Enterprise AI Red Team Platform | 企业级AI红队平台 | 132 MCP Tools | Pure Python Engines | SDK+CLI+MCP | Auto-Download sqlmap/nuclei/ffuf | Production C2 | LLM Enhanced | Docker Sandbox | SARIF CI/CD | 1980 Tests
- capability exposureinferred+35
- recent driftinferred+12
- tool safetyinferred+12
inferred
The A–E grade is our heuristic synthesis — a "review this" prompt, not a verdict. Each factor is tagged by what backs it: attested (a verifiable record), reported (a third party's claim), or inferred (our own heuristic, e.g. permissions). See methodology.
graded 13m ago · see ecosystem CVEs →
- A · 0 → C · 59
no known CVEs for this server.
- highdangerous code
committed secret: Google API key · dynamic exec: __import__(), eval()/exec()
analyzed commit df7c28e · analyzer v17 · 1d ago
danger signals18
- dynamic code execution__import__()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ai_engine.py:150
mod = __import__(module_name, fromlist=[class_name]) - dynamic code executioneval()/exec()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/evasion/payload_obfuscator.py:365
exec({var_name}.decode()) - dynamic code executioneval()/exec()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/persistence/webshell_manager.py:119
eval(${var2}); - dynamic code execution__import__()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/deploy_security.py:46
__import__(package) - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/constants/security.py:146
("http://169.254.169.254/jwks.json", "metadata_ssrf"), - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/ssrf.py:304
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/ssrf.py:761
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/xxe.py:83
<!ENTITY xxe SYSTEM "http://169.254.169.254/latest/meta-data/"> - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py:433
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py:436
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/engine.py:277
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/ssrf_exploiter.py:48
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/ssrf_exploiter.py:69
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/mega_payloads.py:718
"http://169.254.169.254/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/mega_payloads.py:738
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/selector.py:568
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/vuln_verifier/ssrf.py:54
"http://169.254.169.254/latest/meta-data/", - committed secretGoogle API keyCoff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py:382
AIzaSy…(39 chars, redacted)
- recent drift+12 capability drift →
Heuristic, inferred signals — false positives (legitimately powerful tools, forks, language ports) are expected. Treat each as "review this", not a verdict. See the ecosystem-wide picture on the security hub, or the fleet security of Coff0xc.