AI hackers
for enterprise.

We're a Swissapplied research lab, rebuilding cybersecurity for the age of AI.

Member of the cybersecurity programs of

AnthropicOpenAIMicrosoft

We built an army of AI hackers.

They run continuously, finding real vulnerabilities across open source software, operating systems and programming languages, all reviewed by top engineers at

Google Meta IBM NVIDIA Intel Red Hat AMD Qualcomm Cisco Arm Broadcom Ericsson NXP SUSE Citrix Alibaba

Vulnerabilities we've fixed run on 3,583,446,281 installations.

Arbitrary code execution via crafted expressions
jsonata Critical
IBM Reviewed by engineers at IBM GHSA-8gq3-vp5j-2grp
Cross-tenant agent API-token minting
@paperclipai/server Critical
GHSA-47wq-cj9q-wpmp
Slab use-after-free in AEAD decrypt completion
Linux kernel · TIPC High
Intel Reviewed by engineers at Intel Ericsson Reviewed by engineers at Ericsson Red Hat Reviewed by engineers at Red Hat Meta Reviewed by engineers at Meta Google Reviewed by engineers at Google CVE-2026-63801
Memory corruption in 802.15.4 llsec decrypt
Linux kernel · mac802154 High
Intel Reviewed by engineers at Intel Red Hat Reviewed by engineers at Red Hat CVE-2026-63831
Use-after-free in MACsec offload RX
Linux kernel · mlx5e High
NVIDIA Reviewed by engineers at NVIDIA Red Hat Reviewed by engineers at Red Hat Google Reviewed by engineers at Google Meta Reviewed by engineers at Meta Merged upstream
Use-after-free in LE Audio CIG/CIS setup
Linux kernel · Bluetooth High
Intel Reviewed by engineers at Intel CVE-2026-63944
Read our research

Infrastructure for global enterprises and defense teams.

Runs in your environment

We host the models on your tenant or fully on-prem, so your targets and findings never leave your infrastructure.

Integrated into your systems

It runs continuously as your code changes, wired into CI/CD, on release, or custom automations we set up with you.

Not an insurance company

Every vulnerability is proven first, rebuilt autonomously in a clean sandbox before it reaches your team.

Frequently asked questions.

What do you test? +

The whole stack. The Linux kernel and operating systems, systems and application code, open-source packages, web apps, and the AI systems shipping inside products. Most tools only look at one layer.

Is it autonomous? +

Yes. The engine finds, exploits, and verifies on its own, around the clock. A human reviews what it produces before it reaches you.

How is this different from a scanner? +

Scanners flag maybe-bugs from known patterns. We find novel ones and prove them with a working exploit, so you get what actually breaks, not a list to triage.

Can you run this against production? +

Only inside a scope you set first, with an allowlist of hosts and paths, a rate limit, and a kill switch you control. If production isn't the right place, we run against a staging copy.

What happens to our data? +

It stays isolated to your org, never touches another customer, and never trains anyone's model. Hosted on-prem, it never leaves your infrastructure.

Can we use this for SOC 2 or ISO 27001? +

As supporting evidence, yes. Every finding comes with its proof and full trace, so your reviewers can check the work. We don't sell a compliance certificate.

What does it cost? +

No public price list. It's per engagement, based on what you want tested and how often. We're in private release.

Get in touch.

Tell us what you want tested. We'll scope it with you before anything runs.