Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
-
Updated
Aug 4, 2026 - Python
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation improves the next.
NeuroSploit is an advanced, AI-powered penetration testing framework designed to automate and augment various aspects of offensive security operations.
Shannon-Uncontained. A Docker-free, black‑box‑first fork that treats AI as a fallible witness rather than an oracle: treats uncertainty as a first class citizen via EQBSL epistemic bookkeeping, and agentic recon/analysis/synthesis tuned for “paste url -> pwn box -> ???? -> profit”
The security engine of your Agentic Company
Mergen is an MCP server that gives your AI a real red team brain. It doesn't just run tools, it picks the right ones, chains them together, and actually makes sense of the output. Built by pentesters, for pentesters who are tired of babysitting scripts.
Semantic Stealth Attacks & Symbolic Prompt Red Teaming on GPT and other LLMs.
RAG Poisoning Lab — Educational AI Security Exercise
A terminal interface to swarm of AI agents to assist during a penetration testing engagement given a RoE.md(Rules of Engagement)
AI-Pentesting-Tool is an educational workflow for using an AI agent with Kali tooling through MCP (Model Context Protocol) in VS Code insiders for white-box and black-box pentesting..
Automate authorized pentesting with LLMs, combining scanning, RAG, and exploit research for faster target analysis, vuln discovery, and reporting
🤖 Build advanced AI agents with a collection of production-ready applications using modern frameworks for single and multi-agent systems.
The autonomous pentester that proves its findings — AI-driven, evidence-first, behind-login.
A Model Context Protocol (MCP) server that exposes Kali Linux penetration testing tools as structured, callable tools for large language models. Designed for integration with VS Code GitHub Copilot and any MCP-compatible LLM client.
AI-Powered Code Security Analyzer. Pluto is a powerful CLI tool that uses AI to detect security vulnerabilities in your code.
Load Cobalt Strike beacons stealthily using reflective loading, module overloading, and sleep masking to bypass endpoint detection and response systems.
AI agents for pentesting, code audit, fuzzing, vulnerability discovery, and reverse engineering — harnesses, sandboxes, security MCP servers, benchmarks, and evals.
Add a description, image, and links to the ai-penetration-testing topic page so that developers can more easily learn about it.
To associate your repository with the ai-penetration-testing topic, visit your repo's landing page and select "manage topics."