Ridge Security Joins Anthropic’s Cyber Verification Program 

by | Jul 28, 2026 | How are collaborative AI agents (Agentic AI) reshaping offensive security?

We’re pleased to share that Ridge Security has been accepted into Anthropic’s Cyber Verification Program (CVP), an application-based program that gives approved cybersecurity teams structured access to Claude’s full dual-use capabilities for legitimate security research. Ridge Security was verified in May 2026, giving the research team behind RidgeGen, our agentic AI framework, adjusted access to the vulnerability exploitation and offensive tooling work that Claude restricts by default. 

What Is the CVP? 

Anthropic builds real-time safeguards into its most capable Claude models that block high-risk dual-use activity by default, including vulnerability exploitation, offensive tooling development, and attack-path modeling, even when the intent behind the work is defensive. The CVP is how Anthropic opens that door for organizations that have earned it: an application and review process, not a partnership or co-marketing arrangement. Anthropic looks at who’s applying, what they build, and how they intend to use the access, then grants clearance accordingly. Prohibited-use categories, such as mass exfiltration tooling and ransomware development, remain blocked regardless of verification status. 

For an offensive security company, that clearance is the difference between describing an attack and actually validating one. 

Why This Matters for Our Research 

RidgeGen is the agentic offensive security validation platform. It operates as a multi-agent ecosystem, coordinating reconnaissance, exploit chaining, and dynamic threat modeling across IT, OT, and AI infrastructure, including large language models and Windows Active Directory environments. Ridge Security’s core promise to customers is zero-false-positive validation: every finding is confirmed exploitable using real proof-of-concept code, not just flagged by a scanner. 

That validation work depends on reasoning through how a vulnerability actually gets exploited in a target environment, exactly the category of activity Claude blocks by default for unverified users. With CVP-adjusted access, our research team can continue to: 

  • Develop and refine exploit chains that reflect real attacker technique, strengthening RidgeGen’s proof-of-concept validation across hosts, networks, applications, and APIs. 
  • Extend testing depth against AI infrastructure and LLM-based systems, an attack surface where exploitation techniques are evolving as quickly as the models themselves. 

What This Means for Our Customers 

The CVP is a research enabler, not a product feature. Customers continue to interact with Ridge Security products, not with the underlying model access. But the benefits compound downstream: 

  • Faster, more accurate exploit validation, keeping pace with attacker tooling that operates under no equivalent safeguards. 
  • Continued zero-false-positive proof-of-concept exploitation, the standard our customers already rely on. 
  • Deeper coverage of emerging attack surfaces, including AI and LLM infrastructure, as adversaries begin targeting the same systems organizations are rushing to deploy. 

The Bottom Line 

Attackers are already using frontier AI models without any of the restrictions Claude applies by default. Acceptance into Anthropic’s Cyber Verification Program means our research can close that gap legitimately, feeding directly into the exploit validation, adversary emulation, and continuous risk validation that Ridge Security delivers to customers every day.