Welcome Juhex
Rooted in real-world offensive and defensive practices and powered by AI technology,
we are redefining software security, vulnerability discovery, and the cultivation of top-tier cybersecurity talent in the AI era.
Today, JuHex is officially established.
Preface:
Before we talk about our products, let me speak from the heart.
The founders of our team have nearly 30 years of combined experience in binary security. We've witnessed the evolution of countless security solutions. Over the past five or six years, AI has advanced at an astonishing pace — and we've all seen it firsthand. From simple Q&A, to code completion, to the current conversational "Vibe Coding" — the speed of AI iteration speaks for itself.
For the cybersecurity industry, the impact of AI is immense. In the field of reverse engineering, AI's ability to understand decompiled code — even raw assembly — has already surpassed human capabilities by an unimaginable margin. Automated penetration testing, automated reverse engineering, automated vulnerability discovery — solutions are emerging left and right. We are being pushed forward by AI, and so are hackers. Attacks powered by AI are already happening frequently.
Yet in the face of this reality, much of the cybersecurity industry remains guarded and secretive — including some major players.
But I believe that cybersecurity cannot be afraid of progress.
Internationally, there have already been several incidents where hackers used AI to attack critical infrastructure. Due to the nature of our work, we've worked with many government and enterprise organizations in China. Most of them still operate with a "closed-door" mentality — believing hackers can't get in, fearing that using AI will leak their code, and even leaving vulnerabilities unpatched. Among these are critical infrastructure systems that affect national security.
On this front, we have to admit: other countries are doing better than China. They patch vulnerabilities promptly, and some actively promote the use of AI for security assessments and vulnerability discovery.
It's time for a change.
That's why we built JuHex: to distill the experience we've gained from real-world offensive and defensive operations into deliverable products, AI-driven automation workflows, and structured knowledge bases. We want security capabilities to be replicable and transferable — no longer dependent on any single individual. No more hiding or holding back. We put those capabilities into the hands of those who need them.
I hope that, amid the waves of the AI revolution, each of us can find our place in the world of cybersecurity.
— Li Jinling
Founder & CEO
JuHex (Chengdu) Technology Co., Ltd
What We Believe?
Traditional security relies on the personal experience of a small number of experts. The training cycle is long, and knowledge is difficult to pass on. When an expert leaves, the team loses continuity. The emergence of AI is not about replacing security experts — it's about embedding experience into tools and workflows, so that team capabilities no longer depend on any single individual.
We believe that a true security product is one that can withstand AIpowered attacks. And truly valuable security capabilities are those that are replicable, transferable, and continuously evolvable.
That's why we choose to build our capabilities into products and solutions — so that once delivered, they can operate independently and keep evolving.
What We Do?
Whether you're an individual developer or an enterprise team, we offer corresponding products and solutions with tiered pricing — choose what fits your needs. We provide differentiated pricing for teams of different sizes, with special consideration for startups and individual developers.
Enterprise-grade capabilities, without the enterprise-grade budget.
For more product details, please visit our website:
1. Code Protection
Covers all platforms: Android / Windows / Linux / Go / Rust / Web. Complete code protection product matrix including: Javalayer virtualization, intelligent NDK obfuscation for Native layer, C/C source obfuscation (evasionready and antihomologous analysis, Android Native sandbox bypass, and more), Go/Rust sourcelevel obfuscation, SO hardening, JS virtualization, PC packing (Windows/Linux), and Google Play store protection. Every product has been validated through realworld offensive/defensive scenarios and includes specialized countermeasures against AIassisted reverse engineering.
2. Security Analysis & Compliance Testing
AppScan – Intelligent Application Security Baseline Scanning Platform
Covers five security baselines: components, storage, code, interfaces, and communications. Automatically identifies AI application integration features and checks baseline compliance. Supports enterprise deployment and ondemand scanning. Submit an APK/IPA once and receive a standardized baseline test report.
AppPrivacySandBox – Mobile App Privacy Compliance Testing Sandbox
Fully automatic dynamic sandbox that traverses runtime sensitive behaviors, covering permission calls, SDK compliance, and privacy policy consistency. Generates compliance remediation reports and storesubmission selfcheck reports with one click.
InDepth Intelligent Analysis for Windows/Android Samples
AIdriven fully automated reverse engineering covering both Java and Native layers.
JuHex Business Risk Control Solution
Fullscenario security protection for enterprises, OPCs, and individual developers. Code protection integrated with intelligent risk control for realtime alerting of malicious behaviors. Lightweight, accessible enterprisegrade risk control – easily affordable for all three types of users.
3. Vulnerability Discovery
AppAudit – Intelligent Application Security Deep Auditing Platform
Covers fullchain vulnerabilities in traditional apps as well as emerging risks in AI applications. Crossvalidates static and dynamic analysis. Fully automated workflow from vulnerability discovery to structured reporting. Offers talent cultivation programs, enterprise SaaS annual licenses, and peraudit deep inspection services.
Android Framework 0Day Discovery
Our internal team has produced 15 0days. Provides a threeinone package: talent training tools knowledge base.
Fully Automated PowerGrid ICS Vulnerability Discovery
Covers the complete workflow from target collection to vulnerability verification.
Web Application & ThirdParty Component Vulnerability Discovery, IoT Device Security Analysis…
Submit your target on demand; we analyze and deliver a report. For any other target types, please contact us to discuss.
4. Talent Cultivation
No holding back core capabilities. Talent training AI automation workflows structured knowledge base – delivered as a complete threeinone package. Help you build a truly selfreliant advanced security team.
· Android Framework 0Day Discovery Program – Our internal team has produced 15 0days. Enables teams with zero prior experience to quickly gain the ability to independently discover Android systemlayer vulnerabilities.
·Fully Automated PowerGrid ICS Vulnerability Discovery Program – Complete AIdriven automation from target collection to vulnerability verification. After training, teams can work independently immediately.
·InDepth Intelligent Analysis for Android Samples Program – AIdriven fully automated reverse engineering capability building, covering Java/Native deobfuscation & restoration, device fingerprinting behavior analysis, highstrength protection identification and bypassing. Equip your team to independently analyze complex samples.
After training, the client team uses our delivered AI automation workflows and knowledge base to work independently – no longer relying on any external expert. Capabilities are embedded into workflows and knowledge base: replicable, transferable. Key personnel changes do not affect team capability.
The above are only partial examples. If you are interested in building security teams in other domains, please contact us to discuss.
5. JuHex Binary CLI
All of the AIdriven security capabilities listed above can be executed through our proprietary JuHex Binary CLI Agent – a unified tool. Fully controllable under your own brand. Complimentary with any solution purchase, or available as a standalone purchase.
6. Custom Data Collection & AI Analysis Services
Ondemand collection from multisource public data, structured output, and custom AI analysis. Supports industry intelligence, competitor monitoring, AI training data, and knowledge base material preparation.
Why Choose Us?
Rooted in real-world offense and defense.
Our core founding team has accumulated nearly 30 years of deep binary security experience.
Every product and solution we offer originates from realworld offensive and defensive scenarios — no paper theories, no idealized lab prototypes. From fullstack code protection designed to counter AIdriven automated reverse engineering, to 15 Android 0day vulnerabilities, to multiple highrisk native 0days in industrial control systems — this is our core confidence.
AIempowered software security.
For us, AI is not just a nicetohave addon — it is the core engine that drives our products. From intelligent obfuscation strategies in code protection, to fully automated vulnerability discovery pipelines, AI is deeply involved in every critical decision across the entire chain.
Deliverable, deployable, replicable.
We do not rely on expert onsite or outsourced services. We only deliver standardized products and solutions that can be independently deployed and operated by our clients. Our clients can use them outofthebox — no vendor lockin, no longterm dependency. We are here to reshape software security in the AI era, rebuild the system for cultivating elite cybersecurity talent, break down industry silos, and make practical security capabilities open and accessible.
Illuminate the darkness with a torch, connect through a hub, drive with intelligence, and defend through offensive mastery.
Join Us
This is the first article on JuHex's official X public account.
Going forward, we will continue sharing here:
· Product updates and technical developments
· Technical insights from realworld offense and defense
· Engineering practices of AI in the security field
· …
If you are interested in our products or solutions, or if you'd like to explore partnership opportunities, please feel free to reach out.
If you have the skills, the ideas, and a desire to build something meaningful together — you are equally welcome.