#1LLM security, prompt injection, model extraction, adversarial AI, and AI red teaming tools.
Kitploit recommended

Intentionally vulnerable machine learning model for hands-on security training. Explore common ML vulnerabilities, adversarial attacks, and defensive…

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end…

DugganUSA threat-intelligence contributions to the IETF Hackathon — real-world agentic-attack benchmark vectors, CVE-2026-33697 attestation analysis,…

Python scraper based on AI

A doggo that helps look for security issues in your repositories.


Two-stage prompt-injection and jailbreak detector: regex gates plus a quantised DeBERTa-v3 ONNX classifier, with image, document, and audio support.…

Zero shot vulnerability discovery using LLMs

openrisk is a tool that generates a risk score based on the results of a Nuclei scan.

SecureML - Securing and Watermarking AL models

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

LlamaStack-RCE: Deterministic Supply Chain Exploitation & Hardening Framework [CVE-2024-50050] Focus on AI Security Research…

This study analyzes Python pickle deserialization vulnerabilities, focusing on CVE-2024-3568 in Hugging Face Transformers' TFAutoModel. We reproduce…

Ethical, network-isolated Docker lab reproducing CVE-2026-26030 — Semantic Kernel in-memory vector store filter eval() RCE (patched in 1.39.4)

A tool that checks if a TorchServe instance is vulnerable to CVE-2023-43654

Technical analysis of the LangChain serialization injection vulnerability CVE-2025-68664.