
Hadrian Security B.V. · Hadrian: Agentic Attack Surface Management (Atlas) and On-Demand AI Pentesting (Nova)
Hadrian is an Amsterdam-based offensive security platform whose AI agents continuously map an organization's internet-facing assets and confirm which exposures are actually exploitable (Atlas), and run on-demand agentic penetration tests of a single web application (Nova). It suits CISO-led security teams at mid-market and enterprise companies that want validated external findings and pentest evidence for NIS2, DORA, ISO 27001 or SOC 2, with Nova priced from €1,250 per test.
Best for
CISO-led security teams at mid-market and enterprise organizations (Hadrian names 300 to 10,000 employees) with a large, changing internet-facing estate across cloud and on-premises, who want validated external exposures instead of scanner noise and pentest evidence for NIS2, DORA, ISO 27001 or SOC 2
Not ideal for
Teams that need internal network, Active Directory, social engineering or physical testing, financial entities looking for their DORA TLPT, organizations that require self-hosted tooling, developers who want an open-source pentesting agent to run in CI, and small companies without a dedicated security team
Who it's for
CISOs, security operations, vulnerability management, offensive security and GRC teams at mid-market and enterprise organizations
Hadrian is aimed at the security team that already owns a large, untidy internet footprint and is drowning in scanner output. Atlas's value is the inventory plus the filter: it keeps finding assets and only alerts on what its agents could exploit. Nova then gives that team a priced, on-demand pentest of a specific app, with evidence and retests built in. The combination is the distinct part; most agentic pentesting tools in this list either test one app you point them at or are built for developers in CI. The limits are clear from Hadrian's own pages: external surface only, Atlas pricing by quote, one URL per Nova test with yearly-expiring entitlements, and little public documentation. Treat the vendor's noise and ROI figures as something to confirm in a demo against your own attack surface.
Who should use it
CISOs and security operations, vulnerability management and GRC teams at mid-market and enterprise organizations with many internet-facing assets, subsidiaries or acquisitions, who want a continuously validated external inventory and on-demand pentests with audit-ready evidence, especially in the EU.
Who should skip it
Teams whose main risk is internal (Active Directory, lateral movement inside the network) or human (phishing, physical access), financial entities that need a TIBER-EU or DORA TLPT, organizations that must self-host security tooling, and developers who want an open-source pentesting agent they can run themselves.
Nova
From €1,250 per test (excl. VAT)
Atlas
Custom (based on total asset count)
Note: Nova is bought through an order form for a subscription period; each test consumes one pentest entitlement when it starts, consumed entitlements are not refunded unless Hadrian aborts the test, unused ones expire at the end of the contract year, subscription periods auto-renew for 12 months unless either side gives 30 days' notice (unless the order form says otherwise), and the terms allow an annual fee increase in line with EU consumer price inflation (HICP). Hadrian also offers a free external exposure report, which is not a pentest.
Available models
Getting control of a sprawling external footprint
Atlas starts without a scope list, finds forgotten hosts, cloud resources and subsidiary assets, and only alerts on exposures its agents could prove, which turns a scanner backlog into a short, evidenced queue.
Same-day answer to a critical CVE
New CVEs are matched to exposed assets running the affected version and tested, so the team knows which systems are really exploitable without waiting for a manual check.
Pentest evidence on the release schedule
A Nova test can be launched against a staging app before a release or audit, usually finishes within one to two days, and includes retests so fixes can be confirmed before the report goes to the auditor.
Hadrian vs. Fleuret
Fleuret is a Paris-based agentic pentesting service priced at a flat €4,000 per web app, covering the app, its API and the external infrastructure behind it, with a free-to-start scanner plan for code and domains. Hadrian's Nova is the closer match and starts at €1,250 per test, while Hadrian adds Atlas for continuous discovery and validation across the whole external attack surface. Both say pentest data and model inference stay in the EU.
Hadrian vs. Strix
Strix is an Apache-2.0 open-source pentesting agent that developers run themselves in the CLI or CI with their own model, plus a paid cloud platform for scheduled pentests and PR reviews. Hadrian is a closed, managed platform for security teams: continuous external attack surface management with Atlas and human-reviewed Nova pentests, sold through sales with ticketing and SIEM integrations.
What does Hadrian do?
Hadrian is an agentic offensive security platform with two products. Atlas continuously discovers an organization's internet-facing assets and uses AI agents to confirm which exposures are exploitable before alerting. Nova runs on-demand agentic penetration tests of a single application, with every finding backed by the requests and responses that prove it.
What is the difference between Hadrian Atlas and Nova?
Atlas covers breadth: it maps and tests your whole external attack surface continuously, with hourly passive discovery and new tests on every change. Nova covers depth: you point it at one application and its agents pentest it in detail, including authenticated, IDOR, cross-tenant and business logic testing. They share context, so Atlas can surface what deserves a deeper Nova test.
How much does Hadrian cost?
Nova starts at €1,250 per test excluding VAT, with bundles for multiple tests and custom quotes based on scope and frequency. Atlas is priced on your total asset count by quote, and its mergers and acquisitions and infostealer credential leak add-ons cost extra. Each Nova pentest includes unlimited retests within the first 12 months at no extra cost.
How long does a Nova pentest take?
Hadrian says most Nova tests finish within 24 to 48 hours, depending on scope. You can follow results in the platform as they come in and receive a compliance-ready PDF report at the end.
Are Hadrian's findings reviewed by humans?
Hadrian describes Nova results as human-reviewed. Its engineering write-up says findings pass automated verification routines and that novel edge cases are routed to human security practitioners, and its FAQ says humans stay in the loop for scoping and run safety checks before higher-risk testing.
Is it safe to run Hadrian against production systems?
Hadrian says it uses safe exploitation, that you approve the scope before a test starts, and that its hackers run a safety check before higher-risk testing. Nova lets you set rate limits, removes destructive HTTP methods such as DELETE from its agents' toolkits, and hides test credentials from the model. You can also run Nova against a staging environment first.
Does Hadrian satisfy DORA or NIS2 requirements?
Hadrian supports the external attack surface parts of these frameworks, and Nova reports map to SOC 2, ISO 27001 and NIS2. Hadrian states that it does not certify DORA compliance or replace a DORA threat-led penetration test (TLPT), and its terms say framework references describe the controls Nova helps you evidence.
Where does Hadrian process data, and which AI models does it use?
Nova's terms say all customer data is stored and processed in the EU and that foundation-model inference happens in the EU, and that customer data is not used to train third-party models. Hadrian's sub-processor list names Microsoft Azure, through which it accesses OpenAI models hosted in the EU. For the wider platform, the list shows product data stored in the EU, with an opt-in for customers who want scanning from other regions.
Fleuret AI (FLEURET AI SAS)
European companies of roughly 50 to 1,000 people with a real web and API attack surface (SaaS, fintech, healthtech) and a NIS2, DORA, SOC 2 or ISO 27001 deadline, especially those that want pentest data and model inference kept on EU infrastructure
Freemium
Strix (OmniSecure, Inc.)
Engineering and AppSec teams that want open-source, AI-driven pentesting of their own apps and APIs in the CLI or CI, with an option to move to a managed platform
FreemiumHadrian, founded in Amsterdam in 2021 by former teenage ethical hackers Rogier Fischer and Olivier Beg together with Maurice Clin, sells two products on one platform that it positions as adversarial exposure validation for continuous threat exposure management (CTEM) programmes. Atlas covers breadth: it starts from no scope, discovers the domains, DNS records, IPs, certificates, cloud services and applications a company exposes online (including shadow IT), runs passive discovery every hour, and triggers new tests whenever something changes, such as a new host, port or software version. When a new CVE is published, Atlas matches it to assets running the affected version and tests them. Its agents try to exploit each potential exposure before raising it, so the team receives a short list of verified risks with proof of concept, reproduction steps, business-context prioritization beyond CVSS or EPSS, and remediation guidance, instead of a scanner backlog. Nova covers depth: you point it at one application, and a fleet of agents signs up like a real user, maps the API, and works through reconnaissance, exploitation, privilege escalation, authorization (IDOR) and cross-tenant testing and business logic, chaining small flaws into demonstrated impact. Hadrian says most tests finish within 24 to 48 hours, that you can follow the AI's reasoning, tests and evidence live, and that results are human-reviewed; the test ends with a compliance-ready PDF report mapped to SOC 2, ISO 27001 and NIS2, and each Nova pentest includes unlimited retests for 12 months. Hadrian's engineering write-up describes Nova as a layered system rather than one free-roaming agent: deterministic open-source tools do reconnaissance, a coordinator spawns narrowly scoped attack agents, a supervisor agent shifts budget toward promising attack paths, agents share a rate budget, destructive HTTP methods such as DELETE are removed from their toolkits, credentials are hidden from the model behind an abstraction layer, and novel edge cases go to human practitioners for review. Both products run from the cloud with nothing to install, feed findings to ticketing, chat, SIEM/SOAR and endpoint tools, and connect to AWS, Azure, Google Cloud and Cloudflare for cloud asset discovery. Nova's terms state that customer data is stored and processed in the EU and that foundation-model inference happens in the EU. The tradeoffs: Hadrian only tests the external, internet-facing attack surface, so internal networks, social engineering and physical red teaming still need people; Atlas is priced on total asset count by quote; each Nova test covers one target defined by a single URL, unused entitlements expire at the end of each contract year, and the customer must warrant authorization over every target; and no public product or API documentation is published beyond the website, FAQs and terms.
Hadrian announced a $40M round co-led by Forgepoint Capital International and SmartFin, with HV Capital, Motive Partners, Picus Capital and Oetker Ventures participating, bringing its total funding to $65M. It says the money will fund expansion across EMEA and the U.S. and more investment in its engineering and research teams behind Atlas and Nova.
Hadrian launched Nova, an on-demand agentic pentesting product that adds deep testing of specific applications to its external exposure management platform. It is priced per test rather than as a recurring retainer, and Hadrian describes the results as human-reviewed.
Are you the founder? Claim this listing →