Enterprise DNA Enterprise DNA
O Open Source Orchestration medium

RedAmon

by Community

Open-source, self-hosted AI penetration testing framework: maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and opens

OSS

RedAmon

Added 4 Oct 2026

#agentic-ai #ai #ai-pentesting #attack-surface-management #autonomous-agents #bug-bounty #cybersecurity #ethical-hacking

Overview

Open-source, self-hosted AI penetration testing framework. It maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and opens pull requests that fix what it finds. It supports MCP both ways: plug in any MCP server as a tool, or drive RedAmon from Claude Code or your own agent.

Best for

Best for
Security teams wanting an open-source, agent-driven pentesting framework with human oversight

Use cases

  • Map an organization's attack surface into a graph for analysis
  • Run autonomous penetration tests with human approval checkpoints
  • Integrate MCP servers as tools or orchestrate RedAmon from an external agent

Notes

Open-source, self-hosted AI penetration testing framework. It maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and opens pull requests that fix what it finds. It supports MCP both ways: plug in any MCP server as a tool, or drive RedAmon from Claude Code or your own agent.

2,918 stars on GitHub. Last updated 2026-10-03. Licensed MIT.

Use cases

  • Map an organization’s attack surface into a graph for analysis
  • Run autonomous penetration tests with human approval checkpoints
  • Integrate MCP servers as tools or orchestrate RedAmon from an external agent

Pros

  • Self-hosted and open-source with full control over infrastructure
  • Human approval gates reduce risk during autonomous exploitation
  • Bidirectional MCP support enables flexible agent integration

Cons

  • Requires self-hosting, setup, and ongoing maintenance
  • Python-only codebase may limit adoption in non-Python shops
  • Community project with no commercial support or SLA

Indexed from awesome-langchain and enriched against its public facts.

Pros

  • Self-hosted and open-source with full control over infrastructure
  • Human approval gates reduce risk during autonomous exploitation
  • Bidirectional MCP support enables flexible agent integration

Cons

  • Requires self-hosting, setup, and ongoing maintenance
  • Python-only codebase may limit adoption in non-Python shops
  • Community project with no commercial support or SLA
Free 27-page guide

Get the free Developer’s Field Guide

A 27-page field guide to the AI coding workflow with Claude. Claude Code, MCP servers, the prompt patterns that work, and what to delegate. Free.

Enter your work email. We send it straight over, plus a few short notes worth knowing. Unsubscribe any time.

No spam. Unsubscribe any time.