An LLM with admin rights on your firewall: how not to get pwned
🇫🇷 Version française 💻 Source code (AGPL): github.com/patlegu/cyber-agent-engine A LLM that can block an IP There is something vertiginous about giving a language model the ability to call block_ip or add_filter_rule on a production firewall. You feed it a sentence — “block this IP that’s scanning the LAN” — and a few hundred milliseconds later, a rule shows up in OPNsense. That is exactly the promise of AI-assisted DevSecOps: translate intent into action, with no console, no ticket, no CLI in between.
