[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"product:keygraph":3},{"id":4,"name":5,"slug":6,"slogan":7,"description":8,"organization":5,"images":9,"avatar_url":10,"image_url":11,"website_url":12,"access_links":13,"status":18,"build_by":19,"categories":20,"stats":24,"upload_relationship":29,"create_at":30,"update_at":31,"owner_id":26,"upload_user_id":32,"reviewer_id":33,"video_info":34,"prerelease_cover_url":9,"scheduled_publish_at":34,"user_scheduled":35,"emoji_reacts":36,"tag":34,"pass_review":34,"user_star":35},1766,"Keygraph","keygraph","结合智能静态分析与自主渗透测试的 AI 安全专家。","{\"type\": \"doc\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"【产品介绍】\", \"type\": \"text\", \"marks\": [{\"type\": \"bold\"}]}]}, {\"type\": \"paragraph\", \"content\": [{\"text\": \"Keygraph “Agentic 静态分析” 与 “自主动态渗透测试” 相结合，不仅能扫描代码，还能自动攻击运行中的应用。\", \"type\": \"text\"}]}, {\"type\": \"paragraph\", \"content\": [{\"text\": \"其核心原则是 “无 PoC 不报告”，系统仅输出经过真实攻击验证、具有可复现证明（Proof-of-Concept）的高置信度漏洞。\", \"type\": \"text\"}]}, {\"type\": \"paragraph\", \"content\": [{\"text\": \"除了深度集成模式，它还提供 “黑盒测试” 模式，用户仅需提供 URL 即可让 AI 像人类渗透测试员一样自主导航并执行攻击。\", \"type\": \"text\"}]}, {\"type\": \"paragraph\"}, {\"type\": \"paragraph\", \"content\": [{\"text\": \"【产品功能】\", \"type\": \"text\", \"marks\": [{\"type\": \"bold\"}]}]}, {\"type\": \"bulletList\", \"content\": [{\"type\": \"listItem\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"智能代码属性图分析：将代码转化为 CPG 结构，利用 LLM 评估特定脱敏逻辑是否真正能防御特定攻击，显著降低误报。\", \"type\": \"text\"}]}]}, {\"type\": \"listItem\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"十三位专业 Agent 协同：内置 13 个专用智能体，覆盖预侦察、自动化攻击面映射、漏洞分析及实证攻击等五个阶段。\", \"type\": \"text\"}]}]}, {\"type\": \"listItem\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"并行漏洞利用系统：针对 SQL 注入、XSS、SSRF 及越权（Authz）等 OWASP 核心类别，由 5 组并行 Agent 尝试真实 Payload 注入。\", \"type\": \"text\"}]}]}, {\"type\": \"listItem\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"多维权限测试：支持配置多组凭据，自动测试跨组织、跨角色的垂直及水平权限提升（IDOR）风险。\", \"type\": \"text\"}]}]}, {\"type\": \"listItem\", \"content\": [{\"type\": \"paragraph\", \"content\": [{\"text\": \"灰盒 \u002F 黑盒灵活配置：支持 OpenAPI 规范导入以增强覆盖率，或通过 DNS 验证对本地、预发布环境及生产环境进行无源码接触的黑盒扫描。\", \"type\": \"text\"}]}]}]}, {\"type\": \"paragraph\"}]}","","https:\u002F\u002Fwatcha.tos-cn-beijing.volces.com\u002Fprod\u002Fuser\u002Fuploads\u002F10005544_1775634584_ef20cb71-d3fe-4dcd-99df-ce7d2013806c.png","https:\u002F\u002Fwatcha.tos-cn-beijing.volces.com\u002Fprod\u002Fuser\u002Fuploads\u002F10005544_1775634371_db69d4ed-39c7-4ed9-8ce5-d2f184a7cca6.png","https:\u002F\u002Fkeygraph.io\u002F",{"items":14},[15],{"platform":16,"url":12,"is_primary":17},"WEB",true,"PUBLISHED",[],[21],{"id":22,"name":23},6,"编程开发",{"upvotes":25,"stars":25,"review_count":25,"reply_count":26,"score":27,"update_at":28},1,0,2.0654329147389294,"2026-09-09T03:15:48.563Z","THIRD_PARTY","2026-04-08T07:50:05.991Z","2026-04-09T07:42:45.212Z",10005544,2,null,false,{"reacts":37},[]]