Uploaded March 2026 | Updated September 2026, 2 weeks ago
Check out Pixee here: https://ul.live/pixee_yt
In this episode of Unsupervised Learning, we speak to Arshan Dabirsiaghi, co-founder of Pixee. An AI-powered product security engineer designed to help developers triage and fix code vulnerabilities. Learn how Pixee acts as a "resolution center" that integrates with existing scanners to automatically burn down security backlogs through manageable, targeted pull requests.
What we talk about:
The real AppSec bottleneck:
How the industry has plenty of tools to find vulnerabilities, but struggles with the difficult process of triaging and fixing them.
Building an AI security engineer:
The genesis of Pixee as a "resolution center" that focuses exclusively on automating the triage and remediation steps.
Smarter triage with exploit verification:
How Pixee filters out the high volume of false positives by fuzzing code and deterministically verifying exploits instead of relying solely on AI reasoning.
A vendor-agnostic approach:
Why Pixee chooses to integrate with existing security scanners rather than building its own, saving companies from ripping out their current infrastructure.
Burning down massive backlogs:
How Pixee's "campaign" feature slowly and safely fixes thousands of old vulnerabilities by issuing small, digestible pull requests over time.
00:00 - Introduction and the Problem
01:53 - Background at Contrast Security
04:10 - Lessons Learned and Triage
11:27 - The Lifecycle and Gathering Context
13:44 - Adding Business Context
15:18 - Integrating with Existing Scanners
16:16 - Pixee's Offerings and Roadmap
19:39 - Deploying Pixee at Scale
22:59 - Discovering Existing Security Controls
23:27 - Guardrails and Remediation Campaigns
27:27 - Where to Find Pixee
Subscribe to the newsletter at:
danielmiessler.com/subscribe
Join the UL community at:
danielmiessler.com/upgrade
Follow on X:
https://x.com/danielmiessler
Follow on LinkedIn:
linkedin.com/in/danielmiessler
Check out Pixee here: https://ul.live/pixee_yt
In this episode of Unsupervised Learning, we speak to Arshan Dabirsiaghi, co-founder of Pixee. An AI-powered product security engineer designed to help developers triage and fix code vulnerabilities. Learn how Pixee acts as a "resolution center" that integrates with existing scanners to automatically burn down security backlogs through manageable, targeted pull requests.
What we talk about:
The real AppSec bottleneck:
How the industry has plenty of tools to find vulnerabilities, but struggles with the difficult process of triaging and fixing them.
Building an AI security engineer:
The genesis of Pixee as a "resolution center" that focuses exclusively on automating the triage and remediation steps.
Smarter triage with exploit verification:
How Pixee filters out the high volume of false positives by fuzzing code and deterministically verifying exploits instead of relying solely on AI reasoning.
A vendor-agnostic approach:
Why Pixee chooses to integrate with existing security scanners rather than building its own, saving companies from ripping out their current infrastructure.
Burning down massive backlogs:
How Pixee's "campaign" feature slowly and safely fixes thousands of old vulnerabilities by issuing small, digestible pull requests over time.
00:00 - Introduction and the Problem
01:53 - Background at Contrast Security
04:10 - Lessons Learned and Triage
11:27 - The Lifecycle and Gathering Context
13:44 - Adding Business Context
15:18 - Integrating with Existing Scanners
16:16 - Pixee's Offerings and Roadmap
19:39 - Deploying Pixee at Scale
22:59 - Discovering Existing Security Controls
23:27 - Guardrails and Remediation Campaigns
27:27 - Where to Find Pixee
Subscribe to the newsletter at:
danielmiessler.com/subscribe
Join the UL community at:
danielmiessler.com/upgrade
Follow on X:
https://x.com/danielmiessler
Follow on LinkedIn:
linkedin.com/in/danielmiessler










