TechNewsReel
Live

Orca Security launches AI tools to combat 'shadow AI' software risks

New security tools target the visibility gap created by non-technical employees building custom AI applications outside formal pipelines.

TechNewsReel Newsroom · August 1, 2026

Orca Security has released two AI-driven tools designed to secure software created within professional engineering workflows and via "shadow AI" platforms. The launch aims to close critical visibility gaps as AI-assisted development allows non-technical staff to deploy applications that bypass traditional security reviews.

The company introduced Orca AI AppGen Security and Orca AI Code Security Auditor. While the Code Security Auditor applies AI-driven static analysis to conventional engineering pipelines, AppGen Security specifically targets applications built on platforms such as Claude, Supabase, and Lovable. These tools address the rise of software created outside formal development cycles, which often lack standard security oversight.

The Rise of the Citizen Builder

This shift toward AI-assisted creation has democratized software development, enabling employees across various business functions to build apps that connect to corporate APIs and sensitive data. According to Orca's State of AI Security Report 2026, 52% of organizations are now building custom applications using AI. This trend has created a significant blind spot for security teams, as these "shadow" apps often evade the static analysis tools used in professional DevOps pipelines.

Financial and Operational Risks

The expansion of the enterprise attack surface carries heavy financial penalties. Citing IBM estimates, Orca notes that breaches involving shadow AI cost organizations an average of $670,000 more than other security incidents. For security leaders, the challenge is one of scale; Sangram Dash, CISO at Sisense, noted that both business teams and developers are shipping software faster than security teams can review it, leaving apps built outside the pipeline as a complete blind spot.

The Future of AI Deployment

By providing visibility into both professional code and AI-generated shadow apps, Orca intends to prevent security teams from becoming bottlenecks to corporate innovation. Gil Geron, CEO and Co-Founder of Orca Security, stated that the landscape is shifting because "everyone is a builder now," with frontier AI models expected to increasingly generate and modify software autonomously. The industry must now watch how enterprises balance this rapid democratization of coding with the need for centralized security governance.

Sources

Get a notification when a big story breaks. A few a day at most — no spam.