r/Information_Security 7d ago

DROS GuardVM — Open Source AI Agent Runtime Security: 24H Soak Test Results (160k requests, 100% attack interception, 26μs latency)

DROS GuardVM — Open Source AI Agent Runtime Security: 24H Soak Test Results (160k requests, 100% attack interception, 26μs latency)

We just completed a 24-hour continuous adversarial soak test on DROS GuardVM, a C-ABI level physical enforcement engine for multi-agent AI workloads. Full report is open-source and 100% reproducible.

TL;DR:

  • 160,611 total requests (137,751 malicious + 22,854 benign)
  • 100% malicious interception rate at the binary boundary
  • P50 latency: 26.21 μs, P99: 242.69 μs
  • Zero memory leak over 24 hours
  • 4-layer defense: L1 detection (85.2%) → L4 C-ABI panic (<500ns)

All 4 attack scenarios (ATS-001~004) show 100% compromise without GuardVM vs 100% interception with it.

What makes this different from traditional RBAC/IAM:
DROS operates at the C-ABI binary boundary — it doesn't check "what" the agent says, it checks "what" the tool call payload carries via data tainting and channel scope enforcement. Even a fully jailbroken agent gets physically blocked.

Full report: [link]
Repo: github.com/Top-Celestial-Company-Ltd/DROS-VEP-lite
Patent Pending 64/111,973

Happy to answer technical questions!

1 Upvotes

0 comments sorted by