Enterprise AI Red Team Platform | 企业级AI红队平台 | 132 MCP Tools | Pure Python Engines | SDK+CLI+MCP | Auto-Download sqlmap/nuclei/ffuf | Production C2 | LLM Enhanced | Docker Sandbox | SARIF CI/CD | 1980 Tests
Drift inferred · capture-to-capture
- HIGH code analysis flagged committed secret, dynamic code execution ×4 in Coff0xc/AutoRedTeam-Orchestrator
transport stdio counts 0 tools · 0 res
· 0 prompts
permission surface via code analysis
no tools enumerated yet for this server.
prompt-surface
shipped agent-instruction files + hidden-content / dangerous-code findings —
quoted from the analyzed source
analyzed commit df7c28e · analyzer v18 · 7h ago
danger signals18
- dynamic code execution__import__()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ai_engine.py:150
mod = __import__(module_name, fromlist=[class_name]) - dynamic code executioneval()/exec()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/evasion/payload_obfuscator.py:365
exec({var_name}.decode()) - dynamic code executioneval()/exec()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/persistence/webshell_manager.py:119
eval(${var2}); - dynamic code execution__import__()Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/deploy_security.py:46
__import__(package) - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/constants/security.py:146
("http://169.254.169.254/jwks.json", "metadata_ssrf"), - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/ssrf.py:304
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/ssrf.py:761
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/xxe.py:83
<!ENTITY xxe SYSTEM "http://169.254.169.254/latest/meta-data/"> - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py:433
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py:436
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/engine.py:277
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/ssrf_exploiter.py:48
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/ssrf_exploiter.py:69
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/mega_payloads.py:718
"http://169.254.169.254/", - suspicious endpoint100.100.100.200 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/mega_payloads.py:738
"http://100.100.100.200/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/selector.py:568
"http://169.254.169.254/latest/meta-data/", - suspicious endpoint169.254.169.254 (cloud metadata)Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/vuln_verifier/ssrf.py:54
"http://169.254.169.254/latest/meta-data/", - committed secretGoogle API keyCoff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py:382
AIzaSy…(39 chars, redacted)
evidence-backed
findings quoted directly from the published source artifact — not inferred
filesystem 63
- fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/cli/main.py :18
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ad/kerberos_attacks.py :270
with open(output_file, "w", encoding="utf-8") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ai_decision_engine.py :13
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/c2/beacon.py :798
from pathlib import Path as _Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cloud_security/grpc.py :200
with open(self.cert_path, "rb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cloud_security/kubernetes.py :22
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/config/loader.py :21
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/credential/credential_dumper.py :355
with open(shadow_path, "r", encoding="utf-8", errors="replace") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/credential/password_finder.py :26
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/auto_exploit.py :20
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/examples.py :10
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/poc_engine.py :259
with open(path, "r", encoding="utf-8") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/storage.py :16
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/subscription_manager.py :16
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/update_manager.py :14
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/nuclei_engine.py :21
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py :717
with open(path, "r", encoding="utf-8") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/engine_router.py :19
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/base.py :401
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/base_secure.py :11
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/channels/http.py :54
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/channels/smb.py :14
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/path_traversal_exploiter.py :10
from pathlib import PurePosixPath, PureWindowsPath - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/knowledge/storage.py :13
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/psexec.py :319
with open(temp_file, "wb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/smb.py :520
with open(local_path, "rb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/winrm.py :420
with open(local_path, "rb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/wmi.py :382
with open(temp_file, "r", encoding="utf-8", errors="ignore") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/mcts_planner.py :861
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/engine.py :15
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/loader.py :13
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/selector.py :15
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/post_exploit/executor.py :565
with open(local_path, "rb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/common/enumeration.py :160
with open("/proc/version", "r", encoding="utf-8") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/linux/__init__.py :258
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/windows/__init__.py :71
with open(test_path, "rb"): - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/windows/uac_bypass.py :152
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/directory.py :25
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py :38
# xhr.open('GET', '/api/users') - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/subdomain.py :22
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/reporting/sarif.py :12
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/result_aggregator.py :171
with open(output_file, "w", encoding="utf-8") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/auth_manager.py :16
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/safe_executor.py :9
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/secrets_manager.py :13
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/session/manager.py :12
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/session/storage.py :12
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/proxy_chain.py :14
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/proxy_pool.py :16
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/supply_chain/cicd_security.py :12
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/supply_chain/sbom_generator.py :18
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/tools/tool_manager.py :29
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/handlers/redteam_handlers.py :464
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/handlers/report_handlers.py :6
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/check_paths.py :10
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/deploy_security.py :10
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/fix_fstring_logging.py :15
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/tools/downloader.py :21
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/config.py :28
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/crypto.py :174
with open(filepath, "rb") as f: - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/file_utils.py :27
import shutil - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/logger.py :24
from pathlib import Path - fs Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/mcp_tooling.py :17
from pathlib import Path
shell / exec 27
- shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ad/kerberos_attacks.py :496
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/c2/beacon.py :24
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cloud_security/kubernetes.py :21
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/credential/credential_dumper.py :146
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/credential/password_finder.py :543
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/ssti.py :72
"{{cycler.__init__.__globals__.os.popen('id').read()}}", - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py :333
"{{cycler.__init__.__globals__.os.popen('id').read()}}", - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/engine_router.py :184
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/evasion/payload_obfuscator.py :293
payload='os.system("whoami")', - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/channels/smb.py :201
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/ssti_exploiter.py :73
"{{cycler.__init__.__globals__.os.popen('{{CMD}}').read()}}", - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/persistence/linux_persistence.py :88
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/persistence/webshell_manager.py :460
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/persistence/windows_persistence.py :82
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/common/enumeration.py :178
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/linux/__init__.py :142
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/linux/sudo_bypass.py :15
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/linux/suid_exploit.py :15
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/windows/__init__.py :164
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/windows/token_manipulation.py :77
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/windows/uac_bypass.py :82
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/dns_resolver.py :320
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/safe_executor.py :10
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/tools/tool_manager.py :30
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/handlers/error_handling.py :788
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/scripts/deploy_security.py :9
import subprocess - shell Coff0xc-AutoRedTeam-Orchestrator-df7c28e/tools/downloader.py :266
import subprocess
network 98
- net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/autort/scanner.py :284
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ad/ad_enum.py :22
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ad/kerberos_attack.py :22
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/api_security/base.py :372
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/api_security/cors.py :19
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/api_security/jwt.py :25
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/api_security/oauth.py :23
from urllib.parse import urlencode, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/api_security/websocket.py :23
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/c2/beacon.py :22
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/c2/tunnels/dns.py :22
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/c2/tunnels/http.py :35
import requests # noqa: F401 - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cloud_security/grpc.py :17
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/concurrency/__init__.py :68
response = requests.get(url) - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/concurrency/metrics.py :599
response = requests.get(url) - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/auto_exploit.py :483
import aiohttp - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/poc_engine.py :18
from urllib.parse import urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/sources.py :30
import aiohttp - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/subscription_manager.py :19
import aiohttp - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/update_manager.py :23
import aiohttp - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/idor.py :10
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/open_redirect.py :10
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/path_traversal.py :10
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/access/ssrf.py :11
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/auth/auth_bypass.py :10
from urllib.parse import urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/auth/session.py :10
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/base.py :13
from urllib.parse import urlencode - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/file/lfi.py :10
from urllib.parse import quote - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/file/upload.py :10
from urllib.parse import urljoin - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/crlf_injection.py :22
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/deserialize.py :540
from urllib.parse import quote - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/ldap.py :10
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/prototype_pollution.py :25
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/rce.py :11
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/sqli.py :11
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/ssti.py :10
from urllib.parse import parse_qs, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/injection/xss.py :11
from urllib.parse import parse_qs, quote, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/misc/cors.py :9
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/misc/headers.py :10
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/misc/info_disclosure.py :10
from urllib.parse import urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/nuclei_engine.py :23
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/oob_server.py :23
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/payloads.py :12
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/request/cache_poisoning.py :24
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/request/host_header_injection.py :24
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/detectors/request/http_smuggling.py :23
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/evasion/waf_bypass_engine.py :13
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exceptions/__init__.py :72
response = requests.get(url) - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exceptions/utils.py :86
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/base.py :441
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/base_secure.py :307
response = requests.post(self.config.endpoint, data=data) - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/channels/http.py :79
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exfiltration/channels/icmp.py :54
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/engine.py :185
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/deserialize_exploiter.py :280
from urllib.parse import parse_qs, urlencode, urlparse, urlunparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/http_utils.py :18
from urllib.parse import parse_qs, urlencode, urlparse, urlunparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/rce_exploiter.py :16
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/exploiters/upload_exploiter.py :262
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/pure_scanner.py :41
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/exploit/pure_sqli.py :16
from urllib.parse import parse_qs, quote, urlencode, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/feedback/engine.py :17
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/http/client.py :22
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/http/client_factory.py :4
解决项目中 20+ 处重复创建 requests.Session() 和 aiohttp.ClientSession() 的问题 - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/http/middleware.py :313
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/http/session.py :14
from urllib.parse import urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/smb.py :12
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/ssh.py :13
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/utils.py :12
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/winrm.py :11
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/lateral/wmi.py :11
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/orchestrator/phases/exploit.py :11
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/orchestrator/phases/vuln_scan.py :13
from urllib.parse import parse_qs, urlencode, urlparse, urlunparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/payload/mutator.py :15
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/pipeline.py :284
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/base.py :29
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/directory.py :21
import urllib.error - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/dns_resolver.py :23
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/engine.py :22
import urllib.error - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/fingerprint.py :21
import urllib.error - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py :11
from urllib.parse import urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/passive_recon.py :21
from urllib.parse import quote, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/port_scanner.py :23
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/tech_detect.py :20
import urllib.error - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/waf_detect.py :20
import urllib.error - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/mcp_security.py :30
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/session/http_manager.py :17
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/session/target.py :14
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/controller.py :25
from urllib.parse import parse_qsl, urlencode, urlsplit, urlunsplit - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/fingerprint_spoofer.py :499
# requests.get(url, headers=config['headers'], ...) - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/proxy_chain.py :21
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/proxy_pool.py :18
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/stealth/traffic_mutator.py :14
from urllib.parse import quote, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/supply_chain/dependency_scanner.py :14
import requests - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/vuln_verifier/base.py :13
import socket - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/vuln_verifier/oob.py :385
import urllib.parse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/web_scanner/attack_surface.py :17
from urllib.parse import parse_qs, urljoin, urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/handlers/ai_handlers.py :56
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/templates/poc_template_slim.py :7
from urllib.parse import urlparse - net Coff0xc-AutoRedTeam-Orchestrator-df7c28e/utils/encoding.py :29
from urllib.parse import quote, quote_plus, unquote, unquote_plus
secrets 6
- secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/ad/ad_enum.py :849
import getpass as _getpass - secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/config/loader.py :182
api_key = os.environ.get("AUTOREDTEAM_API_KEY") - secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/manager.py :73
self._nvd_api_key = nvd_api_key or os.environ.get("NVD_API_KEY") - secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/sources.py :939
api_key = api_key or os.environ.get("NVD_API_KEY") - secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/llm/provider.py :58
"AUTORT_LLM_API_KEY", os.environ.get("OPENAI_API_KEY", "") - secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/privilege_escalation/common/enumeration.py :124
import getpass
database 6
- db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/credential/credential_dumper.py :24
import sqlite3 - db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/search.py :11
import sqlite3 - db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/storage.py :12
import sqlite3 - db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/subscription_manager.py :12
import sqlite3 - db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/update_manager.py :15
import sqlite3 - db Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/knowledge/storage.py :10
import sqlite3
tool registrations 8
- cve_sync Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/mcp_integration.py :185
- cve_search_tool Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/mcp_integration.py :190
- cve_statistics Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/mcp_integration.py :200
- cve_detail Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/cve/mcp_integration.py :205
- js_analyze Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py :314
- js_extract_apis Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py :333
- js_extract_secrets Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/recon/js_analyzer.py :346
- lateral_smb_exec Coff0xc-AutoRedTeam-Orchestrator-df7c28e/core/security/mcp_auth_middleware.py :94
declared dependencies 39
- mcp@>=1.0.0
- requests@>=2.31.0
- aiohttp@>=3.9.0
- pyyaml@>=6.0.0
- pydantic@>=2.6.0
- typer@>=0.9.0
- pytest@>=7.4.0
- pytest-cov@>=4.1.0
- black@>=23.12.0
- isort@>=5.13.0
- pylint@>=3.0.0
- openai@>=1.12.0
- anthropic@>=0.18.0
- langchain@>=0.3.0
- langchain-openai@>=0.2.0
- httpx@>=0.26.0
- celery@>=5.3.0
- redis@>=5.0.0
- python-nmap@>=0.7.1
- shodan@>=1.31.0
- censys@>=2.2.0
- dnspython@>=2.5.0
- whois@>=0.9.27
- beautifulsoup4@>=4.12.0
- lxml@>=5.1.0
- paramiko@>=3.4.0
- pexpect@>=4.9.0
- websockets@>=12.0
- cryptography@>=46.0.6,<48.0.0
- sqlalchemy@>=2.0.0
- pymongo@>=4.6.0
- jinja2@>=3.1.0
- markdown@>=3.5.0
- python-docx@>=1.1.0
- reportlab@>=4.0.0
- colorama@>=0.4.6
- rich@>=13.7.0
- click@>=8.1.0
- python-dotenv@>=1.0.0