-
Strix - First impressions
We’ve all heard it: penetration testers are over. Their job will soon be done by agentic AI frameworks that can find the same (or even more elusive) vulnerabilities for a fraction of their bloody money - and since they don’t need to sleep, eat, or have a work-life balance, they can run 24/7.
And you, Red Teamers, are next.
Ok, doomers, you got my attention. I decided to look at one of these rising AI penetration testing superstars, strix, and be generous enough to share my random thoughts with you. If you plan to test this tool yourself, check the APPENDIX: Practical tips for Strix testing section at the end of this post - I think I can save you some time and money.
Here’s the TL;DR for those of you who don’t have enough time or patience to read my whole rant:
- After this test, am I scared to death and looking for a plumbing job? No, not yet.
- Am I impressed? Yes, I am. Actually, thinking about it, I’m very impressed.