R
runsybil.com · Active

RunSybil

Evidence review incomplete; verified field coverage is limited.

Evidence-backed profile summary

Agenova records RunSybil as a research agents product from runsybil.com. No capability, pricing, or deployment field currently has publication-qualified Evidence; those claims remain Unknown.

Category
Research agents
Purpose taxonomy
IT Operations & Security (ade-1a.v1)
Pricing
Paid
Deployment
Cloud
Source freshness
Attention required
Evidence coverage
1 of 8 fields
Execution status
No published execution evidence
Last assessed
2026-07-22
Last source scan
2026-09-06
Last material change
No accepted change recorded
Canonical Agent entity

What is RunSybil?

Agenova verified this product identity, but accepted official evidence is currently insufficient for specific capability, pricing, integration, deployment, privacy, or enterprise-control claims. Unverified fields remain Unknown.

RunSybil is an AI-native offensive security platform built around Sybil, an autonomous agent that continuously tests applications and infrastructure for exploitable vulnerabilities by reasoning about a system the way an elite human researcher would, across the entire stack, on every deployment. Rather than scanning for signatures, Sybil reasons like an attacker: it interacts with systems dynamically, explores authentication boundaries, finds and validates vulnerabilities, and chains them across layers to surface real exploitable paths, the way an application vulnerability becomes the entry point for full infrastructure compromise. The company frames its role as owning Phase 4 of CTEM, Validation: where most exposure-management programs stop at discovery and prioritization, Sybil continuously attacks applications and infrastructure with real adversarial reasoning to prove whether findings from other tools are actually exploitable, delivering pre-validated findings with zero triage burden. It positions itself as a replacement for both bug bounties (expensive, unpredictable, cherry-picked targets) and point-in-time pentests (stale the moment you ship), offering continuous coverage at predictable cost across application and infrastructure layers, testing for cross-tenant data access, privilege escalation, transaction manipulation, broken authorization, IAM misconfigurations, container escapes, CI/CD secret exposure, and lateral movement. RunSybil describes Sybil as the only platform running live exploitation with AI agents that learn about a target and get more efficient with experience; in one financial-platform engagement Sybil exploited a low-severity flaw, then used that knowledge to probe hidden endpoints and find a critical unauthenticated flaw exposing all customer data that black-box tools missed. Founded in 2023 by OpenAI's first security researcher and Meta's former offensive security lead with a team from Mandiant, NCC Group, and Trail of Bits, backed by a $40M Series A, RunSybil sits in the offensive cluster alongside XBOW, Horizon3, and Terra, differentiated by continuous per-deployment black-box testing that chains vulnerabilities across the full application-to-infrastructure stack.

Evidence boundary

What is verified—and what remains unknown.

Source-backed now

  • Enterprise controlsAI-agent black-box testing without source-code access

Not yet verified

  • PricingNo accepted public source currently supports this field.
  • CapabilitiesNo accepted public source currently supports this field.
  • DeploymentNo accepted public source currently supports this field.
  • Privacy & data policyNo accepted public source currently supports this field.
  • IntegrationsNo accepted public source currently supports this field.
  • Regional availabilityNo accepted public source currently supports this field.
  • Execution reliabilityNo publication-approved execution evidence.
Decision readiness

Evidence coverage: 13%

1 of 8 decision fields supported. Evidence coverage is not a product score.

Source-Backed
1
Execution-Verified
0
Intelligence Gap
6
Execution Evidence Gap
1
FieldCurrent answerEvidence stateSourceLast assessed
Pricing

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Capabilities

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Deployment

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Privacy & data policy

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Integrations

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Regional availability

No directly supporting official source has passed field-level review.

UnverifiedIntelligence GapNo accepted source
Execution reliability

No publication-approved execution evidence is available for this Agent.

UnverifiedExecution Evidence GapNo accepted source
Evaluation status

Execution status: No published execution evidence

Documented product facts and Source-Backed claims do not establish execution quality or performance. Only publication-approved execution evidence can create an Execution-Verified state.

Product facts and market availability

Known facts, with boundaries visible.

Pricing
PaidProduct record
Deployment
CloudProduct record
Languages
English
Provider-listed markets
GlobalProvider-listed; not verified availability
Independently verified availability
Unverified
Access requirements
Not recorded
Payment access
Not verified
Network dependency
Not verified
Integrations
Not recordedNot verified
Capability intelligence · Evidence-aware, not a ranking

Capabilities and evidence

Documented product intelligence is not execution evidence or a performance claim. No publication-approved Execution-Verified edge appears unless its governed evidence passes.

No evidence-qualified capability edge is published for this profile. Provider-listed labels are not promoted as verified capabilities.

View full evidence audit9 audited fields · default collapsed

Identity

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Version

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Capabilities

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Pricing

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Deployment

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Privacy & data policy

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Integrations

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Regional availability

Unverified · 0 matching sources · 2026-07-22

No accepted supporting source is recorded for this field.

Traceable provenance

Official sources

These sources support only the fields named below. A missing source is reported as unknown, not as a negative product claim.

SourceType and providerSupportsReviewed
RunSybil official productofficial product · runsybil.comCanonical identity or product context
RunSybil official enterpriseControls sourceofficial policy · RunSybilEnterprise controls
Help improve Agenova

Did this profile help you understand this agent?