Autoredteam Orchestrator
AI-Driven Automated Red Team Orchestration Framework | AI้ฉฑๅจ็่ชๅจๅ็บข้็ผๆๆกๆถ | 101 MCP Tools | 2000+ Payloads | Full ATT&CK Coverage | MCTS Attack Planner | Knowledge Graph | Cross-platform
Installation
npx autoredteam-orchestratorAsk AI about Autoredteam Orchestrator
Powered by Claude ยท Grounded in docs
I know everything about Autoredteam Orchestrator. Ask me about installation, configuration, usage, or troubleshooting.
0/500
Reviews
Documentation
AutoRedTeam-Orchestrator
ไผไธ็บง AI ็บข้็ผๆๅนณๅฐ
็บฏ Python ๅผๆ | MCP + SDK + CLI ไธๅฑๆฅๅฃ | ๅ
จ้พ่ทฏๆปๅป่ชๅจๅ
ไธบไปไน้ๆฉ AutoRedTeam๏ผ
ๅฏไธไธไพ่ตๅค้จๅทฅๅ ท็ AI ๆธ้ๆต่ฏๆกๆถใ 26 ไธชๆผๆดๆฃๆตๅจๅ จ้จ็บฏ Python ๅฎ็ฐ๏ผๅค้จๅทฅๅ ท๏ผsqlmap/nuclei/ffuf๏ผ่ชๅจไธ่ฝฝๅ ็ฝฎ๏ผๆ ้ๆๅจๅฎ่ฃ ใ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ AutoRedTeam-Orchestrator v3.1.0 โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโค
โ โ 132 MCP ๅทฅๅ
ท โ 26 ๆผๆดๆฃๆตๅจ โ 1980 ๆต่ฏ็จไพ โ
โ โ ็บฏ Python Nuclei ๅผๆ โ MCTS ๆปๅป่งๅ โ SQLite ็ฅ่ฏๅพ่ฐฑ โ
โ โ LLM ๅขๅผบๅณ็ญ โ Docker ๆฒ็ฎฑ โ SARIF CI/CD ้ๆ โ
โ โ SDK + CLI + MCP ไธๅฑ โ ๆจชๅ็งปๅจ/C2/ๆๆ โ OOB ่ฏฏๆฅ้ช่ฏ โ
โ โ ็ไบง็บง C2 Server โ ๅทฅๅ
ท่ชๅจไธ่ฝฝๅ
็ฝฎ โ LaZagne ๅญๆฎ้ๆ โ
โ โ PostExploit ๆง่กๅฑ โ ็ปไธๅผๆ่ทฏ็ฑๅจ โ ่ขซๅจไพฆๅฏ 6 ๆบ โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโค
โ ไธ็งไฝฟ็จๆนๅผ: โ
โ 1. MCP โ Cursor / Windsurf / Kiro / Claude Desktop / Claude Code โ
โ 2. SDK โ from autort import Scanner, AutoPentest โ
โ 3. CLI โ autort scan / autort detect / autort pentest โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
็ฎๅฝ
- ๅฟซ้ๅผๅง
- ไธ็งไฝฟ็จๆนๅผ
- ๆถๆๆป่ง
- ๅทฅๅ ท็ฉ้ต
- ๆ ธๅฟ่ฝๅ
- MCP ้ ็ฝฎ
- CI/CD ้ๆ
- ้ ็ฝฎ่ฏดๆ
- ๅผๅๆๅ
- ่ทฏ็บฟๅพ
- ่ดก็ฎ
- ่ฎธๅฏ่ฏ
ๅฟซ้ๅผๅง
# ๅฎ่ฃ
git clone https://github.com/Coff0xc/AutoRedTeam-Orchestrator.git
cd AutoRedTeam-Orchestrator
pip install -r requirements.txt
# ้ช่ฏ
python -c "from autort import Scanner; print('OK')"
ไธ็งไฝฟ็จๆนๅผ
1. MCP โ AI ็ผ่พๅจ้ๆ
python mcp_stdio_server.py # ๅฏๅจ MCP ๆๅกๅจ
ๅจ AI ็ผ่พๅจไธญ่ช็ถ่ฏญ่จ้ฉฑๅจ๏ผ"ๆซๆ http://target.com ็ SQL ๆณจๅ ฅๆผๆด"
2. Python SDK
import asyncio
from autort import Scanner, Exploiter, AutoPentest
async def main():
# ไพฆๅฏ + ๆผๆดๆฃๆต
scanner = Scanner("http://target.com")
recon = await scanner.full_recon()
vulns = await scanner.detect_vulns(categories=["sqli", "xss", "ssrf"])
# Nuclei ๆจกๆฟๆซๆ (185K+ ็คพๅบๆจกๆฟ)
nuclei_results = await scanner.nuclei_scan(
severity=["high", "critical"], concurrency=20
)
# ไธ้ฎ่ชๅจๅๆธ้
pentest = AutoPentest("http://target.com")
report = await pentest.run(phases=["recon", "detect", "exploit", "report"])
asyncio.run(main())
3. CLI ๅฝไปค่ก
# ไพฆๅฏ
autort scan http://target.com --full
# ๆผๆดๆฃๆต
autort detect http://target.com -c sqli,xss,ssrf
# Nuclei ๆซๆ
autort nuclei http://target.com --severity high,critical --tags cve
# ไธ้ฎๆธ้
autort pentest http://target.com --phases recon,detect,exploit
# CI ๆจกๅผ (SARIF ่พๅบ + ้้ถ้ๅบ็ )
autort detect http://target.com --ci --format sarif -o results.sarif
# ๆฅๅ็ๆ
autort report SESSION-ID --format html -o report.html
ๆถๆๆป่ง
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ AI Editor / User โ
โ (Cursor, Claude Code, CLI, SDK) โ
โโโโโโโโโโโโโโโโฌโโโโโโโโโโโโโโโโโโโโโโโ
โ
โโโโโโโโโโโโโโโโโโโโโโผโโโโโโโโโโโโโโโโโโโโโ
โ โ โ
MCP (JSON-RPC) Python SDK Typer CLI
โ โ โ
โผ โผ โผ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ handlers/ (131 tools) โ
โ recon(8) detector(27) cve(8) exploit(12) lateral(9) โ
โ redteam(14) ad(3) persistence(3) cloud(3) api(7) ... โ
โโโโโโโโโโโโโโโโโโโโโโโโฌโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ
โโโโโโโโโโโโโโโโโโโโโโโโผโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ core/ Engine Layer โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโค
โ detectors/ 26 ็บฏ Python ๆฃๆตๅจ (SQLi/XSS/SSRF/RCE..)โ
โ exploit/ ๅฉ็จๅผๆ (SQLi/RCE/SSRF/XXE/SSTI/ๅๅบๅๅ)โ
โ recon/ 10 ้ถๆฎตไพฆๅฏ (็ซฏๅฃ/DNS/ๆ็บน/ๅญๅๅ/็ฎๅฝ...)โ
โ lateral/ ๆจชๅ็งปๅจ (SMB/SSH/WMI/WinRM/PsExec) โ
โ c2/ C2 ๆกๆถ (Beacon + DNS/HTTP/WS ้ง้) โ
โ orchestrator/ ็ผๆๅจ (MCTS่งๅ + 8้ถๆฎตๆตๆฐด็บฟ) โ
โ nuclei_engine ็บฏ Python Nuclei ๆจกๆฟๅผๆ โ
โ llm/ ็ปไธ LLM Provider (ๅฏ้) โ
โ sandbox/ Docker ๆฒ็ฎฑๆง่กๅจ (ๅฏ้) โ
โ knowledge/ SQLite ็ฅ่ฏๅพ่ฐฑ (17 ๅฎไฝ็ฑปๅ) โ
โ config/ Pydantic ็ปไธ้
็ฝฎ โ
โ ...20+ ๅญๅ
โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
ๅทฅๅ ท็ฉ้ต
| ็ฑปๅซ | ๆฐ้ | ๅ ณ้ฎๅทฅๅ ท |
|---|---|---|
| ไพฆๅฏ | 8 | port_scan, subdomain_enum, fingerprint, waf_detect, dir_scan |
| ๆผๆดๆฃๆต | 27 | sqli_scan, xss_scan, ssrf_scan, rce_scan, nuclei_scan + 22 ็ง |
| CVE | 8 | cve_search, cve_auto_exploit, cve_generate_poc |
| ๅฉ็จ | 12 | auto_pentest, exploit_vulnerability, exploit_by_cve |
| ็บข้ | 14 | c2_beacon_start, payload_obfuscate, waf_bypass, credential_find |
| ๆจชๅ็งปๅจ | 9 | lateral_ssh, lateral_smb, lateral_wmi, lateral_winrm, lateral_psexec |
| AD ๆปๅป | 3 | ad_enumerate, ad_kerberos_attack, ad_spn_scan |
| ๆไน ๅ | 3 | persistence_windows, persistence_linux, persistence_webshell |
| API ๅฎๅ จ | 7 | jwt_scan, graphql_scan, websocket_scan, oauth_scan, cors_deep_scan |
| ไบๅฎๅ จ | 3 | k8s_scan, grpc_scan, aws_scan |
| ไพๅบ้พ | 3 | sbom_generate, dependency_audit, cicd_scan |
| ๅค้จๅทฅๅ ท | 8 | ext_nmap_scan, ext_nuclei_scan, ext_sqlmap_scan, ext_ffuf_fuzz |
| ไผ่ฏ/ๆฅๅ/AI | 9 | session_create, generate_report, smart_analyze |
| ็ฅ่ฏๅพ่ฐฑ/MCTS | 4 | kg_store, kg_query, kg_attack_paths, plan_attack_path |
| ๅนถๅ/่ตๆบ/ๆ็คบ | 11 | parallel_scan + 4 MCP Resources + 6 MCP Prompts |
| ๆป่ฎก | 131 |
ๆ ธๅฟ่ฝๅ
็บฏ Python ๆฃๆตๅผๆ (ๆ ๅค้จไพ่ต)
26 ไธชๆฃๆตๅจ่ฆ็ OWASP Top 10+๏ผ
| ๆฃๆตๅจ | ๆๆฏ | ็ฒพๅบฆ |
|---|---|---|
| SQLi (้่ฏฏ/ๆถ้ด/ๅธๅฐ/UNION) | 60+ DB ้่ฏฏๆจกๅผ, ๅ้ๆถ้ด้ช่ฏ, ็พๅๆฏ้ๅผ | ~90% |
| XSS (ๅๅฐ/DOM/ๅญๅจ) | ็ฒพ็กฎๅๅฐๅน้ + ๅบ็บฟๅฏนๆฏๆ้ค่ช่บซๆ ็ญพ | ~85% |
| SSRF (ไบๅ ๆฐๆฎ/ๅ ้จ/ๅ่ฎฎ) | AWS/GCP/Azure ๅ ๆฐๆฎๆฃๆต + ๅบ็บฟๅๅบๅฏนๆฏ | ~85% |
| RCE (ๅๆพ/ๆถ้ด) | OS ่พๅบๆจกๅผ + ๅ้้ช่ฏ | ~95% |
| + SSTI, XXE, LFI, IDOR, CSRF, ๅๅบๅๅ, CRLF, ๅๅๆฑกๆ, ็ผๅญๆๆฏ... |
่ฏฏๆฅ่ฟๆปค (้ป่ฎคๅผๅฏ)
7 ๅฑ่ฟๆปค + 3 ็ง้ช่ฏ๏ผ
ๆฃๆต็ปๆ โ WAFๆฃๆต โ ้็้ๅถ โ CAPTCHA โ SPA่ฏๅซ โ ๅจๆๅ
ๅฎน โ ้่ฏฏ้กต้ข
โ ็ป่ฎก้ช่ฏ (Welch t-test) โ ๅธๅฐ็ฒๆณจ้ช่ฏ โ OOB ๅ่ฐ้ช่ฏ
Nuclei ๆจกๆฟๅผๆ
็บฏ Python ่งฃๆ Nuclei YAML ๆจกๆฟ๏ผๆ ้ nuclei ไบ่ฟๅถ๏ผ
autort nuclei http://target.com --tags cve,rce --severity critical -n 1000
LLM ๅขๅผบ (ๅฏ้)
# ๅฏ็จ LLM ๅขๅผบๅณ็ญ
export AUTORT_LLM_PROVIDER=ollama # openai/anthropic/ollama/deepseek
export AUTORT_LLM_MODEL=llama3.1 # ๆฌๅฐๆจกๅ, ๆฐๆฎไธๅบๆฌๅฐ
# LLM ไธๅฏ็จๆถ่ชๅจ้ๅ็บฏ่งๅๅผๆ โ ้ถๅฝฑๅ
Docker ๆฒ็ฎฑ (ๅฏ้)
# config/config.yaml
sandbox:
enabled: true
image: "python:3.12-slim"
memory_limit: "512m"
MCP ้ ็ฝฎ
Claude Desktop / Claude Code
{
"mcpServers": {
"redteam": {
"command": "python",
"args": ["E:/path/to/mcp_stdio_server.py"],
"env": {"PYTHONIOENCODING": "utf-8"}
}
}
}
Cursor
{
"mcpServers": {
"redteam": {
"command": "python",
"args": ["/absolute/path/to/mcp_stdio_server.py"]
}
}
}
CI/CD ้ๆ
GitHub Actions
# .github/workflows/security.yml
name: Security Scan
on: [pull_request]
jobs:
autort:
runs-on: ubuntu-latest
steps:
- uses: Coff0xc/AutoRedTeam-Orchestrator@v3.1
with:
target: ${{ secrets.SCAN_TARGET }}
severity-threshold: high
SARIF ็ปๆ่ชๅจไธไผ ๅฐ GitHub Security tabใ
้ ็ฝฎ่ฏดๆ
| ็ฏๅขๅ้ | ้ป่ฎคๅผ | ่ฏดๆ |
|---|---|---|
AUTORT_SCAN_TIMEOUT | 30 | ๆซๆ่ถ ๆถ (็ง) |
AUTORT_HTTP_MAX_RETRIES | 3 | HTTP ้่ฏๆฌกๆฐ |
AUTORT_LLM_PROVIDER | none | LLM ๆไพ่ (openai/anthropic/ollama/none) |
AUTORT_LLM_MODEL | auto | LLM ๆจกๅๅ |
AUTORT_AUTH_MODE | strict | ่ฎค่ฏๆจกๅผ (strict/permissive/disabled) |
ๅฎๆด้
็ฝฎ่ง .env.example ๅ config/config.yamlใ
ๅผๅๆๅ
# ๅฎ่ฃ
ๅผๅไพ่ต
pip install -r requirements-dev.txt
# ๆต่ฏ
pytest # ๅ
จ้ๆต่ฏ (1963 cases)
pytest -m "not slow" # ่ทณ่ฟๆ
ข้ๆต่ฏ
pytest --cov=core --cov=handlers --cov-report=html # ่ฆ็็ๆฅๅ
# ไปฃ็ ่ดจ้
black core/ handlers/ utils/ autort/ cli/
isort core/ handlers/ utils/ autort/ cli/
flake8 core/ handlers/ utils/
mypy core/ handlers/ utils/
่ทฏ็บฟๅพ
- v3.1.0 โ SDK + CLI + LLM + Nuclei + ๆฒ็ฎฑ + CI/CD + ็ฒพๅบฆไผๅ
- v3.2.0 โ Web Dashboard (React)
- v3.2.0 โ ๅค Agent ๅไฝ (ReconAgent/ExploitAgent/ReportAgent)
- v3.3.0 โ Playbook ็ณป็ป (้ข็ฝฎๆปๅปๅงๆฌ)
- v3.3.0 โ DVWA/Juice Shop ่ชๅจๅๅบๅๆต่ฏ
่ดก็ฎ
ๆฌข่ฟ PR๏ผ่ฏท้ตๅพช ่ดก็ฎๆๅใ
# ๆไบค่ง่
feat: ๆฐๅ่ฝ
fix: ไฟฎๅค
docs: ๆๆกฃ
refactor: ้ๆ
test: ๆต่ฏ
security: ๅฎๅ
จไฟฎๅค
่ฎธๅฏ่ฏ
MIT License - Coff0xc
ๅ ่ดฃๅฃฐๆ
ๆฌๅทฅๅ ทไป ไพๆๆๅฎๅ จๆต่ฏๅๆ่ฒ็ ็ฉถไฝฟ็จใไฝฟ็จ่ ๅฟ ้กปๅจ่ทๅพ็ฎๆ ็ณป็ปๆๆ่ ๆ็กฎไนฆ้ขๆๆๅๆนๅฏ่ฟ่กๆต่ฏใไปปไฝๆช็ปๆๆ็ไฝฟ็จๅๅฑ่ฟๆณ่กไธบ๏ผไฝ่ ไธๆฟๆ ไปปไฝๅ ้ๆณไฝฟ็จ่ไบง็็ๆณๅพ่ดฃไปปใ
