Your self-improving
cybersecurity team.

Research Preview

Maintained by the Swiss Applied AI & Cybersecurity Research Lab.

Paste into your coding agent

  • Cursor
  • Claude Code
  • Codex
  • Gemini CLI
  • GitHub Copilot
  • OpenCode
Install the open-source 0sec security CLI and use it in this project. 1. Install it: curl -fsSL https://raw.githubusercontent.com/0sec-labs/0sec/main/install.sh | bash 2. Verify it: 0 --help 3. Read https://0.security/llms.txt to learn its commands, then run it directly. For example: 0 review . or 0 scan --target <url> --scope ./scope.json. Add --format sarif for machine-readable output.
Docs

The Swiss Army knife for offensive security.

Built to be extensible. Create and add your own tools as you go.

  1. NetworkIdentity, AD, cloud and federation
  2. Web applicationsSQLi, IDOR, XSS, SSRF, auth bypass
  3. APIsTenant isolation, BOLA, business-logic abuse
  4. AI & LLMsPrompt injection, jailbreaks, MCP tool abuse
  5. Source codeInjection, auth, deserialization, memory safety
  6. DependenciesSupply chain, malicious packages, CVE replay
  7. RuntimeContainer escape, sandbox and VM boundaries
  8. Operating systemPrivilege escalation, service and library flaws
  9. Kernel0-day hunt into the layer beneath it all
Pentest a web app, AI/LLM endpoint, or MCP serverblack-boxwhite-box
scanevalagent-assure
Review source, packages, C/C++, or a kernel treewhite-box
reviewfile-reviewdeep-reviewaudit
Recon an attack surfaceblack-box
reconjs-reconnpm-discoveryintel
Hunt a bug class or kernel variantswhite-box
huntkernelcve
Work with the evidence a run produced
findingshistoryresumereplayverifytimelinedisclose
Generate and re-test a source fixwhite-box
fix
Assess identity and AD posture, read-only and offline
identityadgraphentragraph
Analyze a compiled binary, no sourceblack-box
0verse
Integrate it
mcp-serverconsoletuidashboard

It has to work twice.

A blind verification agent re-exploits every finding. What it can't reproduce never ships.

Free-form agents, hard guardrails

The models decide what to probe. Turn budgets, loop detection, and scope on every call keep them in line.

Reproduce before trust

A blind agent re-exploits each finding from the PoC alone. What it can't reproduce is dropped.

Triage before verify

Class oracles and a second scanner cut the noise before the expensive step runs.

Bring your own model

Anthropic, OpenAI, Azure, OpenRouter, or local. You hold the key.

Run it your way.

Foxguard

Open-source first-pass scanner for your own codebase.

0sec harness

The full agentic engine and CLI. Self-hosted, on your own targets.

0cloud

The same engine, run for you. Isolated sandboxes, scheduling, evidence handling.

Running this across a whole company?

Work directly with our team to install and set up 0sec in your environment.