bug bounty agents

173 tagged bug bounty, measured the same way as everything else here.

Browse within: ai-security 89bugcrowd 59hackerone 59ctf 54cybersecurity 53Autonomous Agents 28blue-team 27api-security 17ethical-hacking 16application-security 15cloud-security 15opencode 15claude-ai 9cti 9

autopilot

01

Awarexone/Agentic-Bug-Hunter

Agent

Autonomous hunt loop agent. Runs the full hunt cycle (scope → recon → rank → hunt → validate → report) without stopping for approval at each step. Configurable checkpoints (--paranoid, --normal, --yolo). Uses scopechecker.py for deterministic scope safety on every outbound request. Logs all requests to audit.jsonl.…

4.7k +30 today A 84 tokens original MIT

credential-hunter

02

Awarexone/Agentic-Bug-Hunter

Agent

Autonomous credential-attack pipeline runner. Chains /wordlist-gen + /osint-employees + /breach-check (data-prep stages, runs without prompts) then HARD STOPS before /spray (live attack stage requires human go/no-go). Designed so the user only types the target once instead of orchestrating four separate commands.…

4.7k +30 today A 91 tokens original MIT

token-auditor

03

Awarexone/Agentic-Bug-Hunter

Agent

Fast meme coin and token security auditor. Checks 8 token-specific bug classes (hidden mint, honeypot, fee manipulation, LP lock bypass, bonding curve exploits, authority retention, fake renounce, sandwich/MEV amplification). Runs tokenscanner.py for automated red flag detection. Covers EVM (Solidity) and Solana…

4.7k +30 today A 97 tokens original MIT

malware-analyst

04

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about malware analysis, reverse engineering, binary analysis, disassembly, debugging, sandbox analysis, static analysis, dynamic analysis, or suspicious file triage.

2.2k 16d ago A 44 tokens original MIT

osint-collector

05

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about OSINT, reconnaissance, information gathering, target profiling, email harvesting, subdomain enumeration, social media recon, breach data, open source intelligence, or building a target dossier for authorized engagements.

2.2k 16d ago A 53 tokens original MIT

threat-modeler

06

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about threat modeling, attack surface analysis, STRIDE, DREAD, attack trees, data flow diagrams, trust boundaries, or security architecture review.

2.2k 16d ago A 42 tokens original MIT

H-mmer/pentest-agents

Agent Claude Code

Stealth browser automation agent for targets behind Cloudflare, Akamai, Google, DataDome, or PerimeterX bot detection. Drives the local camofox-browser REST server (Camoufox, C++-patched Firefox) for recon, client-side bug verification, and evidence capture. Prefer this over the Burp-backed browser-agent when the…

813 2mo ago A 98 tokens

sast-gap-analyzer

08

H-mmer/pentest-agents

Agent Claude Code

Analyzes validation gaps in data flows. Takes traced flows and identifies where checks are missing, insufficient, or bypassable. The 'interaction reasoning' step — finds bugs that exist in the gaps between individually correct-looking code. MUST run on Opus. Use via /sast command.

813 2mo ago A 63 tokens

ssti-hunter

09

H-mmer/pentest-agents

Agent Claude Code

Server-Side Template Injection specialist. Covers Jinja2 (H1 #74), Twig, Velocity, FreeMarker, ERB, Handlebars, Thymeleaf. Use for any rule-engine, comment/message rendering, PR automation, admin template, or user-customizable template surface. Systematic blocklist mapper + CVE bypass runner + runtime-vs-parse…

813 2mo ago A 83 tokens

orchestrator

10

deonmenezes/mantishack

Agent

Agent "orchestrator" from deonmenezes/mantishack, covering user updates spec, reviews and general guidelines.

493 21d ago A 0 tokens copy · 94% Apache-2.0

operator

11

NeoTheCapt/RedteamAgent

Agent Claude Code

Lead red team operator. Drives pentest methodology, coordinates phases, dispatches subagents.

122 1mo ago A 20 tokens

active-directory

12

mukul975/Threatswarm

Agent Claude Code

Active Directory and Windows domain attack specialist. Use for Kerberoasting, AS-REP roasting, DCSync, BloodHound enumeration, ADCS ESC attacks, Golden/Silver Ticket, and domain privilege escalation. Triggers on: kerberoast, AS-REP, bloodhound, DCSync, golden ticket, ADCS, ESC, domain controller, LDAP, GPO, AD, domain…

75 4mo ago A 86 tokens original MIT

api-attacker

13

mukul975/Threatswarm

Agent Claude Code

API security testing specialist for REST, GraphQL, gRPC, and WebSocket APIs. Handles BOLA/IDOR, mass assignment, authentication bypass, rate limit evasion, JWT attacks, GraphQL introspection abuse, API enumeration, and OWASP API Top 10. Triggers on: API, REST, GraphQL, gRPC, WebSocket, BOLA, IDOR, mass assignment, API…

75 4mo ago A 105 tokens original MIT

password-attacks

14

mukul975/Threatswarm

Agent Claude Code

Password cracking and credential attack specialist. Use when working with password hashes, hash cracking, wordlist attacks, credential analysis, or password auditing. Triggers on: password, hash, crack, hashcat, john, wordlist, NetNTLMv2, Kerberoast, NTLM, bcrypt, credential, ASREP, JWT crack, mask attack, rule…

75 4mo ago A 88 tokens original MIT

exploiter

15

ByamB4/find-cve-agent

Agent

PoC builder and exploit chainer. Takes Hunter findings and builds working proof-of-concept exploits. Always seeks to escalate impact through vulnerability chaining.

45 5mo ago A 33 tokens original Apache-2.0

hunter

16

ByamB4/find-cve-agent

Agent

Code review specialist. Performs deep source code analysis to find security vulnerabilities by tracing data flows from untrusted input sources to dangerous sinks.

45 5mo ago A 28 tokens original Apache-2.0

validator

17

ByamB4/find-cve-agent

Agent

False positive elimination specialist. Runs 6-gate verification process on every finding. Only CONFIRMED findings proceed to submission. Fail 3x = FALSE POSITIVE, no exceptions.

45 5mo ago A 39 tokens original Apache-2.0

pentester-executor

19

humaidhahm/opencode-pentester

Agent

Executes specific vulnerability tests. Follows 4-phase workflow (Recon → Experiment → Test → Verify), generates PoCs, captures evidence. Specialized by attack type.

21 6d ago A 38 tokens

humaidhahm/opencode-pentester

Agent

Penetration-test PLANNER. Reads confirmed scope and recon results, returns a structured deployment plan (which executors, against which surfaces, in what order, with time allocation and escalation directives). Does NOT deploy executors.

21 6d ago A 51 tokens

xAmirHamza77/PenKit51

Agent

Master coordinator for authorized AI penetration testing — master coordinator for multi-agent orchestration, skill loading, and evidence tracking, skill loading, and evidence tracking.

2 1mo ago A 37 tokens

xAmirHamza77/PenKit51

Agent

Specialist agent for deep vulnerability discovery and validation — loads enhanced exploitation skills per vulnerability class and produces PoC-backed findings.

2 1mo ago A 28 tokens

autopilot

24

ASK191225/bugbounty-kit

Agent

Autonomous hunt loop agent. Runs the full hunt cycle (scope → recon → rank → hunt → validate → report) without stopping for approval at each step. Configurable checkpoints (--paranoid, --normal, --yolo). Uses scopechecker.py for deterministic scope safety on every outbound request. Logs all requests to audit.jsonl.…

2 24d ago A 84 tokens