Aug 2026
ZeroThreat Expands Coverage with Built-in Custom and Open Attack Templates
ZeroThreat now runs Nuclei attack templates natively inside the platform, alongside custom templates your team authors directly in the dashboard. New CVEs, misconfigurations, and exposures move from public disclosure to validated test coverage on your own timeline, without waiting for a vendor release cycle. Burp Suite BCheck support is in active development and ships next.
Spotlight Features in This Release
Your Attack Library. Your Control.
Community and custom attack intelligence executed with real exploit validation, governed inside the same platform that runs your authenticated pentests.
Nuclei Template Support
Thousands of continuously updated Nuclei templates covering CVEs, misconfigurations, default credentials, and exposed services now run natively inside ZeroThreat. Templates execute without adaptation, and results land in the same findings view as the rest of your scan, correlated against the application context that reached them.
Custom and Community Templates, Imported Your Way
Run the templates your own team writes and the ones the community maintains. Point ZeroThreat at a GitHub repository holding your templates and import them directly, or upload a ZIP archive. Imported templates cover the internal frameworks, custom headers, endpoints, and organization-specific logic, and they stay in your library for reuse on every subsequent scan.
Every Template Tested Before Findings
Each template is researched against multiple sources, including vendor advisories, public proof-of-concept write-ups, and community disclosures, then tested and validated inside ZeroThreat before it ever runs against your applications. Execution confirms real reachability and impact instead of matching a pattern.
Burp Suite Support (Coming Soon)
Burp Suite support is currently in build. Once released, the community-maintained checks your team already relies on from PortSwigger will run inside ZeroThreat with the same validation layer and the same governance controls applied to Nuclei templates today, so Burp and Nuclei coverage lives in one attack library instead of two disconnected workflows.
Stop Waiting for Vendor Updates. Start Running Your Own Attacks.
Build a living attack library from Nuclei templates and your own custom checks, validated end to end on every scan.