Web app pentest benchmark: OWASP Juice Shop
Web app pentest benchmark on OWASP Juice Shop: an autonomous AI pentest that escalated from 14 to 57 findings across six black-box campaigns on a local model, with proof of exploitation for every finding. Real results, published and reproducible.
Darkmoon, the open source autonomous AI penetration testing tool, found 57 vulnerabilities on a black-box OWASP Juice Shop in the final campaign, each with a working proof, in 28.5 minutes on a local model.
The headline run
Six campaigns on the same target
Full run file: juice-shop-2026-04-26.md in the Darkmoon-Benchmarks repository.
Web benchmark questions
What is the OWASP Juice Shop autonomous pentest benchmark?
How many vulnerabilities did the Juice Shop run find?
Was the web benchmark run on a local model?
Can Darkmoon also fix the findings it proves?
Darkmoon's own benchmark on the public OWASP Juice Shop lab. The offensive run is produced by the open source Darkmoon CLI; the web dashboard and the remediation-to-PR loop are paid Pro. The run file and the per-campaign escalation are published in the Darkmoon-Benchmarks repository.