Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
RedAmon Revolutionizes Automated Penetration Testing

RedAmon Revolutionizes Automated Penetration Testing

Posted on June 29, 2026 By CWS

A groundbreaking open-source security tool, RedAmon, is reshaping the landscape of automated penetration testing. By seamlessly integrating reconnaissance, exploitation, and post-exploitation processes with AI-driven triage and automated code remediation, RedAmon offers a comprehensive security solution. The system culminates in a GitHub pull request, providing a pre-written fix for identified vulnerabilities.

Innovative Framework and Architecture

RedAmon’s modular framework is built on Docker, negating the need to install security tools directly on a host system. The platform’s design revolves around six key components: a parallelized Reconnaissance Pipeline, an AI Agent Orchestrator, an Attack Surface Graph, EvoGraph for cross-session intelligence, the CypherFix remediation engine, and an extensive Project Settings Engine with over 500 parameters. This structured approach ensures a streamlined and effective penetration testing process.

Advanced Reconnaissance and AI Integration

The platform’s reconnaissance pipeline activates more than 40 industry-standard security tools, such as Subfinder, Amass, and Nuclei, within a Kali Linux container. These tools’ outputs are integrated into a Neo4j knowledge graph, featuring 17 node types and over 20 relationship types, allowing the AI agent to rapidly map a structured attack surface. Furthermore, the AI Gauntlet module extends reconnaissance capabilities, using tools like garak and PyRIT to test for vulnerabilities such as prompt injection and data leakage, aligning with OWASP-LLM and MITRE-ATLAS standards.

Autonomous Agents and Remediation

Central to RedAmon is a LangGraph-based autonomous agent following the ReAct (Reasoning + Acting) pattern. Operating through informational, exploitation, and post-exploitation phases, it leverages over 14 security tools, including Metasploit and Hydra, within a sandboxed environment. The Fireteam mode enables simultaneous operations by multiple sub-agents, enhancing efficiency.

Unlike typical offensive tools, RedAmon includes CypherFix, a two-agent remediation pipeline. The Triage Agent processes findings in the Neo4j graph, while the CodeFix Agent makes targeted codebase adjustments, creating a GitHub pull request for review. This system is not fully autonomous; human oversight is incorporated through a Tool Confirmation system, which allows manual intervention during critical operations.

Developed by Samuele Giampieri, an experienced AI Platform Architect, and Ritesh Gohil, a seasoned Cyber Security Engineer, RedAmon supports various LLM providers, including OpenAI and AWS Bedrock. It is accessible on GitHub, offering an innovative and comprehensive solution for modern cybersecurity challenges.

Cyber Security News Tags:AI agents, AI security, AI triage, cyber defense, cybersecurity tools, Docker, GitHub, LangGraph, Neo4j, open source security, penetration testing, reconnaissance tools, RedAmon, security automation, security frameworks

Post navigation

Previous Post: Russian Intelligence Phishing Campaign Targets Messaging Apps
Next Post: OpenAI’s Limited Release of GPT-5.6 Sol with Security Enhancements

Related Posts

Alice Blue Partners With AccuKnox For Regulatory Compliance Alice Blue Partners With AccuKnox For Regulatory Compliance Cyber Security News
Hackers Use ClickFix Technique to Deploy NetSupport RAT via Compromised WordPress Sites Hackers Use ClickFix Technique to Deploy NetSupport RAT via Compromised WordPress Sites Cyber Security News
LiteLLM SQL Injection Threat Exposes Critical Data LiteLLM SQL Injection Threat Exposes Critical Data Cyber Security News
New Windows-Based DarkCloud Stealer Attacking Computers to Steal Login Credentials and Financial Data New Windows-Based DarkCloud Stealer Attacking Computers to Steal Login Credentials and Financial Data Cyber Security News
Earn CPE Credits with SRA’s Purple Team Exercises Earn CPE Credits with SRA’s Purple Team Exercises Cyber Security News
New Data Leak Site Linked to Active Cyber Threat New Data Leak Site Linked to Active Cyber Threat Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • China’s Zhipu AI Matches U.S. Models in Cybersecurity
  • OpenAI’s Limited Release of GPT-5.6 Sol with Security Enhancements
  • RedAmon Revolutionizes Automated Penetration Testing
  • Russian Intelligence Phishing Campaign Targets Messaging Apps
  • Chinese Framework Fuels Massive Scam Network

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • China’s Zhipu AI Matches U.S. Models in Cybersecurity
  • OpenAI’s Limited Release of GPT-5.6 Sol with Security Enhancements
  • RedAmon Revolutionizes Automated Penetration Testing
  • Russian Intelligence Phishing Campaign Targets Messaging Apps
  • Chinese Framework Fuels Massive Scam Network

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark