T3MP3ST — framework for automated security analysis powered by an AI coding agent

Tools2026-07-08, 10:16
T3MP3ST orchestrates reconnaissance, exploitation, and reporting stages via CLI or a War Room browser, turning the connected AI agent (Claude Code, Codex, Hermes) or local LLM into a guided vulnerability‑discovery tool.
Capabilities: • Multi‑agent architecture: 8 operators aligned with MITRE ATT&CK and Cyber Kill Chain phases. • Integration with local OpenAI‑compatible models without API keys (Ollama, LM Studio, vLLM). • Automatic result verification using npm run verify-claims and recalculation of all metrics based on execution artifacts. • Built‑in safeguards against out‑of‑scope actions. • API, MCP server, and an extensible arsenal of 35 tools (83 in the full set).
Compared to similar frameworks (e.g., Metasploit Framework, Cobalt Strike) T3MP3ST stands out with its cloud‑free, API‑key‑independent architecture and native LLM agent integration. However, the platform remains experimental: the effectiveness of its multi‑agent coordination has yet to be validated by comprehensive benchmarks, unlike traditional C2 frameworks.
Vendors
Elder-Plinius
Mitre
Openai
Products
Claude Code
Cobalt Strike
Codex
Hermes
Lm Studio
Metasploit Framework
More