Global digital payments leader Visa has announced enhancements to its cybersecurity portfolio to assist organizations in identifying and resolving security vulnerabilities more effectively. The updates include the latest release of the Visa Vulnerability Agentic Harness (VVAH), an open-source, model-agnostic framework aimed at reducing the time required between discovering and resolving attack paths.
According to Visa, the updated framework helps organizations lower the Mean Time to Adapt (MTTA), with certain resolutions decreasing from weeks to hours. Originally introduced following Visa's involvement in Anthropic's Project Glasswing frontier AI cybersecurity initiative, the VVAH framework now extends workflows beyond initial discovery into remediation and validation within a single structured process.
Alongside the VVAH release, Visa Consulting & Analytics (VCA) has introduced three new cybersecurity advisory services. These services are intended to help clients assess risk, prioritize remediation efforts, and build resilience against evolving threat environments across regions, including Asia Pacific.
Prateek Sanghi, Head of Visa Consulting & Analytics for Asia Pacific, noted that identifying vulnerabilities is no longer the primary differentiator in cybersecurity. Instead, determining which risks require immediate attention and resolving them before exploitation remains the key challenge for organizations today.
Over the past year, the VCA Cybersecurity Advisory Practice has engaged with multiple clients globally to evaluate cybersecurity maturity and operational resilience. One such engagement involved CAIXA Cartões, which worked with Visa to prioritize risk management initiatives and assess internal process maturity.
Since its open-source release in June 2026, VVAH has been downloaded by tens of thousands of developers globally. Additionally, Visa has joined broader industry initiatives, contributing VVAH to NVIDIA's Open Secure AI Alliance and collaborating on IBM and Red Hat's Project Lightwell initiative to support secure open-source software practices.
"As artificial intelligence accelerates both threats and defenses, businesses must shift their focus from merely identifying security vulnerabilities to accelerating their remediation timelines. Frameworks that integrate discovery, triage, and validation into a single workflow provide organizations with a practical way to manage operational risks. Strategic collaborations between financial institutions and technology providers remain essential for maintaining digital trust and resilience in complex business environments." — Dr. Shishir Gupta, Founder & CEO, StartupLanes
Recent StartupLanes Articles
Browse through our 30 latest publications on venture capital, startups, and angel investing.