ProjectDiscoveryProjectDiscovery Logo
AI PentestingPR Security ReviewThreat ModelingVulnerability RemediationExposure AnalysisTriage
Open Source▾
NucleiNuclei TemplatesSubfinderHTTPxNaabuVulnX
Pricing
Resources▾
DocumentationBlogWhitepapersWebinarsResearchEventsPrograms
Talk to an expert
NeoCloud

Resource hub

Oh My Rogue Agent
IndustryResearchNeo

Oh My Rogue Agent

Yesterday, Hugging Face came out saying they'd detected an AI autonomous-agent-powered cyberattack and that they had to use open-source models to actually investigate and remediate it. Later we heard from OpenAI that their agent was responsible; it happened during an ExploitGym eval, and the agent just drifted off the goal. It escaped the sandbox, reached OpenAI Research Environment, got access to internet, and hacked Hugging Face production environment trying to find the solution for the benchm

Footer

ProjectDiscovery Logo
SOC2 Compliant LogoRSABlackhatG2

Solutions

  • AI Pentesting
  • PR Security Review
  • Threat Modeling
  • Vulnerability Remediation
  • Exposure Analysis
  • Triage

Open Source

  • Nuclei
  • Nuclei Templates
  • Subfinder
  • HTTPx
  • Naabu
  • VulnX
  • All tools

Resources

  • Blog
  • Whitepapers
  • Webinars
  • Research
  • Events
  • Programs

Documentation

  • PDCP Platform
  • PDCP APIs
  • Neo Platform
  • Neo APIs

Company

  • Security
  • Privacy
  • Terms
  • Contact
DiscordGitHubXLinkedInYouTube

©2026 ProjectDiscovery, Inc.

Do Not Sell or Share My Personal Information

We value your privacy

We use tools on this site to collect and record your data (e.g., your searches), which we and our vendors may use to provide, improve, and personalize our offerings, make recommendations, and for analytics and marketing. Some of these tools identify visitors and link website activity to business contact and company information so we can better understand interest in our services and tailor our outreach. We may share your data with third parties, such as advertising vendors, social media companies, and research partners, which may be "targeted advertising," "selling," or "sharing" under applicable privacy laws. Continuing to browse our site means you accept these terms and our Privacy Policy. To opt out, click the Your Privacy Choices link in the footer.

Build It or Buy It? An Evidence-Based Framework for AI Security Testing
WhitepaperNeoAI Security

Build It or Buy It? An Evidence-Based Framework for AI Security Testing

LLMs can detect vulnerabilities. But can your DIY solution validate, scale, and survive a team transition? Download the whitepaper to find out when building makes sense and when it doesn't.

State of AppSec 2026: Security at Engineering Speed
WhitepaperApplication Security

State of AppSec 2026: Security at Engineering Speed

AI accelerated delivery. AppSec architecture didn't. Download the State of AppSec 2026 report to learn why scan-and-report hit a ceiling; and what comes next.

The State of Attack Surface Management 2026
WhitepaperAttack Surface

The State of Attack Surface Management 2026

AI adversaries now operate at machine speed. Traditional ASM tools can't keep up. This whitepaper breaks down why the old methods fail, and what defenders must do next.