{"repo":"cdxiaodong/cain-agent","free":true,"listed":false,"github":"https://github.com/cdxiaodong/cain-agent","clone":"git clone https://github.com/cdxiaodong/cain-agent.git","description":"Real-world AI penetration testing engineer for authorized assessments — built-in cloud module covering AWS/Azure/GCP + Aliyun/Tencent/Huawei clouds. Built on Claude Agent SDK","language":"Python","stars":259,"topics":["ai-agent","aliyun","bug-bounty","claude-agent-sdk","cloud-security","offensive-security","penetration-testing","pentest","redteam","security-tools"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"Cain — Real-world AI Penetration Testing Engineer Cain is an AI penetration-testing engineer built for real-world authorized security assessments — not a CTF toy. It walks a deterministic attack pipeline, enforces scope with engineering constraints (not AI self-discipline), and ships a cloud penetration module covering AWS / Azure / GCP / 阿里云 / 腾讯云 / 华为云 — including the Chinese clouds nobody else covers. 🚧 Actively developed. Star & watch for updates. Built on the Claude Agent SDK. --- Why Cain CTF/靶场型 Agent Cain (实战型) --- --- --- Target Static labs, preset flags Real enterprise assets, bug bounty, authorized engagements Vulnerability focus Known syntax-pattern vulns Business-logic flaws, auth chains, cloud misconfigurations Environment No WAF, no rate limiting Real WAF / risk control with dynamic strategy adjustment Deliverable A flag Auditable evidence chain + reproducible PoC + remediation advice --- Features - 🎯 Real-world Focus : Business-logic flaws, auth chains, cloud misconfigurations - ☁️ Cloud Native : AWS / Azure / GCP / 阿里云 / 腾讯云 / 华为云 coverage - 🔒 Safety First : Read-only by default, scope enforcement, credential redaction - 🤖 AI-Powered : Claude Agent SDK with deterministic orchestration - 📊 Benchmark : self-built vulnerable-terraform evaluation, four-metric scoring - 🛡️ OWASP Top 10 : SQLi, XSS, SSRF, CSRF, File Upload, XXE, Command Injection, Path Traversal --- Quick Start For AI Agents — One-Click Install Prompt \"安装 cain-agent 到用户本地 Python 环境，克隆仓库 https","default_branch":null,"files":null,"tree":[],"storefront":"/r/cdxiaodong","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cdxiaodong/cain-agent/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}