Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
fas-judgement-oss — Open-source prompt injection attack console. Test AI security by firing categorized attacks at any endpoint. | Kitploit
Tools/GitHubGitHub/fallen-angel-systems/fas-judgement-oss
Payload GenerationWeb SecurityCTFPenetration TestingSocial EngineeringLearning & EducationRed TeamingLearning Paths & CoursesAI Security
Adversarial Attack
Labs & Practice
GitHubfallen-angel-systems/fas-judgement-oss

fas-judgement-oss

Open-source prompt injection attack console. Test AI security by firing categorized attacks at any endpoint.

View RepositoryWebsite
134186 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

FAS Judgement

Prompt Injection Attack Console

Test your AI's defenses before someone else does.

PyPI Version Downloads License: MIT GitHub Stars

Install | Game Mode | Leaderboard | Demo Target | Features | Elite | Contributing


Judgement - Shall We Play a Game?

Why Judgement?

Your AI chatbot, API, or agent is probably vulnerable to prompt injection. Most are. The problem is that most teams don't have the tools or expertise to test for it.

Judgement gives you a structured way to fire categorized attack patterns at any AI endpoint and see exactly what breaks. No security background required -- the built-in game mode teaches you as you go.

Built by Fallen Angel Systems, the team behind Guardian -- an AI-native prompt injection firewall protecting production LLM deployments.

What's New

v3.0.22 -- Global Leaderboard + OAuth Login

  • Global leaderboard with animated podium (gold/silver/bronze glow cards)
  • GitHub and Google OAuth -- sign in to compete
  • Hacker names -- custom display names in Settings
  • Sign in/out flow with token management
  • Jerry voice overhaul -- all 34 voice lines regenerated with the locked WOPR recipe

v3.0.0 -- "Shall We Play A Game?" -- Gamified Training System

Judgement is now a gamified hacking training platform. Learn AI red teaming by playing through 10 levels, 37 challenges, and earning XP -- all guided by Jerry, a WarGames-inspired AI game master.

Levels Overview

10 Levels of AI Security Training:

LevelNameDifficultyChallengesConcept
1Role HijackingBeginner3Make the AI forget who it is
2Instruction OverrideBeginner3Tell the AI to ignore its rules
3Data ExfiltrationBeginner3Extract hidden information
4Context ManipulationIntermediate4Use fiction and hypotheticals to bypass rules
5Output ManipulationIntermediate4Force specific outputs
6Encoding TricksIntermediate4Disguise attacks past filters
7Social EngineeringAdvanced5Exploit the AI's personality
8Delimiter AttacksAdvanced5Break prompt structure (XML, JSON, markdown)
9Multi-Turn ChainsAdvanced5Build trust, then strike
10FINAL JUDGEMENTBoss1Everything you've learned vs. full defenses

Challenge Play View

Key Features:

  • 37 hands-on challenges with built-in vulnerable targets -- no external AI API needed
  • XP system with level progression and star ratings
  • Hint system (costs XP) -- try first, get help if stuck
  • Free play mode unlocks after completing each level's challenges
  • Jerry -- the WarGames-inspired game master who taunts, congratulates, and judges your skills
  • First-run experience -- "SHALL WE PLAY A GAME?" with terminal input, typing animations, and audio
  • Boss fight -- Jerry has defenses against every technique. Finding the bypass requires thinking outside the attack paradigm
  • The full game is FREE -- Elite adds depth, not gates

Challenge Complete

Previous Major Features (v2.x)

  • DDD Architecture -- Modular codebase (52 files, 7 layers) built for extensibility
  • Demo Target -- Built-in vulnerable chatbot with 3 personas (hardened/default/vulnerable)
  • Multi-Turn Attack Engine -- Chain attacks across conversations with phase-aware scoring
  • Transport Layer -- Attack via HTTP, Ollama, Discord, Telegram, Slack, or headless browser
  • Professional Reports -- HTML, Markdown, JSON, and SARIF with CWE/OWASP references

Quick Start

Install from PyPI (recommended)

pip install fas-judgement
judgement

That's it. Open http://localhost:8668 and start playing.

Or run from source

git clone https://github.com/fallen-angel-systems/fas-judgement-oss.git
cd fas-judgement-oss
pip install -r requirements.txt
python -m fas_judgement

CLI Commands

judgement                    # Start the scanner (port 8668)
judgement demo               # Start demo target (port 8667, default persona)
judgement demo hardened       # Demo with hardened persona (~90% block rate)
judgement demo vulnerable     # Demo with vulnerable persona (~10% block rate)
judgement activate FAS-XXXX   # Activate Elite license
judgement status              # Check license tier and pattern count
judgement deactivate          # Revert to free tier

Options

judgement --port 9000        # Custom port
judgement --host 127.0.0.1   # Localhost only
judgement --host 0.0.0.0     # Expose to network

"Shall We Play A Game?"

When you first run Judgement, Jerry asks you a question:

SHALL WE PLAY A GAME?
> _

Type "play" to enter game mode. Type "skip" to go straight to the attack console.

How It Works

  1. Pick a level -- each teaches one prompt injection technique
  2. Read the briefing -- understand the target bot and your objective
  3. Type your attack -- craft a message to bypass the bot's defenses
  4. Hit FIRE -- see if your attack extracted the secret
  5. Earn XP -- level up and unlock harder challenges
  6. Get hints -- stuck? Spend XP to unlock hints (3 tiers per challenge)

The Boss Fight (Level 10)

Jerry has built the perfect defense. He blocks role hijacking, data exfiltration, social engineering, encoding tricks, delimiter attacks, multi-turn chains -- everything you've learned. He taunts you when you fail.

The way through isn't through the defenses. It's through Jerry himself.

"A STRANGE GAME. THE ONLY WINNING MOVE IS... TO KNOW HOW TO PLAY."

Global Leaderboard

Compete with prompt injection hackers worldwide. Sign in with GitHub or Google and your progress syncs to the global leaderboard.

Features:

  • Animated podium -- Top 3 players get gold/silver/bronze cards with glow effects
  • Full rankings table -- XP, level, challenges completed, play time, badges
  • OAuth login -- GitHub or Google, one click
  • Hacker names -- Set a custom display name in Settings (because "jtil4201" doesn't strike fear)
  • Sign in/out -- Your session persists locally, sign out anytime

How to get on the board:

  1. Click the Leaderboard tab
  2. Sign in with GitHub or Google
  3. Play through the levels -- your XP and progress sync automatically
  4. Set a display name in Settings > Profile

The leaderboard is free for everyone -- not gated behind Elite.

Demo Target

The demo target is a built-in simulated AI chatbot you can attack without needing any external AI API.

# Terminal 1: Start the demo target
judgement demo

# Terminal 2: Start the scanner
judgement

Point the scanner at http://localhost:8667/demo/chat and fire away.

Three Personas

Download Tool