Xint
Products
Xint Platform Xint Pulse
Resources
Blog Public Bug Tracker
About Theori
Login
Web App Code App
Talk to an Expert
EN KR
Products
Xint Platform Xint Pulse
Resources
Blog Public Bug Tracker
About Theori
Login
Web App Code App
Talk to an Expert
Language
EN KR

Xint Blog

Insights from the world's best offensive security researchers
See All Vulnerability ResearchAI for SecurityCompetitionsNewsProductOpen Source ProjectsFAQCase Study
Xint Code Discovers Three High Sev Bugs in Android

Xint Code Discovers Three High Sev Bugs in Android

This is an overview of the three high-severity vulnerabilities uncovered by Xint Code in Android which have now been patched by Google Devices
Hector Leano's avatar
Jul 20, 2026
Vulnerability ResearchOpen Source ProjectsAI for Security
Using Context to Discover IDOR Vuln in Healthcare Co: Technical Deep Dive

Using Context to Discover IDOR Vuln in Healthcare Co: Technical Deep Dive

In an engagement with a healthcare client, Xint uncovered an IDOR vulnerability allowing unauthorized access to patients' protected health information (PHI).
Xint's avatar
Jun 02, 2026
Vulnerability ResearchAI for SecurityCase Study
Copy Fail:
From Pod to Host.

Copy Fail: From Pod to Host.

A walkthrough of Copy Fail (CVE-2026-31431) as a container escape primitive: from a 4-byte page cache write to host root on Kubernetes.
Juno Im's avatar
May 19, 2026
Vulnerability ResearchAI for SecurityOpen Source Projects
Kernel Vulns Uncovered by Xint in MacOS, iOS and iPadOS

Kernel Vulns Uncovered by Xint in MacOS, iOS and iPadOS

This is an overview of the two kernel-level vulnerabilities uncovered by Xint Code in MacOS, iOS and iPadOS which have been patched by Apple
Hector Leano's avatar
May 12, 2026
Vulnerability ResearchAI for SecurityNews
Vulnerabilities vs. Weaknesses: Why the Distinction Matters

Vulnerabilities vs. Weaknesses: Why the Distinction Matters

There's a difference between insecure code patterns and true vulnerabilities that hackers seek to exploit. Why does that matter?
Jeffrey Martin's avatar
May 05, 2026
Vulnerability ResearchAI for SecurityProduct
Xint Code Discovers Three High Sev Bugs in Android

Xint Code Discovers Three High Sev Bugs in Android

This is an overview of the three high-severity vulnerabilities uncovered by Xint Code in Android which have now been patched by Google Devices
Hector Leano's avatar
Jul 20, 2026
Vulnerability ResearchOpen Source ProjectsAI for Security
Using Context to Discover IDOR Vuln in Healthcare Co: Technical Deep Dive

Using Context to Discover IDOR Vuln in Healthcare Co: Technical Deep Dive

In an engagement with a healthcare client, Xint uncovered an IDOR vulnerability allowing unauthorized access to patients' protected health information (PHI).
Xint's avatar
Jun 02, 2026
Vulnerability ResearchAI for SecurityCase Study
Copy Fail:
From Pod to Host.

Copy Fail: From Pod to Host.

A walkthrough of Copy Fail (CVE-2026-31431) as a container escape primitive: from a 4-byte page cache write to host root on Kubernetes.
Juno Im's avatar
May 19, 2026
Vulnerability ResearchAI for SecurityOpen Source Projects
Kernel Vulns Uncovered by Xint in MacOS, iOS and iPadOS

Kernel Vulns Uncovered by Xint in MacOS, iOS and iPadOS

This is an overview of the two kernel-level vulnerabilities uncovered by Xint Code in MacOS, iOS and iPadOS which have been patched by Apple
Hector Leano's avatar
May 12, 2026
Vulnerability ResearchAI for SecurityNews
Vulnerabilities vs. Weaknesses: Why the Distinction Matters

Vulnerabilities vs. Weaknesses: Why the Distinction Matters

There's a difference between insecure code patterns and true vulnerabilities that hackers seek to exploit. Why does that matter?
Jeffrey Martin's avatar
May 05, 2026
Vulnerability ResearchAI for SecurityProduct
Working With DARPA to Secure Open Source Infrastructure: CVE-2026-31789

Working With DARPA to Secure Open Source Infrastructure: CVE-2026-31789

The story behind CVE-2026-31789 demonstrates how DARPA and Xint are accelerating AI cyber defenses
Hector Leano's avatar
May 04, 2026
CompetitionsNews Vulnerability ResearchOpen Source Projects
Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

Xint Code disclosed CVE-2026-31431, an authencesn scratch-write bug chaining AF_ALG + splice() into a 4-byte page cache write. A 732-byte PoC gets root on Ubuntu, Amazon Linux, RHEL, SUSE.
Juno Im's avatar
Apr 29, 2026
AI for Security Vulnerability ResearchOpen Source Projects
System, Not Model: Why Off-the-Shelf LLMs Don’t Replace a Pen Test

System, Not Model: Why Off-the-Shelf LLMs Don’t Replace a Pen Test

What do buyers actually purchase when they pay for a vulnerability discovery platform, and why is the model the cheapest input in the bill?
Jeffrey Martin's avatar
Apr 27, 2026
Vulnerability ResearchAI for Security
The Frontier Isn’t the Model: Why ‘Good Enough’ Reasoning + Scaffolding Is More Important

The Frontier Isn’t the Model: Why ‘Good Enough’ Reasoning + Scaffolding Is More Important

In this exclusive report, Xint researchers compare Mythos's publicly disclosed results versus what broadly available models can accomplish using advanced scaffolding
Hector Leano's avatar
Apr 16, 2026
AI for Security Vulnerability Research
Finding and Patching a CPython 0day in Hours: CVE-2026-6100

Finding and Patching a CPython 0day in Hours: CVE-2026-6100

A critical CPython CVE today took less than 45 minutes of human work to find, triage, and fix because of Xint Code
Hector Leano's avatar
Apr 13, 2026
Vulnerability ResearchOpen Source Projects
Xint

AI-powered vulnerability discovery that proves exploitability in your live application.

XLinkedInBlueskyFediverse
Products
Xint PlatformXint Pulse
Company
AboutContact
Resources
BlogPublic Bug Tracker
Legal
Privacy PolicyTerms of UseTrust Center
© 2026 Theori. All Rights Reserved.