Part II — Overview
Contents4 numbered sections
Report date: 2026-09-28
Author: Red-Team Consultancy Research
Context: Evaluation of 3 specialized AI families for authorized offensive security work: (1)
OrcaRouter hosted cyber models, (2) Abliteration AI abliterated models, (3) Adverserial AI
(https://adverserial.ai/ — note spelling with E, Adverserial AI LLC, CyberKimi + CyberGLM). Request
includes functionalities, costs, legal client workflow integration, independent reviews, and best
cost-effective recommendation.
Method: Multi-agent deep research via parallel subagents using TinyFish Search/Fetch, Exa web
search, You.com, Firecrawl scrape, docs.fetch, GitHub/HF/Ollama analysis, ToS review + direct fetch of
adverserial.ai/, /docs.html, /founder.html on 2026-09-28 correction pass. Cross-referenced with
local reports.
Sources: OrcaRouter.ai, docs.orcarouter.ai, Abliteration.ai, docs.abliteration.ai, Adverserial.ai,
docs (adverserial.ai/docs.html), founder (adverserial.ai/founder.html),
github.com/lordx64/cyberkimi-benchmarks, TechCrunch, LessWrong, CoderCops, Reddit, GitHub,
HuggingFace.
0.1 About this part
Section titled “0.1 About this part”Part II evaluates the offensive-capable AI tooling a professional red-team practice can actually field
in 2026 under written authorization: the three specialist model families, the agent infrastructure that
runs them, and how they compare to gated frontier cyber models. Every section is numbered so proposals
and client reports can cite it directly (§9.2, §13.3, and so on).
0.2 Correction note (2026-09-28 v2)
Section titled “0.2 Correction note (2026-09-28 v2)”v1 incorrectly mapped “adversearial ai” to Lakera/Mindgard/Cisco/Adversarial.com defensive scanners.
The user corrected this to https://adverserial.ai/. Sections 5, 6, 7C, 8, 9, 10.3 and 12 were
rewritten to cover the correct vendor. The defensive-scanner category is retained only as one-line
context in §5.7.
0.3 Terminology
Section titled “0.3 Terminology”All three vendors in scope sell offensive-capable AI for authorized work — an LLM that generates attack analysis under written authorization — which is distinct from AI red-team scanners (Lakera/Mindgard/Cisco) that test a client’s AI applications. Terminology matters in contracts: capability never supplies permission, and neither does a model’s branding.
0.4 Contents
Section titled “0.4 Contents”- Executive Summary
- Background: What You Asked For
- OrcaRouter — Gateway + Native Cyber Models
- Abliteration AI — Hosted Guardrail-Removed Models
- Adverserial AI — CyberKimi + CyberGLM
- Comparison Matrix
- Legal Workflow: How to Use Each in Client Engagements
- Reviews Synthesis
- Recommendation: Best Cost-Effective Method & Model
- Installation & Integration Guides
- Risks, Caveats & What Not to Do
- DreadNode — Agent Infrastructure Explained + Cost Verdict
- OpenAI & Anthropic Cyber Models vs Poor Man’s Stack
- Sources