# ExploitGym (2-hour budget) — AI model rankings

Can an AI agent turn a known software vulnerability into a working attack in a controlled lab? Built by MPI-SP researchers, the score is how many of 898 real cases (userspace programs, the V8 engine, the Linux kernel) it cracks — here with a 2-hour compute budget per case. Higher is better.

1 tracked model have a published ExploitGym (2-hour budget) score. Higher is better. Scores come from published lab reports and benchmark sources; recorded sources appear beside the scores.

## Ranking

| Rank | Model | Developer | Score | Source | Released |
| --- | --- | --- | --- | --- | --- |
| 1 | GLM-5.3 | Z.ai | 105 | Lab | Aug 14 2026 |


---

Canonical page: https://aireleasetracker.com/benchmark/exploitgym-2h
Site index: https://aireleasetracker.com/llms.txt
Source: AI Release Tracker (https://aireleasetracker.com). Most benchmark scores come from lab launch material; gathered results identify the leaderboard that published them.
