Use IDE: AI Pentest
The AI Pentest analysis can be accessed from the IDE. It shows the step by step process of the AI Pentest, from the threat intelligence, to the tasks and tools used.
1. Dashboard
Access the dashboard from https://report.ostorlab.co/dashboard/posture.
2. Scans List
The scan list shows all the scans you have created. Find the AI Pentest scan you want to analyse and click on it.
3. Scan Page
Click on the "Analysis" button to go to the Analysis environment.
4. AI Pentest Panel
Click on the AI Pentest panel icon to the AI Pentest Analysis.
5. Threat Intel
The Threat Intel shows the identified Business Context, Technology Stack, and Attack Surface of the target.
6. Risks
This section shows all the risks that were identified during the scan. You can click on any of the risks to see its
details.
The search input allows you to filter out the risks.
7. Risk Details
-
Prompt
This section of the Risk shows the prompt that was used to scan the target.
-
Plan
This section shows a detailed plan the AI generated inorder to perform a comprehensive penetration pentesting scan. The plan includes the objects of the pentest, and the tasks to perform to achieve the goal.
-
Analysis
This "Analysis" is the list of tasks executed during the pentest. The number next to "Analysis" is the total number of tasks. Each task shows the task description, the tool calls, and the output. Clicking on a tool call shows the arguments the tool was called with and its output.