I pointed my CVE pipeline at 1,500 GitLab servers. It found 31 vulns
AI writes and validates its own CVE exploits nightly, finding 31 verified vulnerabilities.

Dual-container testing validates exploits against vulnerable and patched instances before deployment.
Security engineers, solo security tool founders
Snyk · Tenable · Rapid7
AI writes and validates its own CVE exploits nightly, finding 31 verified vulnerabilities.
Think “Snyk for MCP configs”: Levenshtein-based typosquat detection, CVE lookups, hardcoded-credential scans and permission checks, plus CI-friendly exit codes. Auto-discovery for clients like Claude, Cursor and VS Code shows practical attention to workflows. It’s an early release — the value hinges on maintaining the package/CVE databases and tuning detection heuristics.
Actually spins up Docker to exploit findings instead of just flagging them.
Hardening scanner for OpenClaw, but only useful if you're already deploying OpenClaw.
Sentry-to-PR pipeline writes failing tests first, then fixes the bug.
Correlates AWS findings into attack chains with Terraform fix scripts.