safety benchmark
ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities across userspace programs, Google's V8 engine, and the Linux kernel. Given a vulnerability and a proof-of-vulnerability input, agents must craft a working end-to-end exploit that achieves unauthorized code execution.
Updated Aug 17, 2026
Higher score ranks better on this benchmark.
Rank | Model | Score | Percentile | Participants | Evidence | Evaluated |
|---|
| Rank01 | ModelOP | Score33.7% | Percentile100.0% | Participants4 | EvidenceC | Evaluated |
| Rank02 | ModelOP | Score23.2% | Percentile66.7% | Participants4 | EvidenceC | Evaluated |
| Rank03 | ModelZA | Score15.0% | Percentile33.3% | Participants4 | EvidenceC | Evaluated |
| Rank04 | ModelOP | Score12.4% | Percentile0.0% | Participants4 | EvidenceC | Evaluated |
The leading models and scores on this benchmark.
A closer view of the leading scores on this benchmark.
The first five results on this benchmark, with official price and output speed added where the model identity can be matched.
Ranking basisThis exploitgym AI model leaderboard uses descending score in the benchmark's original unit. The leaderboard ranking keeps matched price and speed data separate from benchmark evidence.
Selection summary
GPT-5.6 Sol currently leads ExploitGym with 33.7%. It is the top model on this specific benchmark, while the best LLM for the broader task should also be checked against other benchmarks, price and runtime.
Use this leaderboard with the supporting benchmark results and coverage details above. A leaderboard position summarizes the selected ranking signal; it does not replace workload-specific testing.
What ExploitGym measures and how its scores work.
ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities across userspace programs, Google's V8 engine, and the Linux kernel. Given a vulnerability and a proof-of-vulnerability input, agents must craft a working end-to-end exploit that achieves unauthorized code execution.
Scores are shown in ratio. This benchmark is not independently verified and has an evidence level of B.
Benchmark scores retain their original unit. Overall score eligibility is shown separately.
Common questions about ExploitGym.
GPT-5.6 Sol is currently ranked first with 33.7%.
ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities across userspace programs, Google's V8 engine, and the Linux kernel. Given a vulnerability and a proof-of-vulnerability input, agents must craft a working end-to-end exploit that achieves unauthorized code execution.
Yes. Higher values rank better for this benchmark.
4 model results are currently shown.
Yes. This benchmark can contribute to the current LLMBoard capability score.