redamon

redamon

Open-source, self-hosted AI penetration testing framework that automatically discovers and fixes vulnerabilities.

MCPDevOpen source
Type
MCP
Transport
http
Open source
Yes
GitHub Stars
★ 2.9k
Source
mcp-github

Overview

RedAmon is an open-source, self-hosted AI penetration testing framework that maps attack surfaces into graphs and autonomously performs exploit execution from a Kali sandbox. It ensures safety through human approval gates and automatically opens PRs for remediation upon vulnerability detection. RedAmon can function as an MCP server to integrate with other tools or be driven by agents like Claude Code. Ideal for enterprises or developers requiring automated security testing and vulnerability remediation.

Capabilities

  • ▪Attack surface mapping
  • ▪Autonomous vulnerability exploitation
  • ▪Human approval gatekeeping
  • ▪Automatic PR creation for vulnerability fixes
  • ▪Support for multiple security tools

Use cases

Enterprise-grade security testingAutomated vulnerability discovery and remediationCode auditingSecurity research

Setup

Requires: API KeyNode 环境
Refer to the official documentation for deployment: https://github.com/samugit83/redamon/wiki/Deploying-to-a-Server.md

This information was compiled by AI from public sources and may contain inaccuracies — please refer to the source.

FAQ

Can RedAmon be used for unauthorized system testing?

No, it is restricted to authorized security testing, education, and research purposes only.

Which security tools does RedAmon support?

Supports multiple tools including Metasploit, OpenVAS, CypherFix, and more.

Related skills