SCATHA / RESULTS

Findings
that hold up.

SCATHA is built to produce vulnerabilities that security teams can reproduce, maintainers can act on, and engineering teams can fix. Our results span source code, local inference, native binaries, firmware, and foundational open source software.

Read the results ->
AGENTIC VULNERABILITY ANALYSISACCEPTED / REPRODUCIBLENO THEATRE / JUST SIGNAL

01 / Selected results

Receipts, not promises.

A deliberately scoped view of outcomes across the surfaces and deployment boundaries that matter to serious security teams.

01 / LOCAL INFERENCE

Maintainer-accepted authentication bypasses

Using local inference alone, SCATHA identified authentication bypass vulnerabilities in a major open source repository. The findings were reviewed and accepted by project maintainers.

ACCEPTED ->
02 / FOUNDATIONAL SOFTWARE

Bugs in foundational software

SCATHA has surfaced maintainer-accepted vulnerabilities in a popular operating system and widely used foundational open source software.

MAINTAINER-ACCEPTED ->
03 / BINARY ANALYSIS

Firmware findings from binary analysis

SCATHA identified vulnerabilities in firmware through binary analysis alone. The resulting findings were accepted by the relevant maintainers.

FIRMWARE / ACCEPTED ->
04 / MOBILE APP ANALYSIS

Mobile apps with millions of users

SCATHA has discovered and validated vulnerabilities in mobile apps with millions of users from extracted binary analysis alone.

EXTRACTED BINARY / VALIDATED ->
05 / SCALE
DOZENS

High-severity detections at scale

Across popular open source repositories, SCATHA has produced dozens of high-severity vulnerability detections for further validation and remediation.

FURTHER VALIDATION ->
06 / COMPARATIVE EVALUATION

Findings others missed

In comparative evaluation, SCATHA identified several bugs that Project Glasswing did not surface under the same assessment scope.

SAME SCOPE / DIFFERENT SIGNAL ->

02 / What this demonstrates

Capability you can carry.

The point is not a flashy demo. It is a result that stays useful after the screen goes dark.

01

Local
inference

High-value vulnerability research without sending source, binaries, or findings to an external model.

02

Any
target

SCATHA works across repositories, compiled binaries, firmware, applications, and native components.

03

Evidence-led
output

Findings are returned with reproduction logic, technical evidence, severity context, and patch guidance.

SCATHA / NEXT TEST

Bring us something
worth testing.

Bring us an authorised binary, firmware image, or repository. SCATHA will return a scoped evaluation with evidence-backed findings your team can reproduce and act on.