PurpleAILAB has released Decepticon, an open-source Python-based autonomous hacking agent designed for red team operations. The project has accumulated 4,801 GitHub stars, indicating meaningful community interest. It represents a concrete example of AI-powered offensive security tooling in the open-source ecosystem.
PentestAgent is an open-source Python framework that applies AI agent techniques to penetration testing, bug bounty, and red-team workflows. The project has accumulated 2,497 GitHub stars with modest daily traction (+30). It represents a practical deployment of autonomous agent architectures in offensive security contexts.
HexStrike AI is an open-source MCP server that enables AI agents (Claude, GPT, Copilot, and others) to autonomously invoke over 150 offensive security tools for penetration testing, vulnerability discovery, and bug bounty automation. The project bridges LLMs with real-world offensive security capabilities via the Model Context Protocol. With 9,221 GitHub stars, it represents a notable community signal around agentic security tooling and the expanding attack surface of AI-driven automation.
OpenAI has published details on GPT-Red, an automated red teaming system that uses self-play to iteratively improve AI robustness against adversarial prompts, safety failures, and prompt injection attacks. The system is designed to enable self-improvement loops for alignment and safety testing without requiring constant human red teamers. This represents a notable step toward scalable automated safety evaluation infrastructure.
Google has released an open-source Python toolkit called ADK (Agent Development Kit) for building, evaluating, and deploying AI agents. The repository has accumulated over 20,000 GitHub stars, indicating significant community traction. The toolkit targets developers who want code-first control over agent construction and deployment workflows.
Databricks Field Engineering has published an open-source Python toolkit on GitHub aimed at coding agents, accumulating 1,555 stars. The repository appears to provide utilities and scaffolding for building AI-powered development agents on the Databricks platform. It is a community/field engineering project rather than an official product release.
OpenAI published a blog post describing advances in their red teaming methodology, combining human red teamers with AI-assisted approaches. The post outlines how AI tools are being integrated into the red teaming pipeline to improve coverage and efficiency of safety evaluations. This represents an evolution in OpenAI's pre-deployment safety testing practices.
OpenAI has launched Codex Security in research preview, an AI-powered application security agent. It analyzes project context to detect, validate, and patch complex vulnerabilities with the goal of higher confidence and reduced false-positive noise compared to traditional tools. The product extends OpenAI's Codex brand into the security domain.
A GitHub repository providing 754 structured cybersecurity skills designed for AI coding agents, mapped to five major frameworks including MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, and NIST AI RMF. The skills are organized across 26 security domains and conform to the agentskills.io standard. The project claims compatibility with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI, and 20+ other platforms. It has accumulated 7,330 stars with 238 added today, indicating notable community traction.