S.01Visual walkthrough · Pro remediation

The loop, watched end to end

One finding, walked from a working exploit to a green retest and a reviewed pull request. The remediation loop is a paid Pro capability; finding and proving the vulnerability is open source. This is an illustration of the loop, not a staged product video.

42
of 57 findings demonstrated end-to-end
57
pull requests opened for human review
4
stages, finding to pull request

remediation loop · one finding
One finding, from a working exploit to a reviewed pull request

Illustrative animation. The verified evidence for every finding lives in the published dossier.

1FINDINGexploit proven2FIXroot-cause patch3RETESTexploit replayed4PULL REQUESThuman reviewTARGET: VULNERABLETARGET: CLOSED ✓

S.04Step by step
What happens at each stage

01 · Finding
FindingsCVSS
SQL injection9.8
SSRF to metadata9.1
Broken access control8.7
JWT signature bypass7.5
Path traversal6.9

A proven exploit

The autonomous pentest already demonstrated impact, e.g. an admin account reachable with a weak password. The finding carries the exact request and raw response, not a score.

02 · Fix
$darkmoon run --scope identity
→AS-REP roast · 3 accounts
→Kerberoast · svc_sql cracked
→NTLM relay → DCSync
✓Domain Admin, proven

A root-cause patch

The remediation agent maps the finding to the real source file and generates a minimal diff, the actual fix, not a suppression or a scanner rule tweak.

03 · Retest
Attack surfaceexposure

The exploit is re-run

The branch type-checks, then the original exploit is replayed against a live instance. The fix only counts when the exploit now fails and the finding is confirmed closed.

04 · Pull request
New engagement
Targetapp.acme.test
Scopeweb · API · cloud
Window5 business days
Flat rate€799

Opened for human review

A pull request is opened, disclosed as AI-generated, and left for a human to review and merge. Darkmoon never auto-merges its own fix.

Before the fix

The exploit runs against the live target and succeeds, the finding is graded EXPLOITED with the exact payload and raw output captured as proof.

After the fix

The same exploit is replayed against the patched branch and now fails. Only then does the finding count toward the 42 of 57 demonstrated end-to-end.

The full numbers, limits and per-PR verdicts are on the remediation benchmark page.

S.05Next
Run the loop on your own findings

The offensive engine is open source; the remediation loop is a Pro capability that opens reviewed PRs, never merges them.