HNHacker News
TopNewBestAskShowJobs

Adeeb0123

5 karma · joined October 15, 2021

submissionscomments
Adeeb0123··on Show HN: I spent 8 months trying to make LLMs Hack
So did this test for one guy (just after launch, cold DM), and found out that his react code could be traversed under /assets - they had somehow put code files in their /public directory while building their app.

Right now, its's only been a month since launch and currently 123+ businesses have used this

Adeeb0123··on [dead]
Hi HN,

For the past three months, I've been developing a tool called Peneterrer. It's an LLM-based system that utilizes a Multi-Agent architecture to identify bugs and security threats in websites. The goal is to create an early iteration of a fully Automated Ethical Hacking tool.

I'm eager to hear your thoughts, feedback, or suggestions on how I can enhance this project.

Adeeb0123··on Show HN: Peneterrer – The ChatGPT for Website Security Testing
Go through The FAQ (that I have added recently) You might find it useful!
Adeeb0123··on Show HN: Peneterrer – The ChatGPT for Website Security Testing
You are right, this is what I did in my first version, but it failed terribly due to context length issues and the fact that SPA applications work by loading JS code, etc.

Currently, for the backend, tools like Nmap, Dirsearch, ZAP, etc., are employed. When a user asks specific queries like 'Check all open ports in my web app,' 'Check security headers of my app,' or simply 'Find all vulnerabilities in my web app,' it writes commands for the above tools, executes them, and provides the answer. This mix-and-match of tools using simple words allows users to create custom workflows that may run weekly, monthly, or fortnightly.