
Announcing runZero 5.1: Private AI, Autonomous Discovery, and Advanced Integrations
You asked for faster, more intuitive exposure management, and we listened. runZero 5.1 introduces major upgrades across five core pillars, designed to help you identify and resolve vulnerabilities with unprecedented speed and minimal friction.
1. Compliance-Friendly AI: Powerful Insights, Zero Data Leakage
We know you want to leverage AI to streamline your workflows, but sending sensitive metadata to third-party LLMs is a compliance nightmare. With version 5.1, you can bring your own AI directly into runZero safely and securely.
Whether you choose a Bring-Your-Own-Key (BYOK) setup or a completely self-hosted model, you can now use natural language to query your environment. Forget complex syntax—just ask questions like “Find all expired TLS certificates” or “Show me all endpoints missing EDR,” and let runZero do the translation. You can also use this feature to build custom reports and dashboards.
Navigating this new capability is seamless thanks to the Quick Command Menu (press Cmd-K or Ctrl-K anywhere in the app). Administrators can easily enable AI at the account level (cascading down) or configure it for specific organizations via the settings panel.
2. Autonomous Discovery: Put Attack Surface Mapping on Autopilot
Historically, scoping a scan required tedious manual entry of IP ranges, CIDRs, and domains—and if your network changed, your scope became outdated, leading to blind spots. Autonomous discovery changes the game entirely.
Once enabled for internal or external scans, runZero analyzes the results of your initial scan to automatically tune and expand the scope for the next one. It learns from routing tables, adjacent subnets, and related hostnames, continually widening its net until your entire attack surface is mapped. Say goodbye to manual scope management and hello to continuous, self-expanding intelligence.
3. Enhanced Integration Framework: Build Faster, Merge Smarter
Integrating disparate data sources is critical. Our upgraded Custom Integrations Framework allows you to leverage LLMs and AI coding agents to build custom pipelines faster than ever. We’ve refined our merge logic to ensure that overlapping data from multiple sources consolidates into a single, high-fidelity asset record—eliminating the headache of duplicates.
Additionally, we’ve expanded the data sources you can integrate natively, adding robust options for SSH, SMB, WinRM, WMI, and SQL.
4. Streamlined Remediation: Frictionless Handoffs
Finding a vulnerability is only half the battle; fixing it requires accountability. runZero 5.1 ensures that remediation doesn’t stall when passing the baton:
- No ITSM? No problem: You can now assign issue ownership directly via email. Team members can receive tasks and track status even if they don’t have a runZero account.
- For ITSM Users (e.g., Jira): We are ending the era of static, outdated CSV attachments. Tickets are now enriched with secure, direct links to interactive, real-time reports of affected assets inside runZero.
5. Deepened Dragos Integration: Bridging the IT/OT Divide
In converged environments, analysts waste precious time toggling between tools to connect OT context with IT data. runZero 5.1 brings critical Dragos intelligence natively into your dashboard.
Dragos “crown jewel” designations are now automatically flagged as Critical in runZero. Furthermore, you can view Purdue model levels and high-level asset communication paths directly in our interface. This allows you to easily filter for specific OT assets (like Purdue Level 2 controllers), analyze their attack paths in runZero, and pivot seamlessly to Dragos for granular details. (Note: Support for Purdue levels from tools like NetBox and Nozomi is coming soon!)
Ready to experience the future of exposure management? Our goal with 5.1 is to remove friction from your day-to-day operations. Log into your console to explore these new features, or start a free trial today. We’d love to hear your feedback!
About runZero
runZero, a network discovery and asset inventory solution, was founded in 2018 by HD Moore, the creator of Metasploit. HD envisioned a modern active discovery solution that could find and identify everything on a network–without credentials. As a security researcher and penetration tester, he often employed benign ways to get information leaks and piece them together to build device profiles. Eventually, this work led him to leverage applied research and the discovery techniques developed for security and penetration testing to create runZero.
About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.
Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.