#140 · Primary category: Cybersecurity & Decryption Tools
agent-opfor
Open-source adversary emulation for AI agents and MCP servers.
Project last updated:08/18/26
GitHub Stars
576
Forks
28
Contributors
19
License
Apache-2.0
Why we included this project
Before you put an AI agent or MCP server in front of real users, it helps to know what a determined attacker would try. OPFOR runs multi-turn adversarial campaigns that throw prompt injections, jailbreaks, system-prompt extraction, tool-call hijacking, and PII-leak probes at your target, then scores each response with an LLM judge and produces HTML and JSON reports. The attacks map to the OWASP LLM, Agentic AI, MCP, and API security top-ten lists, so you get coverage tied to known risk categories. You can drive it from the CLI or CI, use a browser extension to red-team a deployed chatbot without writing code, or run it as an MCP server so your coding agent tests your other agents. Every request, response, and judge verdict is logged, which makes results reproducible and auditable instead of a black box.
Articles for this project
No articles for this project yet.
To suggest a topic or contribute an article, contact us.
Related projects in this category
reverse-skill
AI-powered skill router for reverse engineering, authorized penetration testing, and security research, with on-demand toolchain bootstrapping and self-evolving knowledge base.
gitleaks
Find secrets with Gitleaks 🔑
osquery
SQL powered operating system instrumentation, monitoring, and analytics.
NeoPass
Your Essential Exam Companion for the Iamneo Portal & NPTEL Exams Disguised as NeoExamShield bypass
anubis
Weighs the soul of incoming HTTP requests to stop AI crawlers