EN
返回档案库

档案库 · 开发与企业工具 · 产品决策 · 2018–2026

VXControl的PentAGI赌注:MIT许可的“自主红队”登顶GitHub趋势榜,获18.5k星

VXControl押注AI代理能端到端运行渗透测试,将13代理的PentAGI以MIT许可开源——免费,而竞争对手收费每年5万美元以上。

VXControl

它在赌什么AI代理能够端到端运行渗透测试——侦察、利用、报告——因此VXControl将其多代理系统以MIT许可开源,以证明自主性的价值。已上线

做的是什么生意

VXControl builds PentAGI, an open-source, self-hosted penetration-testing platform where 13+ specialized AI agents (orchestrator, searcher, coder, pentester, adviser, reflector and more) collaborate to scan, exploit and report on authorized targets, integrating 20+ security tools and 12+ LLM providers.

起因

VXControl, founded in 2018 and based in Dubai per Runa Capital, started PentAGI in early 2025 as a GitHub security-tools organization betting that multi-agent AI could automate complex penetration tests. The open-source release took off in early 2026: a viral tweet — 'Someone just open-sourced a fully autonomous AI Red Team... Zero human input' — was shared thousands of times, and the repository climbed to the top of GitHub trending.

经过

PentAGI's v1.2.0 shipped on 2026-02-25 with 13+ role-specialized agents, a Go backend, React UI, a Neo4j knowledge graph, Docker-sandboxed execution of Nmap, Metasploit, sqlmap and other tools, and support for 12+ LLM providers including local models. Runa Capital's Q1 2026 ROSS index listed it among the quarter's fastest-growing open-source startups, and the architecture drew both praise and skepticism — Ostorlab tests found configuration failures, and reviewers noted the 'zero human input' claim needs setup, API keys and defined targets.

结果

Still running as of 2026-09-02: PentAGI reached 18.5k stars and release v2.1.0 (2026-05-29) by early July 2026 with active maintenance; the open question is whether an MIT tool with no support contracts can convert star momentum into the trust and compliance revenue that enterprise pentesting demands.

背景

VXControl,一家2018年成立、总部位于迪拜的安全工具公司,于2025年初推出PentAGI,押注AI代理能够端到端执行复杂渗透测试。其架构镜像真实红队:13多个专门代理——编排器、搜索器、编码器、渗透测试器、安装器、顾问、反射器、丰富器、生成器——每个都具有最小权限访问,由Go后端和React监控UI协调。

当开源发布在2026年初病毒式传播时,项目爆发。一条广泛分享的推文——“有人开源了一个完全自主的AI红队...零人工输入”——伴随着攀升至GitHub趋势榜首;PentAGI在2026年2月25日v1.2.0发布时超过12,500星和1,600分叉,Runa Capital的2026年第一季度ROSS指数将其列为该季度20家增长最快的开源初创公司之一,星增长13.9倍。

技术上,PentAGI在沙箱Docker容器中集成20多种专业工具(Nmap、Metasploit、sqlmap、Nikto、Hydra),将结果存储在PostgreSQL、pgvector和Neo4j知识图谱中,并通过LiteLLM支持12+个LLM提供商。高风险操作——shell执行、漏洞利用启动、权限提升——需要人工审批,300秒后自动失败,每次提示和工具调用都记录审计日志。

截至2026年7月3日,仓库增长到18.5k星,发布v2.1.0(2026年5月29日),定位为唯一完全免费的自主替代品,相比NodeZero.ai、Pentera和XBOW等基于报价的平台。怀疑者指出Ostorlab发现配置失败,“零人工输入”仍需要设置和范围界定,受监管客户可能不接受纯AI测试——商业化问题仍然开放。

这件事要成立,得有什么

  • 具有最小权限工具访问的专门代理让PentAGI声称真正自主,而不是Nmap上的聊天包装器。
  • MIT许可使该类别最雄心勃勃的工具免费,吸引了关注和采用,而基于报价的竞争对手无法匹敌。
  • 人工审批门槛、Docker沙箱和全面审计日志为安全团队提供了一种可辩护的运行自主攻击者的方式。
  • 病毒式“完全自主AI红队”框架使一个小众发布在数周内登上GitHub趋势榜。

可借鉴之处

即使在安全领域,开源一个定义类别的工具也能奏效:免费将战斗转移到信任、沙箱和证据上——而每一次复制都会放大供应商必须负责的滥用面。

后续进展

截至2026年9月2日,PentAGI处于活跃维护中(最后发布v2.1.0于2026年5月29日;根据DEV.co 2026年7月3日快照,18.5k星)。项目仍为MIT许可并自托管,提供Linux、Windows和macOS的Docker Compose安装程序。其轨迹现在取决于社区是否转化为企业部署,以及自主AI渗透测试是否获得合规和责任框架的接受——监管机构和保险公司尚未认可纯AI评估,竞争对手继续将自主性捆绑到受支持的SaaS中。

资料来源

发现哪里写错了?告诉我们。

轮到你了

你刚读完一家。说说你在做什么,看看谁在赌同一件事。

免费账号 · 3 次免费提问 · 不用绑卡

相关案例