Show HN: Xbow raised $117M to build AI hackers, I open-sourced it for free

https://news.ycombinator.com/rss Hits: 1
Summary

Strix Open-source AI hackers for your apps โšก Use it to hack your apps before the bad guys do โšก ๐Ÿฆ‰ Strix Overview Strix are autonomous AI agents that act just like real hackers - they run your code dynamically, find vulnerabilities, and validate them through actual exploitation. Built for developers and security teams who need fast, accurate security testing without the overhead of manual pentesting or the false positives of static analysis tools. ๐Ÿš€ Quick Start # Install pipx install strix-agent # Configure AI provider export STRIX_LLM= " openai/gpt-5 " export LLM_API_KEY= " your-api-key " # Run security assessment strix --target ./app-directory Why Use Strix Full Hacker Arsenal - All the tools a professional hacker needs, built into the agents - All the tools a professional hacker needs, built into the agents Real Validation - Dynamic testing and actual exploitation, thus much fewer false positives - Dynamic testing and actual exploitation, thus much fewer false positives Developer-First - Seamlessly integrates into existing development workflows - Seamlessly integrates into existing development workflows Auto-Fix & Reporting - Automated patching with detailed remediation and security reports โœจ Features ๐Ÿ› ๏ธ Agentic Security Tools ๐Ÿ”Œ Full HTTP Proxy - Full request/response manipulation and analysis - Full request/response manipulation and analysis ๐ŸŒ Browser Automation - Multi-tab browser for testing of XSS, CSRF, auth flows - Multi-tab browser for testing of XSS, CSRF, auth flows ๐Ÿ’ป Terminal Environments - Interactive shells for command execution and testing - Interactive shells for command execution and testing ๐Ÿ Python Runtime - Custom exploit development and validation - Custom exploit development and validation ๐Ÿ” Reconnaissance - Automated OSINT and attack surface mapping - Automated OSINT and attack surface mapping ๐Ÿ“ Code Analysis - Static and dynamic analysis capabilities - Static and dynamic analysis capabilities ๐Ÿ“ Knowledge Management - Structured findings and at...

First seen: 2025-08-18 21:47

Last seen: 2025-08-18 21:47