Skip to main content
ClaudeWave
0xSteph avatar
0xSteph

pentest-ai-agents

Ver en GitHub

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements, analyze recon, research exploits, build detections, audit STIGs, and write reports.

Subagents2k estrellas394 forksShellMITActualizado 1mo ago
ClaudeWave Trust Score
92/100
Verified
Passed
  • Open-source license (MIT)
  • Recently active
  • Healthy fork ratio
  • Clear description
  • Topics declared
Last scanned: 6/11/2026
Install as a Claude Code subagent
Method: Clone
Terminal
git clone https://github.com/0xSteph/pentest-ai-agents && cp pentest-ai-agents/*.md ~/.claude/agents/
1. Clone the repository and copy the agent .md definitions into ~/.claude/agents (or .claude/agents inside a project).
2. Start a new Claude Code session to load the agents.
3. Delegate work to them with the Task/Agent tool or by name.

24 items en este repositorio

ad-attackerSubagent

>-

Instalar
api-securitySubagent

Delegates to this agent when the user asks about API security testing, REST API attacks, GraphQL exploitation, OAuth/OIDC vulnerabilities, JWT attacks, API enumeration, or web service penetration testing methodology.

Instalar

>-

Instalar

>-

Instalar
bug-bountySubagent

>-

Instalar
c2-operatorSubagent

Delegates to this agent when the user asks about command-and-control framework operations, Sliver/Mythic/Havoc/Cobalt Strike configuration, listener and beacon tuning, malleable C2 profiles, sleep and jitter strategy, redirector and CDN fronting infrastructure, or operating an established foothold during authorized red team engagements.

Instalar
cicd-redteamSubagent

>-

Instalar

Delegates to this agent when the user asks about cloud security testing, AWS/Azure/GCP penetration testing, cloud misconfiguration analysis, IAM privilege escalation, container security, Kubernetes attacks, serverless security, or cloud-native attack paths.

Instalar

Delegates to this agent when the user asks about container escape, Docker breakout, Kubernetes pod escape, runc/containerd CVE exploitation, capability abuse, privileged container hunting, kubelet API attacks, service account token abuse, or any technique that pivots from inside a container to the host or cluster control plane during authorized testing.

Instalar

>-

Instalar
ctf-solverSubagent

Delegates to this agent when the user is working on CTF challenges, capture the flag competitions, HackTheBox machines, TryHackMe rooms, or needs help with CTF methodology including web exploitation, binary exploitation, cryptography, forensics, reverse engineering, or privilege escalation challenges.

Instalar

Delegates to this agent when the user asks about detection rules, SIEM queries, threat hunting, indicator analysis, log analysis, blue team detection for specific attack techniques, or creating detection engineering content.

Instalar

Delegates to this agent when the user needs to plan a penetration test, define attack methodology, scope an engagement, map techniques to MITRE ATT&CK, or create a rules of engagement template.

Instalar

>-

Instalar

Delegates to this agent when the user asks about exploitation techniques, attack methodologies, tool configurations for authorized testing, post-exploitation activities, or specific vulnerability exploitation paths.

Instalar

Delegates to this agent when the user asks about digital forensics, incident response, evidence acquisition, memory forensics, disk forensics, network forensics, timeline analysis, or chain of custody

Instalar
llm-redteamSubagent

Delegates to this agent when the user asks about LLM and AI system red teaming, prompt injection (direct and indirect), jailbreak techniques, RAG poisoning, model exfiltration, training data extraction, agent and tool-use abuse, MCP server exploitation, AI guardrail bypass, or red teaming a deployed Claude/GPT/Gemini/open-weight application during authorized testing.

Instalar

Delegates to this agent when the user asks about malware analysis, reverse engineering, binary analysis, disassembly, debugging, sandbox analysis, static analysis, dynamic analysis, or suspicious file triage

Instalar

Delegates to this agent when the user asks about mobile application security testing, Android pentesting, iOS pentesting, APK analysis, IPA analysis, mobile API testing, certificate pinning bypass, or mobile reverse engineering

Instalar

Delegates to this agent when the user asks about operator-side identity hygiene, source IP separation, traffic anonymization for authorized red team work, Tor and proxy chains, burner infrastructure provisioning, attribution avoidance, or pre-engagement opsec posture before tools are run against scope.

Instalar

Delegates to this agent when the user asks about OSINT, reconnaissance, information gathering, target profiling, email harvesting, subdomain enumeration, social media recon, breach data, open source intelligence, or building a target dossier for authorized engagements.

Instalar

Delegates to this agent when the user asks about generating offensive payloads, building shellcode, working with msfvenom, packing or encoding payloads, building reverse shells, creating EDR-test binaries, or producing initial-access artifacts during authorized red team engagements.

Instalar

Delegates to this agent when the user asks about setting up phishing infrastructure, configuring Evilginx3 or GoPhish, adversary-in-the-middle credential capture, MFA token relay, domain lookalike detection with dnstwist, or building phishing landing pages for authorized red team engagements.

Instalar

>-

Instalar
Casos de uso

Resumen de Subagents

README no disponible. Visita el repo en GitHub para la documentación completa.
ai-agentsai-securitybug-bountyclaude-codectfcybersecurityethical-hackinginfoseckali-linuxmitre-attackoffensive-securityoscppenetration-testingpentestpentestingred-teamsecurity-automationsecurity-tools

Lo que la gente pregunta sobre pentest-ai-agents

¿Qué es 0xSteph/pentest-ai-agents?

+

0xSteph/pentest-ai-agents es subagents para el ecosistema de Claude AI. Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements, analyze recon, research exploits, build detections, audit STIGs, and write reports. Tiene 2k estrellas en GitHub y se actualizó por última vez 1mo ago.

¿Cómo se instala pentest-ai-agents?

+

Puedes instalar pentest-ai-agents clonando el repositorio (https://github.com/0xSteph/pentest-ai-agents) o siguiendo las instrucciones del README en GitHub. ClaudeWave también te ofrece bloques de instalación rápida en esta misma página.

¿Es seguro usar 0xSteph/pentest-ai-agents?

+

Nuestro agente de seguridad ha analizado 0xSteph/pentest-ai-agents y le ha asignado un Trust Score de 92/100 (tier: Verified). Revisa el desglose completo de comprobaciones superadas y flags en esta página.

¿Quién mantiene 0xSteph/pentest-ai-agents?

+

0xSteph/pentest-ai-agents es mantenido por 0xSteph. La última actividad registrada en GitHub es de 1mo ago, con 3 issues abiertos.

¿Hay alternativas a pentest-ai-agents?

+

Sí. En ClaudeWave puedes explorar subagents similares en /categories/agents, ordenados por popularidad o actividad reciente.

Despliega pentest-ai-agents en tu cloud

Lleva este repo a producción en minutos. Cada plataforma genera su propio entorno con variables de entorno editables.

¿Mantienes este repo? Añade un badge a tu README

Pega el badge en tu README de GitHub para mostrar que está auditado por ClaudeWave. Cada badge enlaza de vuelta a esta página y muestra el Trust Score actual.

Featured on ClaudeWave: 0xSteph/pentest-ai-agents
[![Featured on ClaudeWave](https://claudewave.com/api/badge/0xsteph-pentest-ai-agents)](https://claudewave.com/repo/0xsteph-pentest-ai-agents)
<a href="https://claudewave.com/repo/0xsteph-pentest-ai-agents"><img src="https://claudewave.com/api/badge/0xsteph-pentest-ai-agents" alt="Featured on ClaudeWave: 0xSteph/pentest-ai-agents" width="320" height="64" /></a>

Más Subagents