# Hacktron AI > Hacktron autonomously reviews code, finds vulnerabilities, and writes exploits. Hacktron focuses on exploitability-first security review for pull requests, merge requests, codebases, and products. Use this file as a concise map of the public Hacktron website. For expanded context, use /llms-full.txt. ## Product - [Hacktron AI](https://www.hacktron.ai/): Autonomous application security platform that reviews code, finds vulnerabilities, and writes exploits. - [AI Code Review & SAST for Pull and Merge Requests](https://www.hacktron.ai/pr-review): AI security reviewer for pull and merge requests with codebase context, inline findings in GitHub and GitLab, project-specific learning, automatic resolution, and Krisp and Zellify customer evidence. - [AI SAST: Exploit-Aware Static Analysis](https://www.hacktron.ai/solutions/ai-sast): AI SAST that reasons about code in context and validates each finding with a proof-of-concept exploit, reducing false positives and catching business-logic flaws. - [Security Workflow Automations](https://www.hacktron.ai/automations): Connect security triggers to actions and notifications. Remediate can automatically verify and remediate every matching finding, prepare a review-ready change for real issues, and record false-positive or no-change decisions. Each organization receives a one-time allocation of 5000 free credits. - [AI White-box Penetration Testing as a Service](https://www.hacktron.ai/pentests): Hacktron Whitebox pentests with code-aware analysis, validated findings, researcher review, a Yoto customer testimonial, and audit-ready reports for SOC 2 and ISO 27001. - [Dependency Scanner](https://www.hacktron.ai/package): Scan package-lock.json, pnpm-lock.yaml, yarn.lock, uv.lock, and poetry.lock files against 21,000+ known malware advisories instantly. - [Open Source Program](https://www.hacktron.ai/open-source): Free Hacktron PR and MR security reviews for qualifying open source projects. - [Customer Stories](https://www.hacktron.ai/customer-stories): Customer stories from teams using Hacktron for security code reviews. - [Security Advisories](https://www.hacktron.ai/advisories): Coordinated disclosures and vulnerability advisories discovered by Hacktron researchers, with Supabase customer evidence for Hacktron security research. - [Security Changelog](https://www.hacktron.ai/security-changelog): Security-only changelog for framework vulnerability fixes, affected versions, fixed versions, CVEs, workarounds, and upstream advisories. - [Blog](https://www.hacktron.ai/blog): Security research, exploit writeups, product updates, and offensive security analysis from Hacktron. ## Research - [Here’s How an OpenAI Model Went Rogue and Hacked Hugging Face](https://www.hacktron.ai/blog/here-is-how-openai-model-hacked-huggingface): 2026-07-23. OpenAI and Hugging Face probably won’t tell us exactly how the whole incident unfolded. But using publicly available data, we can reconstruct what likely happened. - [Could Modern Code Review Have Prevented wp2shell?](https://www.hacktron.ai/blog/wp2shell): 2026-07-19. We recreated the WordPress pull requests behind CVE-2026-63030 and CVE-2026-60137 to test whether today's code reviewers and SAST tools would catch both vulnerabilities. - [Breaking Into PostHog Prod Database](https://www.hacktron.ai/blog/posthog-rce): 2026-07-15. Escalating a Hacktron finding into a PostHog production RCE using Claude, and challenging open-weight models to write the same V8 exploit. - [Watching GPT-5.6 Sol Ultra Write a Chrome Exploit: Exploit Development as We Know It Is Dead](https://www.hacktron.ai/blog/watching-gpt-55-sol-ultra-write-a-chrome-exploit-exploit-development-as-we-know-it-is-over): 2026-07-14. We benchmarked the latest frontier models, GPT-5.6 Sol Medium, Sol Ultra, and Grok 4.5, on their exploit-development capabilities. After processing 2.096 billion tokens, Sol Ultra was the only model to produce a complete exploit chain. - [GLM and DeepSeek Are Catching Frontier Models at Finding Vulnerabilities](https://www.hacktron.ai/blog/open-weight-models-vs-frontier-models): 2026-07-08. We benchmarked GLM, DeepSeek, Kimi, and MiniMax against GPT, Claude, Gemini, and Opus on 15 real vulnerabilities patched in Fider, an open-source Go and React app. Frontier models still lead, but open-weight models are closing the gap fast. - [Metabase Cloud: The winner takes it all](https://www.hacktron.ai/blog/metabase-cloud): 2026-06-25. We could have pwned every Metabase Cloud tenant by chaining an H2 INIT sanitizer bypass into RCE, then cloud misconfigurations into a full multi-tenant cluster compromise. - [The Attack Surface Is Everyone Now](https://www.hacktron.ai/blog/the-attack-surface-is-everyone-now): 2026-06-09. Why AI is broadening the attack surface across OSS, new SaaS, and fast-shipping teams, and how to position yourself with an assume-breach mindset. - [Hacktron's $350 Pentest vs XBOW and Aikido at $4,000](https://www.hacktron.ai/blog/hacktron-vs-xbow-and-aikido): 2026-06-05. We ran the same scan Doyensec used to test XBOW and Aikido, for a tenth of the price. Here's how our $350 AI pentest compared. - [When Your VPN Opens Your Private Network to the Public](https://www.hacktron.ai/blog/cve-2026-0265-panos-globalprotect-cas-auth-bypass): 2026-05-20. How AI-assisted reverse engineering of stripped PAN-OS binaries led to finding a JWT algorithm confusion vulnerability in GlobalProtect's Cloud Authentication Service, enabling full VPN auth bypass with just a username. - [RCE in VSCode Copilot Chat](https://www.hacktron.ai/blog/rce-in-vscode-copilot): 2026-05-13. Copilot agent mode is vulnerable to a prompt injection attack. If a repository maintainer clicks 'code with agent mode' on an issue, it will open a new codespace and copilot will automatically run the issue's description. - [Hacktron Review for Open Source](https://www.hacktron.ai/blog/hacktron-review-for-open-source): 2026-05-08. We are opening up Hacktron Review for Open Source, giving qualifying maintainers free PR security reviews with inline findings, auto-resolution, and project-specific learning. - [$170k in Bypasses: The Vercel React2Shell Challenge](https://www.hacktron.ai/blog/react2shell-vercel-waf-bypass): 2026-05-04. Working with Vercel Team to Keep the Internet Secure from React2Shell ## Customer Stories - [How Hacktron provides 24/7 security for Rocket.Chat](https://www.hacktron.ai/customer-stories/rocketchat): How Rocket.Chat found and fixed critical security vulnerabiltiies within days of integrating Hacktron. - [Why Krisp chose Hacktron for security code reviews](https://www.hacktron.ai/customer-stories/krisp): How Krisp's security team achieved high-signal vulnerability detection without slowing down engineering teams. ## Security Review Guides - [Best automated security testing tools for pull requests in 2026](https://www.hacktron.ai/blog/best-automated-security-testing): Compare automated security testing tools that integrate with pull requests for inline findings, exploitability validation, and developer-ready fixes. - [Hacktron vs Snyk: Which Catches More in a Pull Request in 2026](https://www.hacktron.ai/blog/hacktron-vs-snyk-pr-review): Compare Hacktron and Snyk for pull request security review, including dependency scanning, SAST coverage, exploitability reasoning, false positives, and workflow fit. - [AI code review for security: what actually matters before merge](https://www.hacktron.ai/blog/ai-code-review-for-security): How to evaluate AI code review for security, why general review comments are not enough, and how PR-native security review catches risky changes earlier. - [Securing AI-generated code before it merges](https://www.hacktron.ai/blog/ai-generated-code-security-risks): A practical guide to AI-generated code security risks, including auth mistakes, prompt injection paths, unsafe dependencies, and PR review guardrails. - [AI SAST: code analysis that reviews exploitability, not just patterns](https://www.hacktron.ai/blog/ai-sast): A practical guide to AI SAST, traditional SAST blind spots, and how Hacktron reviews pull requests for exploitable security issues. - [AI SAST vs traditional SAST: what changes in security review](https://www.hacktron.ai/blog/ai-sast-vs-traditional-sast): Compare AI SAST and traditional SAST across rule coverage, exploitability reasoning, business logic bugs, pull request review, and remediation workflow. - [AI security review for modern software teams](https://www.hacktron.ai/blog/ai-security-review): A practical explanation of AI security review, where it fits in AppSec, and why exploitability-focused pull request review is different from scanner triage. - [Top Aikido alternatives for developer security in 2026](https://www.hacktron.ai/blog/aikido-alternative): A practical list of Aikido alternatives for teams comparing PR security review, AI SAST, broad AppSec coverage, SCA, and developer-friendly workflows. - [Top 10 AI-powered SAST tools for AppSec teams in 2026](https://www.hacktron.ai/blog/best-ai-sast-tools): Compare AI-powered SAST tools for PR security review, semantic analysis, autofix, exploitability triage, and traditional scanner coverage. - [Best PR security review tools for engineering teams in 2026](https://www.hacktron.ai/blog/best-pr-security-review-tools): Compare PR security review tools for inline findings, AI code review, SAST checks, exploitability reasoning, and developer-ready fixes. - [Top CodeRabbit alternatives for security-focused PR review in 2026](https://www.hacktron.ai/blog/coderabbit-alternative): A practical list of CodeRabbit alternatives for teams comparing AI code review, PR security review, full-codebase context, and exploitable findings. - [Top Greptile alternatives for AI security review in 2026](https://www.hacktron.ai/blog/greptile-alternative): A list of Greptile alternatives for teams comparing repository-aware AI code review, PR security review, AI SAST, and exploitability-focused findings. - [IaC security review for pull requests](https://www.hacktron.ai/blog/iac-security-code-review): How to review Terraform, GitHub Actions, cloud permissions, and infrastructure-as-code changes for security before they reach production. - [PR security review: catching vulnerabilities before merge](https://www.hacktron.ai/blog/pr-review-for-security): Why pull requests are the best place to review security-sensitive code, and how Hacktron turns PR review into a practical AppSec workflow. - [SAST vs DAST vs PR security review](https://www.hacktron.ai/blog/sast-vs-dast-vs-pr-security-review): Compare SAST, DAST, and PR security review, including where each fits, what each misses, and how to catch exploitable issues before merge. - [How to secure AI coding agents before they ship vulnerable code](https://www.hacktron.ai/blog/secure-ai-coding-agents): A practical guide to securing AI coding agents with dependency controls, secrets checks, PR security review, prompt injection review, and project rules. - [Top Semgrep alternatives for AppSec teams in 2026](https://www.hacktron.ai/blog/semgrep-alternative): A list of Semgrep alternatives for teams comparing AI SAST, PR security review, CodeQL, enterprise SAST, and tools that go beyond pattern matching. - [Top Snyk alternatives for PR security review in 2026](https://www.hacktron.ai/blog/snyk-alternative): A practical list of Snyk alternatives for teams that need higher-signal PR security review, AI SAST, exploitability context, and developer-ready fixes. ## Advisories - [HTAI-017: Palo Alto Networks - JWT algorithm confusion in GlobalProtect CAS enables VPN auth bypass](https://www.hacktron.ai/advisories): high Auth Bypass; CVE-2026-0265. PAN-OS GlobalProtect deployments using the Cloud Authentication Service (CAS) accept inbound JWTs signed with HS256 using the public CAS token-signing certificate as the HMAC key — classic algorithm confusion. An attacker who can retrieve the public token-signer certificate (reachable via the CAS metadata endpoint using any valid device mTLS cert) can forge tokens for arbitrary users, achieving full VPN authentication bypass with only the target's username. - [HTAI-014: Next.js - XSS in App Router applications using CSP nonces](https://www.hacktron.ai/advisories): high XSS; CVE-2026-44581. App Router applications using CSP nonces deployed behind shared caches are vulnerable to stored XSS. Malformed nonce values derived from request headers can be reflected into rendered HTML, allowing an attacker to poison cached responses and execute script for later visitors. - [HTAI-013: Next.js - SSRF in applications using WebSocket upgrades](https://www.hacktron.ai/advisories): high SSRF; CVE-2026-44578. Self-hosted Next.js apps using the built-in Node.js server are vulnerable to SSRF via crafted WebSocket upgrade requests. An unauthenticated attacker can cause the server to issue an internal HTTP request to any reachable host/port — including cloud metadata endpoints (AWS IMDSv1, GCP, Azure, OCI) — and read the response. Vercel-hosted deployments are unaffected. - [HTAI-009: Next.js - Middleware / Proxy bypass via dynamic route parameter injection](https://www.hacktron.ai/advisories): high Auth Bypass; CVE-2026-44574. Specially crafted query parameters can alter the dynamic route value seen by the page while leaving the visible path unchanged, allowing protected content to be rendered without passing the expected middleware check. Applications relying on middleware to authorize dynamic routes can be bypassed. - [HTAI-008: OAuth2 Proxy - Health Check User-Agent Matching Bypasses Authentication in auth_request Mode](https://www.hacktron.ai/advisories): critical Auth Bypass; CVE-2026-34457. When oauth2-proxy is used in auth_request integrations with --ping-user-agent or --gcp-healthchecks enabled, any request bearing the configured health check User-Agent bypasses authentication regardless of the requested path. - [HTAI-007: OAuth2 Proxy - Authentication Bypass via X-Forwarded-Uri Header Spoofing](https://www.hacktron.ai/advisories): critical Auth Bypass; CVE-2026-40575. When oauth2-proxy is configured with --reverse-proxy and skip_auth_routes, it may trust a client-supplied X-Forwarded-Uri header, allowing an unauthenticated attacker to spoof the header and bypass authentication on protected routes. - [HTAI-006: OAuth2 Proxy - Authentication Bypass via Fragment Confusion in skip_auth_routes](https://www.hacktron.ai/advisories): high Auth Bypass; CVE-2026-41059. A configuration-dependent authentication bypass in oauth2-proxy where an attacker can use a # fragment in the request path to widen skip_auth_routes or skip_auth_regex patterns, causing oauth2-proxy to match a public allowlist rule while the backend routes to a protected resource. - [HTAI-005: JetBrains - YouTrack Sandbox Bypass Allowing Code Execution](https://www.hacktron.ai/advisories): high RCE; CVE-2026-33392. A sandbox bypass vulnerability in YouTrack allows an attacker with administrator-level permissions to execute arbitrary code. On YouTrack Cloud, this could bypass cross-tenant isolation boundaries for tenants sharing the same hardware. - [HTAI-003: OpenAM - Pre-Authentication Remote Code Execution via jato.clientSession Deserialization in OpenAM](https://www.hacktron.ai/advisories): critical RCE; CVE-2026-33439. Pre-Authentication Remote Code Execution via jato.clientSession Deserialization in OpenAM. - [HTAI-002: Metabase - Authenticated RCE and Arbitrary File Read via EE Serialization Import in Metabase](https://www.hacktron.ai/advisories): high RCE; CVE-2026-33725. Authenticated users on Metabase Enterprise Edition can achieve Remote Code Execution (RCE) and Arbitrary File Read through the EE Serialization Import endpoint. - [HTAI-001: BeyondTrust - Pre-Auth RCE in BeyondTrust Remote Support & PRA](https://www.hacktron.ai/advisories): critical RCE; CVE-2026-1731. Pre-Authentication Remote Code Execution via deserialization vulnerability in BeyondTrust Remote Support and Privileged Remote Access (PRA) products. ## Security Changelogs - [Next.js Security Changelog](https://www.hacktron.ai/security-changelog/nextjs): 61 security fixes tracked from GitHub repository security advisories. - [Nuxt Security Changelog](https://www.hacktron.ai/security-changelog/nuxt): 21 security fixes tracked from GitHub repository security advisories. - [Astro Security Changelog](https://www.hacktron.ai/security-changelog/astro): 25 security fixes tracked from GitHub repository security advisories. - [Vite Security Changelog](https://www.hacktron.ai/security-changelog/vite): 22 security fixes tracked from GitHub repository security advisories. ## Comparisons - [Hacktron vs Snyk](https://www.hacktron.ai/comparison/hacktron-vs-snyk): Comparison of Hacktron and Snyk for application security. - [Hacktron vs Semgrep](https://www.hacktron.ai/comparison/hacktron-vs-semgrep): Comparison of Hacktron and Semgrep for code security review. - [Hacktron vs CodeRabbit](https://www.hacktron.ai/comparison/hacktron-vs-coderabbit): Comparison of Hacktron and CodeRabbit for pull request and merge request review. - [Hacktron vs Aikido](https://www.hacktron.ai/comparison/hacktron-vs-aikido): Comparison of Hacktron and Aikido for application security workflows. - [Hacktron vs Greptile](https://www.hacktron.ai/comparison/hacktron-vs-greptile): Comparison of Hacktron and Greptile for AI-assisted code review. ## Actions - [Docs](https://docs.hacktron.ai): Product documentation for installing and using Hacktron. - [Start free trial](https://app.hacktron.ai): Create a Hacktron account and start a trial. - [Book a call](https://www.hacktron.ai/calendar): Schedule a call with the Hacktron team. - [RSS](https://www.hacktron.ai/rss.xml): RSS feed for Hacktron research and product posts. - [Sitemap](https://www.hacktron.ai/sitemap-index.xml): XML sitemap for the public website. ## Optional - [Authors](https://www.hacktron.ai/authors): Author profiles for Hacktron research posts. - [Tags](https://www.hacktron.ai/tags): Blog tag index. - [Team](https://www.hacktron.ai/team): Leadership and team information. - [Privacy Policy](https://www.hacktron.ai/privacy-policy): Privacy policy for Hacktron AI Inc. websites, applications, and related services. - [Hacktron Terms of Use](https://www.hacktron.ai/terms-of-service): Terms of use governing access to Hacktron AI Inc. websites and website content. - [Master Services Agreement](https://www.hacktron.ai/master-services-agreement): Master Services Agreement governing Hacktron service orders and subscriptions. - [Service Level Agreement](https://www.hacktron.ai/service-level-agreement): Service Level Agreement for Hacktron availability commitments, credits, and claims. - [Cookie Notice](https://www.hacktron.ai/cookie-notice): Cookie notice for Hacktron websites and related services.