cybersecurity agents

229 tagged cybersecurity, measured the same way as everything else here.

Browse within: ai-security 73ethical-hacking 59compliance 56framework 56ctf 55bug-bounty 53devsecops 45ai-ops 27open-source 27agentic-security 16attack-trees 16ai-pentesting 15pentesting 15awesome-list 13

malware-analyst

01

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about malware analysis, reverse engineering, binary analysis, disassembly, debugging, sandbox analysis, static analysis, dynamic analysis, or suspicious file triage.

2.2k 15d ago A 44 tokens original MIT

osint-collector

02

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about OSINT, reconnaissance, information gathering, target profiling, email harvesting, subdomain enumeration, social media recon, breach data, open source intelligence, or building a target dossier for authorized engagements.

2.2k 15d ago A 53 tokens original MIT

threat-modeler

03

0xSteph/pentest-ai-agents

Agent

Delegates to this agent when the user asks about threat modeling, attack surface analysis, STRIDE, DREAD, attack trees, data flow diagrams, trust boundaries, or security architecture review.

2.2k 15d ago A 42 tokens original MIT

SHAdd0WTAka/Zen-Ai-Pentest

Agent

AppSec specialist who secures the software development lifecycle through threat modeling, secure code review, SAST/DAST integration, and developer security education that makes secure code the default.

444 20d ago A 40 tokens original MIT

Business Strategist

05

SHAdd0WTAka/Zen-Ai-Pentest

Agent

Senior management consulting specialist for competitive analysis, market entry strategy, business model design, growth planning, organizational strategy, and strategic decision-making — translating complex market dynamics into clear, actionable strategies that create sustainable competitive advantage.

444 20d ago A 45 tokens original MIT

SHAdd0WTAka/Zen-Ai-Pentest

Agent

Expert change management specialist using ADKAR, Kotter, and Prosci frameworks to guide organizations through technology implementations, restructuring, culture transformation, and M&A integration — managing resistance, building adoption, and ensuring changes stick long after go-live.

444 20d ago A 51 tokens original MIT

securityclaw

07

SecurityClaw/SecurityClaw

Agent

Use for SecurityClaw orchestration, routing, skill-manifest, and investigation workflow changes.

268 25d ago A 23 tokens original MIT

idor-agent

08

BugTraceAI/BugTraceAI-CLI

Agent

The IDOR Agent (Insecure Direct Object Reference) is a specialist agent in BugTraceAI that detects and exploits IDOR vulnerabilities. It uses a WET→DRY two-phase pipeline with LLM-powered deduplication and optional deep exploitation analysis.

180 3d ago A 0 tokens AGPL-3.0

csp-bypass-tester

09

Stickman230/claude-pentest

Agent

Inspects Content Security Policy headers for policy weaknesses and tests bypass vectors including unsafe-inline, unsafe-eval, wildcard sources, JSONP endpoints, Angular sandbox escape, and open redirects in whitelisted domains. Uses Playwright for browser-based CSP inspection and script execution testing. Follows…

97 2mo ago A 78 tokens original MIT

injection-tester

10

Stickman230/claude-pentest

Agent

Tests for SQL injection, NoSQL injection, and OS command injection across HTTP parameters, JSON bodies, and headers. Uses sqlmap for automated SQLi detection and curl for manual probing. Follows 4-phase workflow. Deployed by common-appsec-patterns skill coordinator.

97 2mo ago A 60 tokens original MIT

Pentester Executor

11

Stickman230/claude-pentest

Agent

Executes specific vulnerability tests. Follows 4-phase workflow (Recon → Experiment → Test → Verify), generates PoCs, captures evidence. Specialized by attack type.

97 2mo ago A 37 tokens original MIT

davidmatousek/tachi

Agent Claude Code

This document provides comprehensive guidance for designing, customizing, and maintaining agents in Agentic Oriented Development Kit.

89 19d ago A 0 tokens original Apache-2.0

_README

13

davidmatousek/tachi

Agent Claude Code

Quick reference for all agents in {{PROJECTNAME}}.

89 19d ago A 0 tokens original Apache-2.0

tester

14

davidmatousek/tachi

Agent Claude Code

BDD testing specialist using Cucumber/Gherkin framework. Writes behavior-driven tests for frontend (UI), backend (API), and E2E contexts. Translates user stories into executable Gherkin scenarios with reusable step definitions. Validates functionality through plain-English test specifications that serve as living…

89 19d ago A 110 tokens original Apache-2.0

lucy

15

ktol1/RedTeam-Agent

Agent

An AI-assisted framework for security testing that uses many penetration-testing tools through the Model Context Protocol, a standard way for agents to use external tools.

67 4mo ago not scanned tokens not measured

panther-labs/mcp-panther

Agent Claude Code

Use this agent when working with Docker containers, deployment configurations, troubleshooting containerization issues, or answering any DevOps-related questions about hosted applications. Examples: Context: User is having deployment issues running their MCP server in Docker. user: 'My Docker container keeps erroring…

47 3mo ago A 129 tokens original Apache-2.0

blue-team-defender

17

lucasrosati/claude-security-agents

Agent

Defensive security specialist. Use to apply vulnerability fixes, security hardening, security headers implementation, rate limiting, and automated security tests. Works on top of red-team-scanner reports.

21 4mo ago A 42 tokens original MIT

redteam-agent

19

waybarrios/cyber-agent

Agent Claude Code

Red Team penetration testing agent for HTB Expressway. Use when the user wants to attack or pentest the target machine. Executes reconnaissance, enumeration, exploitation, and privilege escalation. ALWAYS shows attack plan first before executing.

21 1mo ago A 48 tokens

report-agent

20

waybarrios/cyber-agent

Agent Claude Code

Security report writer agent. Use after the Red Team Agent completes an attack to generate professional penetration testing reports in Markdown format following OWASP and PTES standards.

21 1mo ago A 34 tokens

analyst

22

Liberty91LTD/cti-skills

Agent Claude Code

Core intelligence analyst. Applies structured analytic techniques, performs threat actor profiling, campaign tracking, and produces analytical judgments. The analytical brain of the platform.

17 28d ago A 32 tokens original MIT

osint-researcher

23

Liberty91LTD/cti-skills

Agent Claude Code

Conducts open-source intelligence research using web search and web fetch. The ONLY agent with WebSearch and WebFetch access.

17 28d ago A 30 tokens original MIT

quality-reviewer

24

Liberty91LTD/cti-skills

Agent Claude Code

Peer reviews intelligence products for accuracy, analytical rigor, proper sourcing, TLP compliance, and tradecraft quality. The quality gate before dissemination.

17 28d ago A 32 tokens original MIT