正在加载视频...

视频加载失败

📣 VS Code Go v0.37.0 is released! 🎉 ✨This includes new analysis features that report known vulnerabilities in your dependencies.🕵️ ✏️ Release Note: 🙏Feedback on vulncheck: ☝️File bugs: #VSCodeGo

100,788 次观看 • 3 年前 •via X (Twitter)

0 条评论

暂无评论

原始帖子的评论将显示在这里

相关视频

Holy shit... Keygraph just built an AI that hacks your web app before hackers do. It's called Shannon and it's a fully autonomous AI pentester that finds REAL exploits, not just alerts. 96.15% success rate on the hint-free XBOW Benchmark. Your team ships code every day with Claude Code and Cursor. Your pentest? Once a year. That's 364 days of shipping vulnerabilities to production. Shannon closes that gap. What it actually does: → Autonomously hunts attack vectors in your source code → Uses a built-in browser to execute real exploits → Handles 2FA/TOTP logins with zero intervention → Delivers copy-paste Proof-of-Concepts (no false positives) → Runs Nmap, Subfinder, WhatWeb, Schemathesis under the hood Real results on OWASP Juice Shop in a single run: → 20+ high-impact vulnerabilities found → Complete auth bypass + full database exfiltration → Privilege escalation to admin via registration bypass → SSRF enabling internal network recon → Systemic IDOR across user data The architecture is what makes it work. 4 phases: Recon → Vuln Analysis → Exploitation → Reporting Specialized agents run in parallel for Injection, XSS, SSRF, and Broken Auth. Strict "No Exploit, No Report" policy kills false positives at the source. Covers the critical OWASP classes: - Injection - XSS - SSRF - Broken Authentication & Authorization One command. ~1 hour runtime. ~$50 per full pentest with Claude Sonnet. Every Claude (coder) deserves their Shannon. The Red Team to your vibe-coding Blue Team. 100% Opensource (AGPL-3.0). 10.6k stars already. Repo in reply ↓

Guri Singh

20,591 次观看 • 4 个月前