments. This is powered by world's largest AI-specific threat intelligence repositories. Key Features: 1. Simulates real-world attacks against your AI systems 2. Maps vulnerabilities across your AI infrastructure 3. Provides actionable mitigation recommendations 4. Adapts to evolving threats as your AI applications grow Built by security engineers to protect AI from attackers. Secure your AI early in development and throughout deployment. Get a Demo: https://repello.ai/get-a-demo

Who Is the Company Behind ARTEMIS?

  • Seller: Repello AI
  • Year Founded: 2023
  • HQ Location: San Francisco, US
  • LinkedIn® Page: www.linkedin.com
    10 employees on LinkedIn®
Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 3, 2024