
DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
Quick access to Multi-Agent deep audit from the homepage
Audit Flow Logs![]() Real-time visibility into agent reasoning and execution |
Smart Dashboard![]() Understand the overall security posture of a project at a glance |
Instant Analysis![]() Paste code or upload files and get results in seconds |
Project Management![]() Import from GitHub/GitLab/Gitea and manage multiple projects together |
One-click export to PDF / Markdown / JSON (the screenshot shows quick mode, not an Agent-mode report)
The internal preview version of DeepAudit performed a deep security audit on the OpenClaw project and has so far discovered 6 security vulnerabilities, all of which were officially confirmed and published as security advisories (GHSA). The issues cover command injection, signature verification bypass, remote code execution, credential exposure, resource exhaustion, and information disclosure, including multiple high-severity findings. More vulnerabilities are still being researched.
| GHSA ID | Project | Popularity | Vulnerability Type | Severity |
|---|---|---|---|---|
| GHSA-g353-mgv3-8pcj | OpenClaw | Signature Verification Bypass | 8.6 | |
| GHSA-99qw-6mr3-36qr | OpenClaw | Code Execution | 8.5 | |
| GHSA-7h7g-x2px-94hj | OpenClaw | Credential Exposure | 6.9 | |
| GHSA-g2f6-pwvx-r275 | OpenClaw | Command Injection | Medium | |
| GHSA-jq3f-vjww-8rq7 | OpenClaw | Resource Exhaustion | High | |
| GHSA-xwcj-hwhf-h378 | OpenClaw | Information Disclosure | Medium |