Vulnerability Management

Hakware Archangel

An AI-powered penetration testing engine that continuously probes your external attack surface — finding vulnerabilities the way a real attacker would, before they do.

Hakware Archangel

The latest technology in Pentesting AI

What it does

Key capabilities

Continuous External Scanning

NMAP port scanning, DNS enumeration, SSL validation, and subdomain discovery running 24/7 against your perimeter.

Offensive Test Suite

SQL injection, XSS, remote command execution, brute force simulation, Log4j scanning, and directory discovery.

AI-Driven Analysis

Custom-trained models interpret results, prioritise findings by exploitability, and reduce false positives automatically.

Detailed Reporting

Executive-ready reports with CVSS scores, remediation steps, and historical trending for audit and compliance.

Scheduled & On-Demand

Schedule recurring scans or trigger on-demand assessments during major deployments or incidents.

Compliance Alignment

Scan results map directly to PCI DSS, ISO 27001, GDPR, and POPI requirements.

Highlights

Why Hakware Archangel?

  • Hacks like a real attacker — AI-trained offensive testing
  • Faster assessment than manual penetration testers
  • Continuous monitoring, not just point-in-time snapshots
  • Maps to GDPR, ISO 27001, PCI DSS, and POPI
  • Recognised among Top 12 innovative vulnerability scanners (US Venture News 2023)
Included in OneView

Hakware Archangel is part of the Hakware OneView platform. All findings, events, and data from this module flow into your central dashboard alongside every other security signal in your environment.

24/7 Support Available
Phone: +27 060 984 1210
FAQs

Frequently asked questions

No. Archangel is agentless and operates entirely from the cloud. It probes your external attack surface the way a real attacker would — using NMAP port scanning, DNS enumeration, SSL inspection, and offensive test payloads — without requiring any software deployment on the systems being tested.

Archangel tests for SQL injection, XSS, remote command execution, directory traversal, brute force susceptibility, Log4j (Log4Shell), open redirects, and SSL/TLS misconfigurations. It also performs subdomain enumeration and service fingerprinting to identify forgotten or shadow infrastructure exposures.

Archangel runs continuously — not just point-in-time. You can schedule recurring scans at daily, weekly, or monthly intervals, and trigger on-demand assessments at any time, such as immediately after a major deployment or when a new CVE is published affecting your technology stack.

PCI DSS Requirement 11.3 mandates external penetration testing at least annually and after significant changes. Archangel's continuous testing model exceeds this — providing ongoing evidence of testing activity, CVSS-scored findings, and remediation tracking that auditors can verify directly from the platform.

See Hakware Archangel in action

Request a personalised demo and we'll show you exactly how Hakware Archangel works within your environment.