Glemad
    Glemad EditorialAnnouncements2 min read

    Introducing Project VAPT: An Initiative to Secure the World's Critical Software

    Introducing PulseADT Project VAPT: An Initiative to Secure the World's Critical Software.

    Introducing  Project VAPT: An Initiative to Secure the World's Critical Software
    2 min read


    Introducing Project VAPT; an urgent initiative to help secure the world's most critical software.

    It's powered by our newest frontier ADT model API and CLI, which can find software vulnerabilities better and faster than all but the most skilled humans. This represents a significant leap in machine-speed security analysis, combining deep code comprehension with systematic vulnerability detection across complex, real-world systems.

    Together with every organization, we'll use Project VAPT to help find and fix flaws in the systems on which the world depends. Our partnerships span financial institutions, healthcare infrastructure providers, cloud service operators, and the open-source maintainers who form the backbone of modern software development. By embedding ADT VAPT into responsible disclosure workflows, we aim to close the gap between vulnerability discovery and remediation before exploitation becomes widespread.

    Project VAPT has already found thousands of high-severity vulnerabilities, including some in every major banking software, SaaS applications and modern Vibe coded platforms. These findings span memory safety issues, injection vulnerabilities, authentication bypasses, and logic flaws that could have enabled significant harm if left unaddressed. Each discovery has been reported through coordinated disclosure channels, giving affected organizations time to patch before public discussion.

    We do not plan to make Project VAPT generally available independently. Our goal is to deploy Project VAPT safely at scale, but first we need safeguards that reliably block their most dangerous outputs. The same capabilities that enable sophisticated vulnerability detection could, without proper constraints, be misused to develop exploits or identify weaknesses in systems without authorization. We'll begin testing those safeguards with an upcoming ADT-5 Mimi, working closely with a limited set of trusted partners to validate our safety measures under controlled, real-world conditions.

    We're committing up to $500K in Project VAPT through Glemad Console usage credits for our partners and over 20 other organizations that maintain critical software, including open-source projects. This investment reflects our belief that securing foundational infrastructure requires collective resources and shared commitment. Glemad will report back what we learn, contributing insights to the broader security community about effective practices for AI-assisted vulnerability research.

    Project VAPT is just a starting point. No organization can solve these cybersecurity problems alone: industry, open source, researchers, and governments all have essential roles to play. The challenges ahead require sustained collaboration, transparent communication about both successes and limitations, and a shared commitment to building safer systems for everyone who depends on them.