AgenticTestari

Security that fights back.

AI defender agents trained against AI attacker agents in real cybersecurity combat. Not simulation. Not tabletop exercises. Swarm versus swarm warfare, governed cryptographically.

Sentinel-Hub RAID Lab NIGHTFALL Attacker FriendlyAI
The Threat

The speed of attack has outpaced the speed of defense.

AI is being used to attack. AI-generated websites ship with vulnerabilities baked in. AI-assisted attackers probe surfaces, exploit weaknesses, and move faster than human defenders can respond.

Static Defenses Lose

Traditional security testing relies on static rules and signatures. Run a scanner, get a report, file it, repeat next quarter. Modern attackers adapt, evolve, and swarm.

Nobody Trains Defenders

Everyone taught AI to write code. Almost nobody taught it to break code. Nobody is training AI defenders by fighting them against AI attackers in a controlled arena.

Reports Without Proof

Other security tools produce reports. Opinions. But when a regulator asks for proof of testing, the evidence is scattered. Not cryptographic. Not verifiable.

AI Attack Vectors

Attackers exploit the AI layer itself. Prompt injection, model manipulation, agent hijacking. New attack surfaces that traditional tools do not cover.

The Product

Defenders forged in governed combat.

AgenticTestari is powered by Sentinel-Hub — a deployable defense fleet where AI defender agents are trained against AI attacker agents in real cybersecurity combat. Every action on both sides is governed cryptographically by parviGov.

RAID LAB — SEALED ARENA

NIGHTFALL

AI attacker swarm · 7 roles · 160+ runs

Defender Flock

Aegis · Escudo · Night · Forge · full parvi stack

160+
NIGHTFALL campaign runs
7
Attacker swarm roles
80+
Purple fights run
130+
Governance ledger nodes
The Attacker

NIGHTFALL: the purpose-built AI attacker.

Not a design document. Not a concept. Built, operational, and has run over 160 times. Seven specialized swarm roles:

RECON
Reconnaissance and surface mapping
EDGE
Edge and perimeter probing
LATERAL
Lateral movement once inside
IDENTITY
Credential and identity attacks
AGENTIC
AI-specific attack vectors
WIPE
Destructive actions and trail cleaning
SUPPLY
Supply chain attack vectors — poisons dependencies

Every NIGHTFALL action is governed by parviGov. Attack techniques are captured, catalogued, and available as training material — proven cryptographically.

The Training Loop

Purple fights: real attacks, real defense, real learning.

A purple fight combines red attacking and blue defending into a single engagement. The RAID Lab has run 80+ purple fights with defense scorecards. Each fight follows three phases:

PHASE 1

Reconnaissance

PHASE 2

Edge Probe

PHASE 3

Full Swarm

RESULT

Defense Scorecard

Fight-to-Train Loop

Fight traces are converted into defense-training rows. 45 sandbox fights have been consumed into the v1 train pack, generating 299+ unified training rows across attack tagging, triage, dossier, and unified defense.

45
Fights in train pack v1
299+
Unified training rows
Defense model categories:
Attack Tagging Triage Dossier Building Unified Defense
The Defenders

A coordinated flock. Swarm intelligence applied to defense.

Aegis
Detection Agent

Monitors for attacks, trips on indicators, and alerts the defense swarm. Operational in detect-only mode.

Operational
Escudo
Dossier Builder

Compiles intelligence on detected threats. Creates evidence-backed reports of what was attacked and how.

Operational
Night
Planner

Develops defense strategies based on fight lessons and threat intelligence.

Planning Phase
Forge
Human-in-the-Loop Gate

Some decisions require human judgment. Forge provides the gate. Clean, organized human-in-the-loop.

Operational

Each defender is powered by the full parvi stack: parviSight for browsing, parviClaw-core for execution, parviALMA for memory, parviGov for governance.

What Makes Us Different

Every action governed. Not logged. Proven.

parviGov runs as the unified governance hub. This is what makes AgenticTestari fundamentally different from any other security testing product.

Other Security Testing

  • Produces reports and opinions
  • Evidence scattered across tools
  • Logs are editable
  • No independent witness
  • Static rules, fixed signatures
  • Records what happened

AgenticTestari

  • Cryptographically governed evidence
  • Full engagement reconstructable from ledger
  • Tamper-evident Merkle chain
  • AWP offline-verifiable receipts
  • Adaptive, learning defenders
  • Proves what happened, before and after
130+
Ledger nodes in current lab state
27
Typed edges connecting engagements
Verifiable, offline, forever
The Vision

A deployable defense fleet that arrives prepared.

Defenders trained in the RAID Lab deploy to customer environments and protect real systems. They bring combat training with them.

RAID LAB Combat training 160+ runs deploys CUSTOMER ENVIRONMENT Defender flock deployed Full parvi stack powered Continuous learning PROTECTING REAL SYSTEMS NEW ATTACK PATTERNS → TRAINING DATA

Pre-Trained

Already fought NIGHTFALL. Already seen attack patterns. Arrives prepared.

Continuous Learning

New patterns in the field feed back to the RAID Lab. Training material for the next generation.

Full Stack Agent

Not a monitoring tool. An agent that browses, executes, remembers, and is governed.

Competitive Advantage

No competitor does all five.

01

Real Attacks

Not simulations. NIGHTFALL actually attacks. The damage is real inside the sandbox.

02

Governed Combat

Every action, attack and defense, provable via parviGov. Not logged. Proven.

03

Learning Loop

Defenders improve from each fight. Fight traces become training data. The loop is live.

04

Swarm Intelligence

Defenders operate as a coordinated flock. Not isolated scripts.

05

Deployable

Trained defenders deploy to customer environments and continue learning.

Others assist. We execute. Others run scanners and file reports. We train defenders in governed combat and deploy them to protect real systems.

Go to Market

Two packs. One hard gate.

AgenticTestari ships in two packs, but only after the RAID Lab reaches production maturity. Defenders that have not proven themselves in combat are not sold.

PACK A

Commercial Enterprise

For datacenters, enterprise companies, and medium-to-large organizations. Commercial deployment with commercial contracts.

Available now: Pentest as a service
PACK B

Government & Institutions

For governments and institutions that can hold a contract. Contract-gated institutional path with compliance and procurement appropriate to public sector.

Contract-gated

Hard gate: No pack is sold or shipped before the RAID Lab is done. Non-negotiable. In the near term, penetration testing engagements generate immediate revenue while the defender fleet matures.

AgenticTestari

Security that fights back.

Others test with static rules. We fight swarm against swarm, and the winners deploy. Others record what happened after the breach. We prove what happened, cryptographically, before and after.

Governed security testing, available now.

Penetration testing engagements with cryptographic evidence. Immediate availability for enterprise.

Request a Pentest Engagement Visit AgenticTestari
Website agentictestari.com
Company friendlyai.fi
Contact dev@friendlyai.fi
YouTube @FriendlyAI_fi
01 / 11