Choose by operating model, not a checkbox score.
These products overlap at the edges but start from different jobs. The descriptions below stay deliberately narrow and link to each vendor's own current material.
XBOW
Autonomous offensive securityEvaluate when the buying question is autonomous web and API pentesting with exploit validation.
Read XBOW platformStackHawk
Developer-first DASTEvaluate when the buying question is DAST executed from local or CI/CD workflows.
Read StackHawk DASTNodeZero
Autonomous pentestingEvaluate when the buying question centers on attack paths across networks, cloud, identity, and related infrastructure.
Read Horizon3.ai NodeZeroEresus Guard
Application-security WorkbenchEvaluate when one project needs authorized DAST, source and dependency review, HTTP and OAST evidence, triage, and administration.
Read Eresus Guard product
Vendor capabilities change. Re-open the linked source during procurement; this page does not assign a universal winner.