Skip to main content
AI-Powered · MCP Server · 150+ Tools

HexStrike AI
Penetration Testing Orchestrator

Bridge large language models to real-world security tools via MCP. Write a scoped objective — HexStrike assists with tool selection, execution, troubleshooting, evidence collection, and reporting.

hexstrike — kali@lab
$ gemini --mcp hexstrike
[MCP] HexStrike server connected · 152 tools available
 
$ Assess 192.168.1.0/24, find all services,
  prioritize findings, collect evidence.
[+] Discovery: 7 hosts found
[+] CVE-2021-4034 confirmed on 192.168.1.42
[!] SSH auth failed — recording credential-risk evidence...
[OK] report.md — evidence and remediation drafted
150+Security Tools
21Guides
4LLM Clients
6Attack Phases

Andrey Pautov

CTI researcher with a strong background in offensive security, penetration testing, and AI-driven attack simulation. Focused on adversary profiling, real-world attack simulations, detection engineering, and red teaming. All techniques are demonstrated in authorized lab environments.

If this research saves you time or helps your work —

Support This Project

Keep the lab running

Not a scanner. An orchestration layer.

Traditional tools execute one command at a time. HexStrike helps coordinate approved tool execution, troubleshooting, evidence collection, and reporting.

AI-Assisted Orchestration

HexStrike helps operators select tools, preserve context, troubleshoot failures, collect evidence, and turn lab results into structured reports.

150+ Security Tools

Nmap, Metasploit, Burp Suite, Hydra, SQLMap, Aircrack-ng, Hashcat, Ghidra, CrackMapExec, Shodan, theHarvester — all orchestrated by natural language prompts.

Multi-LLM Support

Works with Gemini CLI, OpenAI Codex, Cursor (MCP), and local Ollama models. Pick the right engine for the engagement — cloud speed or air-gapped privacy.

Assessment Workflow Coverage

Recon, enumeration, validation, evidence collection, remediation notes, and reporting are organized into repeatable, approval-gated lab workflows.

Real Error Recovery

When tools fail, HexStrike helps diagnose the problem, compare alternatives, and document the recovery path for review.

Structured Reporting

Produces executive summaries, technical findings with CVSS scores, evidence bundles, and prioritized remediation recommendations automatically.

Four steps, one prompt

Write a scoped objective. HexStrike assists with tool selection, execution, and reporting.

1

Write a Goal

Describe your objective in plain language — "Assess this subnet and summarize risk" or "Recover this PDF I own."

2

HexStrike Plans

The LLM proposes tools and sequencing for operator review, then helps keep results and evidence organized.

3

Tools Execute

HexStrike executes approved tool calls, parses results, and feeds findings back into the workflow for the next reviewed step.

4

Report Delivered

Structured findings with evidence, CVSS scores, and remediation recommendations — ready to deliver.

Ready to start your first AI-assisted lab assessment?

Follow the complete guide — from installation to scoped evidence collection and reporting.