Redamon
An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with zero human intervention.
2,832 个安全任务的工具和技能
An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with zero human intervention.
Extract any website’s design system into tokens in seconds: logo, colors, typography, borders & more. One command.
XUI-PRO nginx reverse proxy with ws/grpc/httpupgrade/splithttp,xray protocol support: vless,vmess,trojan,shadowsocks panel cloudflare ssl,xtls,ssr,v2fly,v2ray installer bypass restrictions sing-box,shadowtls,reality,tunnel,gfw tor warp wireguard geoip tuic clash vpn mihomo psiphon hy2 oneclick argo bbr wstunnel anticensorship⚡🛡️
Scan MCP servers for potential threats & security findings.
FofaMap v2.0 是一款基于 Python3 开发的全网首个 AI 驱动红队资产测绘智能体。在延续原有 FOFA 数据采集、存活检测、统计聚合、图标 Hash 及批量查询等核心功能的基础上,2.0 版本原生支持 MCP 协议,可无缝接入 Cursor、Claude 等 AI 平台。其核心内置了 AI 自我反思机制,能根据查询结果自动调优语法,并智能联动 Nuclei 推荐精准扫描策略,实现从“被动采集”到“主动智能决策”的红队作业进化。
Web, Desktop & Mobile client for Codex, Claude Code, OpenCode, Kimi, Augment Code, Qwen, fully end-to-end encrypted
A growing collection of MCP servers bringing offensive security tools to AI assistants. Nmap, Ghidra, Nuclei, SQLMap, Hashcat and more.
Security scanner for MCP servers
Xkeen — утилита для роутеров Keenetic. Обеспечивает работоспособность и актуальность ядра Xray и GeoIP / GeoSite из списков AntiZapret / Antifilter / v2fly
Proof of concept code for Datadog Security Labs referenced exploits.
MCP to help Defenders Detection Engineer Harder and Smarter
Open-source, local-first alternative to Cowork-style computer assistants: real PTY terminal ops, explicit approvals, JSONL audit logs. Windows + Linux + macOS. Model agnostic.
IAM Policy Autopilot is an open source static code analysis tool that helps you quickly create baseline AWS IAM policies that you can refine as your application evolves. This tool is available as a command-line utility and MCP server for use within AI coding assistants for quickly building IAM policies.
The easiest way to secure, deploy and manage a Linux VPS
Nova-Proximity is a MCP and Agent Skills security scanner powered with NOVA
Desktop app that automatically scans and blocks malicious MCP traffic in AI apps like Cursor, Claude, VS Code and Windsurf.
Security-audited skills for Claude, Codex & Claude Code. One-click install, quality verified.
Tiny MCP server with cryptography tools, sufficient to establish end-to-end encryption between LLM agents
🛡️Decision infrastructure for AI agents. Intercept actions, enforce guard policies, require approvals, and produce audit-ready decision trails.
Autonomous Web3 security audit agent for Claude Code
A self-hosted "Stealth VPN" implementation, forked from xray-core and WireGuard. It makes your traffic look like normal TLS traffic but little does your ISP know there is an entire encrypted WireGuard tunnel in there...
An MCP (Model Context Protocol) server that brings powerful AWS FinOps capabilities directly into your AI assistant. Analyze cloud costs, audit for waste, and get budget insights using natural language, all while keeping your credentials secure on your local machine.
Open detection standard -- like Sigma, but for AI agents. 311 rules, Cisco AI Defense, 97.1% garak recall.
A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
This Guidance demonstrates how to securely run Model Context Protocol (MCP) servers on the AWS Cloud using containerized architecture. It helps organizations implement industry-standard OAuth 2.0 authentication while protecting server deployments with multiple security layers, including content delivery networks and web application firewalls.
See what your AI agents can access. Scan MCP configs for exposed secrets, shadow APIs, and AI models. Generate AI-BOMs for compliance.
Hands-on projects for beginners to learn and practice essential cybersecurity skills through security assessments.
Allows AI assistants such as Amp/Cline/Cursor/Claude Code/Codex/GitHub Copilot to use Google's lighthouse tool to measure perf metrics for your webpage. You can then run an agentic loop and get the assistants to optimize those metrics!
Offensive security toolkit for Claude Code
Production-ready MCP server template with Streamable HTTP transport. Supports Node.js (Hono) and Cloudflare Workers. Includes OAuth 2.1, multi-tenant sessions, tool/resource/prompt registration, and AES-256-GCM token encryption.
Hands-on DevSecOps project deploying a Tetris game on AWS EKS. Features Jenkins CI/CD, ArgoCD GitOps, Terraform-based IaC, Kubernetes, Docker, Trivy vulnerability scanning, OWASP Dependency-Check, and SonarQube for code quality.
Wireshark-MCP,Give your AI assistant a packet analyzer. Drop a .pcap file, ask questions in plain English — get answers backed by real tshark data.
Remote MCP server (SEE + Streamable HTTP) implementing the MCP spec's authorization extension. Use directly from your agents, or from Cursor / Claude with mcp-remote
Send SSH authentication logs to influxdb with geohashing IP
Modular Context | Karpathy LLM Knowledge Base + Gmail & G-Cal — multi-account MCP server for Claude Code, encrypted local-first
Hands-on MCP security lab: 10 real incidents reproduced with vulnerable/secure MCP servers, pytest regressions, and Claude/Cursor battle-tested exploit walkthroughs
Enterprise-style DevSecOps project deploying a Netflix Clone on AWS. Features Terraform with Terraform Cloud, Jenkins and GitHub Actions CI/CD, Docker, Kubernetes, Trivy and OWASP security scanning, and monitoring with Prometheus and Node Exporter.
Send 89% fewer tokens to your LLM, get the same understanding. AST-first IR engine with tree-sitter parsing, 4-tier node classification, budget-aware context packing, and security scanning.
Automatic security vulnerability remediation for your code.
"Never send a human to do a machine's job" - Open Source AI hacking agent
Give AI agents access to money. Manage finances, trade cryptocurrency. MCP server for AI agents to interact with 20+ blockchains. 380+ tools for DeFi, DEX aggregation, security scanning, cross-chain bridges, QR payments. x402 enabled - AI agents can autonomously pay for premium APIs and trade with other agents. Works with Claude, ChatGPT, Cursor.
Proof of Concept CVE-2025-21420 (Windows Disk Cleanup Tool EoP)
Nuxt module audit tool
Minimal authenticated starter kit for Cloudflare Workers with Vite, React, Hono, and better-auth
Skill from github/gh-aw-firewall
Kirby Plugin for easier Content Security Policy Headers
Security-first package manager for AI agent skills
Docker-based Kali Linux security tools via MCP — 100+ pre-installed penetration testing tools
Automated discovery and exploitation of security vulnerabilities using natural language and LLMs.
Access control for AI agents. MCP proxy with RBAC, CEL policies, and full audit trail.