top of page

BLOG
Search


We Pointed an Autonomous AI Pentester at a Deliberately Broken API. It Came Back With a Root Shell
AigentX, our autonomous web-application penetration testing agent, ran black-box against OWASP crAPI and confirmed 35 exploitable findings, 15 of them Critical, including a chain that turns a free signup account into uid=0(root) and a permanently forged admin identity. Every finding below carries a request, a response, and a reproduction. The full report is one click away. 35 Confirmed Findings 15 Critical 11 High 4 Kill Chains 0 False Positives Most “AI found N vulnerabiliti
Komodo Research
21 hours ago3 min read
bottom of page