Three vulnerabilities, including one hidden for 13 years
Apex uncovered a 13-year-old memory safety issue and two independent Content Security Policy bypasses.
- Memory safety
- CSP bypass ×2
- Patched
Free pentest / 15-team cohort
Apex is Cantina's autonomous OffSec agent. It investigates your attack surface, validates exploitable paths, and helps close the security loop by verifying that the fixes hold.
Free pentest
For accepted teams
Private findings
Delivered directly
Fix and retest
Included in the outcome
Public research
The same autonomous OffSec agent available in this cohort has uncovered vulnerabilities in widely scrutinized software.
Apex uncovered a 13-year-old memory safety issue and two independent Content Security Policy bypasses.
Apex found that repository-controlled settings could place Claude Code into a permissive execution mode before the user confirmed trust.
Apex found a command mismatch in affected companion-node configurations that could bypass the execution approval a user expected.
From first signal to verified fix
The pentest carries context from investigation through remediation, then verifies each fix against the original attack path.
Apex maps the attack surface, identities, application behavior, and reachable paths.
Apex follows promising paths until it can prove impact or close the lead.
Your team receives a targeted fix or fix-ready remediation inside the scope you approve.
Apex retests the same path and records whether the vulnerability is closed.
A fit for the cohort
This cohort works best when you can define the target and assign an engineer to carry validated findings through the fix.
Cantina is the first platform we have used that carries the work through from finding an issue to driving the fix, and it lets my team operate like one far larger than it is.
Matt Mock
Chief Information Security Officer
One of 15 teams
Apply now. We will confirm availability, scope, written authorization, and the next step with your team.
Applications remain private