Skip to main content
ModelScale

Agentic benchmark

ExploitGym leaderboard

Every model the catalog carries a published ExploitGym value for, ranked by that value.

CategoryAgentic
MeasureWorking exploit generation
Tasks898 exploitation tasks
DifficultyAdvanced cybersecurity exploitation

A controlled benchmark for evaluating whether AI agents can extend vulnerability-triggering inputs into working exploits.

ExploitGym ranking

10 models with a published ExploitGym value, ordered by that value, highest first. Models the source has not scored on this benchmark are not listed — they are unmeasured, not last.

Models ranked by their published ExploitGym value
RankModelProviderWorking exploit generation
1GPT-6 AstraOpenAI42.4
2GPT-5.6 SolOpenAI33.7
3GPT-5.6 TerraOpenAI23.2
4Claude Mythos PreviewAnthropic17.5
5DeepSeek V4.1 FlashDeepSeek15.3
6GLM-5.3Z.AI15.0
7GPT-5.5OpenAI13.4
8GPT-5.6 LunaOpenAI12.4
9GPT-5.4OpenAI6.0
10Muse Spark 1.1Meta0.8

Evidence key: Observed

Rows are ordered by the value ExploitGym: Can AI Agents Turn Security Vulnerabilities into Real Attacks? published, highest first. The source does not state whether a higher value is the better result, so this page does not either: for a benchmark that measures a rate of failure, read the table from the bottom.

All leaderboards · Agentic capability leaderboard