{"repo":"bugbasesecurity/pentest-copilot","free":true,"listed":false,"github":"https://github.com/bugbasesecurity/pentest-copilot","clone":"git clone https://github.com/bugbasesecurity/pentest-copilot.git","description":"Pentest Copilot is an AI-powered browser based ethical hacking assistant tool designed to streamline pentesting workflows.","language":"TypeScript","stars":1303,"topics":["ai","cybersecurity","cybersecurity-tools","llms","pentesting"],"license":"MIT","category":"security-tools","readme_excerpt":"Pentest Copilot An open-source, AI-driven penetration testing agent. Connects to a Kali attack box, runs tools autonomously, analyzes results, and iterates. You describe the target. It does the rest. Built for real-world engagements, boot2root boxes, and CTFs. In Action Pentest Copilot performing an auth bypass in OWASP Juice Shop: Watch it on YouTube Star History What It Does - Agentic execution - the AI runs commands directly on the attack box, reads output, decides next steps, and loops. Up to 25 iterations per turn, no manual nudging required. - 16 agent tools - bash, Python scripts, tool installation, shell management, Google search, subagent spawning, Burp Suite (proxy history, Repeater, Intruder, Collaborator), and browser automation. - 100+ capabilities - curated registry of security tools and Python packages across 7 categories (network, rev, pwn, crypto, forensics, stego, core). Select what you need, the agent installs the rest. - Burp Suite integration - proxy history viewer, send requests to Repeater/Intruder, Collaborator for out-of-band testing. All accessible to the agent and through the UI. - Browser agent - real browser automation via Magnitude. Test login flows, fill forms, interact with JavaScript-heavy apps. Optionally proxy traffic through Burp. In Docker mode, watch the browser via the built-in VNC stream; in developer mode, the browser opens on your local desktop. - VPN management - upload .ovpn / .conf bundles with referenced certificates, keys, or cre","default_branch":null,"files":null,"tree":[],"storefront":"/r/bugbasesecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bugbasesecurity/pentest-copilot/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}