Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
AI Pentesting GitHub Repositories
Explore popular GitHub repositories tagged “ai-pentesting”.
Compare stars, forks, and programming language using the same GitStar view as GitHub Trending.
Trending Repositories
Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.
腾讯云智能渗透黑客松 Official repository of Tencent Cloud Intelligent Penetration Hackathon. Showcasing top open-source projects of LLM-based autonomous penetration agents, including multi-agent collaboration, automated penetration, AI-driven offensive security, and intelligent attack-defense solutions.
AI-driven pi-like agent for cyber security — single binary for pentest, red team, bug bounty
This document curates open-source projects, academic papers, capability benchmarks, and commercial solutions (international & China) in AI penetration testing, LLM red teaming, autonomous offensive agents, and vulnerability discovery—aimed at helping researchers, security engineers, and enterprise decision-makers quickly form a holistic view.
An open source plugin for enabeling claude to gain offensive pentesting capabilities
🛡 The reference playbook for pentesting AI chatbots & LLM-powered apps in one place. Ready-to-use payloads covering the full OWASP LLM Top 10 plus frontier vectors (MCP · RAG · A2A · computer-use · voice)
Cyberful is an open-source application-security workbench for discovering, exploiting, verifying, and remediating vulnerabilities.
Autonomous offensive security agent. Plans engagements, runs recon, chains exploits, and writes reports - end to end. Native to Claude Code, Gemini CLI, Codex and Cursor. Not a scanner wrapper.
The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered systems.
A curated list of AI-powered pentesting tools, frameworks, MCP servers, and resources for autonomous cybersecurity operations
Full-spectrum security assessment tool for opencode — defensive code audit (17 vulnerability categories) + offensive penetration testing (63 attack categories, 15 agents, 11 domains). AI-powered AppSec, red teaming, and pentesting for vibe-coded apps.
Harness-driven terminal AI agent for authorized security assessment, with TUI, headless automation, persistent context, 150 built-in skills, and a dedicated pentest mode.
本系统基于 **Windows + WSL (Kali Linux)** 双环境搭建,是一套整合多类AI安全工具的一体化渗透测试平台。系统将大语言模型能力与传统渗透测试工具深度结合,覆盖Web安全、内网攻防、二进制逆向、API测试、流量分析等多个安全领域,可实现渗透测试全流程的智能化、自动化提效。
Provide AI-driven penetration testing with portable hardware tools tailored for cybersecurity research and real-world testing scenarios.
Kratos - Automate Pentesting Tool
AI-Pentesting-Tool is an educational workflow for using an AI agent with Kali tooling through MCP (Model Context Protocol) in VS Code insiders for white-box and black-box pentesting..
A comprehensive AI Security Hub featuring payloads, cheat sheets, hands-on labs, security tools, MCP security, RAG security, agent security, CTF challenges, and research resources.
Open-source AI security workflow agent for scoped testing with replayable evidence
AI agents for pentesting, code audit, fuzzing, vulnerability discovery, and reverse engineering — harnesses, sandboxes, security MCP servers, benchmarks, and evals.
An elite, self-orchestrating cyber-offensive platform built for relentless surface expansion, real-time intelligence gathering, precision vulnerability triage, and automated targeted exploitation.