Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
-
Updated
Oct 7, 2026 - Python
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Open-source AI-powered offensive security harness for automated penetration testing.
Open-source, self-hosted AI penetration testing framework: maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and opens PRs that fix what it finds. MCP both ways: plug in any MCP server as a tool, or drive RedAmon from Claude Code or your own agent.
Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.
腾讯云智能渗透黑客松 Official repository of Tencent Cloud Intelligent Penetration Hackathon. Showcasing top open-source projects of LLM-based autonomous penetration agents, including multi-agent collaboration, automated penetration, AI-driven offensive security, and intelligent attack-defense solutions.
Autonomous AI-powered security scanning platform — CLI scanner, web dashboard, and one-command Docker deployment
This document curates open-source projects, academic papers, capability benchmarks, and commercial solutions (international & China) in AI penetration testing, LLM red teaming, autonomous offensive agents, and vulnerability discovery—aimed at helping researchers, security engineers, and enterprise decision-makers quickly form a holistic view.
AI-driven pi-like agent for cyber security — single binary for pentest, red team, bug bounty
Cyberful is an open-source AI Red Team for discovering, exploiting, verifying, and remediating vulnerabilities.
An open source plugin for enabeling claude to gain offensive pentesting capabilities
🛡️ Official AI Security Tool module for CVE-2026-41096 (Windows DNSAPI.dll Heap Overflow / DNS-Mayhem Deep Dive Analysis & Audit Module).
A curated list of AI-powered pentesting tools, frameworks, MCP servers, and resources for autonomous cybersecurity operations
Full-spectrum security assessment tool for opencode — defensive code audit (17 vulnerability categories) + offensive penetration testing (63 attack categories, 15 agents, 11 domains). AI-powered AppSec, red teaming, and pentesting for vibe-coded apps.
本系统基于 **Windows + WSL (Kali Linux)** 双环境搭建,是一套整合多类AI安全工具的一体化渗透测试平台。系统将大语言模型能力与传统渗透测试工具深度结合,覆盖Web安全、内网攻防、二进制逆向、API测试、流量分析等多个安全领域,可实现渗透测试全流程的智能化、自动化提效。
🛡 The reference playbook for pentesting AI chatbots & LLM-powered apps in one place. Ready-to-use payloads covering the full OWASP LLM Top 10 plus frontier vectors (MCP · RAG · A2A · computer-use · voice)
open-source pentest management built to be operated by an AI agent
AI agents for pentesting, code audit, fuzzing, vulnerability discovery, and reverse engineering — harnesses, sandboxes, security MCP servers, benchmarks, and evals.
Autonomous offensive security agent. Plans engagements, runs recon, chains exploits, and writes reports - end to end. Native to Claude Code, Gemini CLI, Codex and Cursor. Not a scanner wrapper.
A comprehensive AI Security Hub featuring payloads, cheat sheets, hands-on labs, security tools, MCP security, RAG security, agent security, CTF challenges, and research resources.
The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered systems.
To associate your repository with the ai-pentesting topic, visit your repo's landing page and select "manage topics."