RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment. Built for penetration testers, red teamers, CTF players, and cybersecurity learners, it focuses on real-world workflows without relying on a GUI.
“Less power. Same discipline.”
RedRoot Lite is the restricted edition of RedRoot, designed to provide core red teaming functionality while keeping advanced modules locked.
It uses the same architecture, same CLI style, and same mindset — but with limited access.
RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment. Built for penetration testers, red teamers, CTF players, and cybersecurity learners, it focuses on real-world workflows without relying on a GUI.
Often, while working on a task or using a specific tool, users face limitations because they are restricted to a lite version that doesn’t unlock the tool’s full potential. RedRoot aims to bridge that gap by providing a more complete and practical toolkit, allowing users to perform tasks more efficiently without being held back by feature restrictions.
RedRoot Lite is a lightweight, access-controlled version of the RedRoot framework.
It is intended for:
All non-essential and advanced payloads are .
Below is the module access list for RedRoot Lite – Mark X.
redrootbreaker – Access Grantedredrootdir – Access Grantedredrootexploit – Access Grantedredrootfuzz – Access Grantedredrootlistener – Access Grantedredrootps – Access Grantedredrootrecon – Access Grantedredrootsniffer – Access Grantedredrootsqli – Access Grantedredrootvenom – Access Granted (Payloads Enabled)All remaining RedRoot modules are locked in the Lite edition.
This includes:
Locked modules are visible in the framework but cannot be executed.

F.R.I.D.A.Y, the intelligent AI core powering RedRoot.
F.R.I.D.A.Y is not a scripted assistant — it is a code-aware, context-driven AI system designed specifically for offensive security workflows.
F.R.I.D.A.Y understands your toolchain, not just your prompt. basically its your offensive security partner with RedRoot Tool
It analyzes:
Then provides:
Below is the complete RedRoot toolset, mapped directly from the project directory.
redrootrecon – Web & target reconnaissanceredrootfinger – Service and user fingerprintingredrootwp – WordPress reconnaissanceredrootfuzz – Parameter & endpoint fuzzingredrootdir – Directory brute forcingredrootps – Advanced port scanningredrootphoneosint – Phone Number Information Gathering Like Home Address, ID Cards, Connected No. and more.redrootsqli – SQL Injection exploitationredrootxss – Cross-Site Scripting scannerredrootlfi – Local File Inclusion attacksredrootexploit – Exploit assistance frameworkredrootssrf – Server Side request forgeryredrootldap – LDAP enumeration & AD discoveryredrootasreproast – AS-REP Roastingredrootpoison – LLMNR / NBT-NS poisoning (Responder-like)redrootbreaker – Authentication & protocol abuseredrootevil – Evil Twin rogue access pointredrootdeauth – Wi-Fi deauthentication attackredrootmitm – Man-in-the-Middle attacksredrootbluejack – Bluetooth Bluejackingredrootbluesnarf – Bluetooth Bluesnarfingredrootvenom – Payload generation frameworkredrootsniffer – Packet sniffing and captureredrootdos – Denial of Service testingredrootpriv-esc – Privilege escalation (Mark XLV upgrade)redrootlistener – Reverse shell listenerRedRoot-Backdoor – Windows/Linux backdoor creatorredroottunnel – TCP / UDP tunneling & pivotingredroothost – Private HTTP SERVER TO PUBLICredrootdrive – Data transfer & exfiltration utilityredrootlog – Evidence and artifact collectionredrootsteg – Steganography for payload & data hidingredrootwin – Windows Remote Shell LoginRedRoot-Phisher – Phishing framework & launchergit clone https://github.com/Agampreet-Singh/RedRoot.git
cd RedRoot
python3 installer.py
RedRoot Lite exists to:
Same mindset.
Limited reach.
RedRoot Lite is intended only for educational and authorized testing purposes.
Misuse is strictly prohibited.
MIT License
See the LICENSE file for details.
RedRoot Lite shows you the tools.
RedRoot Full shows you the war.
RedRoot isn't just a toolkit — it's a part of me.
You can try to separate me from the framework,
strip it down to scripts and modules,
but at the end of the day...
I am RedRoot.
I built it in the command line.
I debugged it in the dead of night.
Every scan, every payload, every exploit — it has my fingerprint on it.
So no, it's not just a suit of tools.
The tools and I — we’re one.
🛠️ Built with grit. Run with purpose.
💻 Hack like you mean it.
Use this Tool for Educational purpose i am not responsible if you doing any against laws activities
Well you can forget it, I am RedRoot, the tool and I are one, to turn over the tool would be to turn over myself …. And if I do this, then I am your servent or your weapon, so, what you’re looking for sir you cannot get it.
Mark XLVII is here... but this isn't the end.
One day, there will be a final release — Mark 85.
And when Mark 85 arrives,
it won’t just be an update...
it’ll be a declaration — the King of Cybersecurity.
But don't get me wrong...
I'm not saying that the god of technology has taken human form for the first time.
I'm just saying... RedRoot Mark 85 will be close.
IF YOU ARE NOTHING WITHOUT THE REDROOT THEN YOU SHOULDN'T HAVE IT
👑 Prepare for the legend.