
dreadnode
@dreadnode • 2,902 subscribers
Where security agents run. AI infrastructure to build, evaluate, and deploy with confidence.
Videos

Real offensive cyber capability shows up in long-horizon, multi-host, repeatable evals. The kind we rarely see running at scale. Claude Opus 4.6 + our network ops agent compromised an entire GOAD variant Windows AD environment (DreadGOAD) in 54 minutes, with one simple prompt, and $244 in tokens. The specs: 📊 DreadGOAD variant-1 · 3 domains · 5 hosts · 30 credentials · random user data, not in training set 💻 Claude Opus 4.6 🛠️ Dreadnode Network-Ops 🕓 54.5 min · 🪙 48.52M tokens · 💰 $244.02 Mythos has been in the spotlight for its cyber capabilities, but other models are competitive too. You just need the right scaffolding and eval infrastructure. Run the network ops agent now in the Dreadnode platform. Use any model. No code required. Sign up or log in and get started for free at
dreadnode17,044 Aufrufe • vor 2 Monaten

In less than 20 minutes and under $2, we used our .NET reversing capability to run a SAST scan of Azure Cosmos DB in the Microsoft Container Registry (MCR), surfacing a high severity vulnerability in the now-deprecated database. 🆕 Model: Moonshot AI - Kimi K2.6 ⏱️ Task/agent runtime: 19 mins 26 secs 🪙 Tokens: ↑ 3124.0k · ↓ 33.3k 💰 Cost: $1.97 Vulnerability Overview: When using managed identity auth, it calls an internal token service over HTTPS, but the TLS certificate validation callback is tautological — it checks if the server cert's thumbprint matches any cert in the chain, but the leaf cert is always in its own chain, so it always passes. Watch the video to see how we ran it within our TUI. Install Dreadnode and try out the .NET reversing capability: ➡️docs: ➡️command:
dreadnode12,685 Aufrufe • vor 3 Monaten

NEW open source tool from Dreadnode's Simone Margaritelli and Ads Dawson: dyana, an eBFP sandbox environment designed to load, run, and profile a wide range of files and provide dynamic testing for AI models. ‼️ Supports a variety of files including, machine learning models, ELFs, Pickle, Javascript and more. ‼️ Provides detailed insights into GPU memory usage, filesystem interactions, network requests, and security related events. ‼️ Leverages eBFP for lightweight, comprehensive monitoring… not outdated malware sandboxes (!!) ‼️ Gain confidence in your model security before deployment, prevent supply chain attacks, and build a comprehensive ‘bill of materials’ for your AI models (see: CycloneDX ML-BOM). You know the drill - try it out:
dreadnode37,119 Aufrufe • vor 1 Jahr
Keine weiteren Inhalte verfügbar