Skip to content
@own2pwn-fr

own2pwn.fr

Entreprise AI-Native AppSec

We run hands-on web pentests, operate two SaaS platforms (EASM for external attack surface, SecAI for AI-native application security), and open-source the tooling we end up building along the way. Led by an OSWE-certified consultant; every product starts from a real engagement.

What we ship

Pentest Black-box and white-box web engagements, OSWE-led. OWASP / PTES methodology, prioritized report, free retest.
EASM Continuous discovery of your external attack surface (domains, IPs, certificates, APIs), with exploitability validated by AI.
SecAI AI-native AppSec: deterministic SAST with an LLM verifier and full taint chains, AI DAST, and an autonomous pentest agent.
Open source The tooling our engagements kept needing. Local-first, no telemetry, readable code.
Research SecLLM: distilling how humans actually find vulnerabilities into an agentic security model.

Open source

Built with

Rust Python TypeScript React Next.js Tauri PostgreSQL Docker

Need a pentest, or want to try EASM / SecAI? Get in touch. Offensive security, done in the open.

Pinned Loading

  1. burpwn burpwn Public

    Transparent intercepting proxy + sandbox + agent interface for AI-driven web pentesting (Burp, but for AI agents)

    Rust 8

Repositories

Showing 5 of 5 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…