
owtf
Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

Autonomous AI red team agent for penetration testing with 13+ specialized agents, 120+ OWASP test cases, and MITRE ATT&CK integration. Supports 15+…

Covenant is a collaborative .NET C2 framework for red teamers.

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements,…

A AI general-purpose state-space search engine, validated first on autonomous penetration testing.

Undetectable Windows Payload Generation

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool


A collection of real world AI/ML exploits for responsibly disclosed vulnerabilities

Metarget is a framework providing automatic constructions of vulnerable infrastructures.

AI-powered penetration testing assistant for automating recon, note-taking, and vulnerability analysis.

Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver…

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats.…

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

Nim-based assembly packer and shellcode loader for opsec & profit

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

A C# Command & Control framework