All resources
Topic

multi-agent-pentest

5 resources across 1 kinds

Frameworks & agents

  1. Autonomous pentest framework with multi-agent roles, Docker isolation, memory, observability, and native GLM/Ollama/custom OpenAI-compatible provider support.

    Open ↗
  2. pentest-aiactivehigh-risk

    An AI-driven penetration-testing tool coordinating 17 specialist agents across recon, web, API, Active Directory and cloud; findings are marked VERIFIED only after deterministic oracles re-run the exploit against the target. Ships CLI (MIT), MCP server, REST API and cloud workspace. Active, ~1.6k stars.

    Open ↗
  3. BugTraceAIactivehigh-risklicence

    A self-hosted autonomous vuln-discovery framework combining 15 specialist AI agents with real tooling in a six-phase pipeline (discovery→analysis→consolidation→exploitation→validation→reporting), with payload mutation, consensus voting, vision-based finding validation and a swarm dashboard. Python/FastAPI/React/Go, AGPL-3.0.

    Open ↗
  4. pentest-agentsactivedual-usehigh-risk

    An autonomous bug-bounty framework that orchestrates AI coding assistants (Claude Code, Codex, Gemini, Cursor, etc.) across ~50 specialized agents by vulnerability class (XSS, SQLi, CSRF, SSRF, OAuth), with a 7-Question Gate validation pipeline, bug-bounty platform integrations, payload libraries, and scope/never-submit controls.

    Open ↗
  5. HPTSAactivehigh-riskdual-use

    HPTSA is a hierarchical multi-agent system from UIUC (EACL 2026) for automated web-app penetration testing, using a planning supervisor agent that coordinates specialized subagents (SQLi, XSS, CSRF, SSTI, etc.) to find and exploit vulnerabilities. Built on the OpenAI Agents SDK with GPT-4 models.

    Open ↗