Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
-
Updated
Aug 28, 2026 - Python
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Open-source AI-powered offensive security harness for automated penetration testing.
Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.
腾讯云智能渗透黑客松 Official repository of Tencent Cloud Intelligent Penetration Hackathon. Showcasing top open-source projects of LLM-based autonomous penetration agents, including multi-agent collaboration, automated penetration, AI-driven offensive security, and intelligent attack-defense solutions.
AI-driven pi-like agent for cyber security — single binary for pentest, red team, bug bounty
Autonomous AI-powered security scanning platform — CLI scanner, web dashboard, and one-command Docker deployment
This document curates open-source projects, academic papers, capability benchmarks, and commercial solutions (international & China) in AI penetration testing, LLM red teaming, autonomous offensive agents, and vulnerability discovery—aimed at helping researchers, security engineers, and enterprise decision-makers quickly form a holistic view.
Cyberful is an open-source AI Red Team for discovering, exploiting, verifying, and remediating vulnerabilities.
An open source plugin for enabeling claude to gain offensive pentesting capabilities
🛡 The reference playbook for pentesting AI chatbots & LLM-powered apps in one place. Ready-to-use payloads covering the full OWASP LLM Top 10 plus frontier vectors (MCP · RAG · A2A · computer-use · voice)
本系统基于 **Windows + WSL (Kali Linux)** 双环境搭建,是一套整合多类AI安全工具的一体化渗透测试平台。系统将大语言模型能力与传统渗透测试工具深度结合,覆盖Web安全、内网攻防、二进制逆向、API测试、流量分析等多个安全领域,可实现渗透测试全流程的智能化、自动化提效。
Autonomous offensive security agent. Plans engagements, runs recon, chains exploits, and writes reports - end to end. Native to Claude Code, Gemini CLI, Codex and Cursor. Not a scanner wrapper.
Full-spectrum security assessment tool for opencode — defensive code audit (17 vulnerability categories) + offensive penetration testing (63 attack categories, 15 agents, 11 domains). AI-powered AppSec, red teaming, and pentesting for vibe-coded apps.
open-source pentest management built to be operated by an AI agent
The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered systems.
AI agents for pentesting, code audit, fuzzing, vulnerability discovery, and reverse engineering — harnesses, sandboxes, security MCP servers, benchmarks, and evals.
A curated list of AI-powered pentesting tools, frameworks, MCP servers, and resources for autonomous cybersecurity operations
Harness-driven terminal AI agent for authorized security assessment, with TUI, headless automation, persistent context, 150 built-in skills, and a dedicated pentest mode.
Provide AI-driven penetration testing with portable hardware tools tailored for cybersecurity research and real-world testing scenarios.
An elite, self-orchestrating cyber-offensive platform built for relentless surface expansion, real-time intelligence gathering, precision vulnerability triage, and automated targeted exploitation.
Add a description, image, and links to the ai-pentesting topic page so that developers can more easily learn about it.
To associate your repository with the ai-pentesting topic, visit your repo's landing page and select "manage topics."