
A cybersecurity harness for full-stack LLM-driven penetration testing. Find and fix vulnerabilities autonomously, 24/7. [RESEARCH PREVIEW]
The open-source, self-evolving, multi-model harness for security research.
The Swiss Applied AI & Cybersecurity Research Lab
0.security ·
Documentation ·
FoxGuard
Find novel vulnerabilities in the deepest layers of software. Explore our public disclosures and upstream fixes, including research in the Linux kernel.
Copy this prompt into your coding agent:
Set up the 0.security harness using https://0.security/harness/setup.md and read https://0.security/llms.txt for the documentation index. Confirm my targets and scope before testing, and ask before changing files.
curl -fsSL https://raw.githubusercontent.com/0sec-labs/0/main/install.sh | bash
0
Bring your model access and configure connections in the terminal. Run locally or through the CLI in CI/CD, inspect findings and verification results, and export reports as JSON, Markdown or SARIF.
Setup guide · Research workflows · Documentation
Optimized Model Routing: The best LLM for each step
The managed service adds model routing, non-public frontier cyber models, a purpose-built attack runtime and a curated offensive toolchain. These hosted capabilities are separate from running the open-source harness with your own model access. Explore 0.security.
The world's best security should belong to everyone. Software already writes itself; we believe it should secure itself, too. Our goal is security that finds and fixes vulnerabilities as software changes, so people can focus on what they want to create.
Research comes first. Public disclosures, upstream fixes and reproducible results let people check our work. Open tools let them question it, extend it and build something better. Self-securing software is the future we're working toward.
Read our manifesto · Explore our research
This is a research preview. Coverage and verification depth vary by workflow; inspect the evidence and review generated fixes before applying them. Tool making and evaluated self-improvement are developing research workflows. Only test systems you own or are authorized to assess.
Read CONTRIBUTING.md to build and extend the harness. Report security issues through SECURITY.md.
MIT OR Apache-2.0.