mirror of
https://github.com/CyberSecurityUP/NeuroSploit.git
synced 2026-03-02 07:43:24 +00:00
116 modules | 100 vuln types | 18 API routes | 18 frontend pages Major features: - VulnEngine: 100 vuln types, 526+ payloads, 12 testers, anti-hallucination prompts - Autonomous Agent: 3-stream auto pentest, multi-session (5 concurrent), pause/resume/stop - CLI Agent: Claude Code / Gemini CLI / Codex CLI inside Kali containers - Validation Pipeline: negative controls, proof of execution, confidence scoring, judge - AI Reasoning: ReACT engine, token budget, endpoint classifier, CVE hunter, deep recon - Multi-Agent: 5 specialists + orchestrator + researcher AI + vuln type agents - RAG System: BM25/TF-IDF/ChromaDB vectorstore, few-shot, reasoning templates - Smart Router: 20 providers (8 CLI OAuth + 12 API), tier failover, token refresh - Kali Sandbox: container-per-scan, 56 tools, VPN support, on-demand install - Full IA Testing: methodology-driven comprehensive pentest sessions - Notifications: Discord, Telegram, WhatsApp/Twilio multi-channel alerts - Frontend: React/TypeScript with 18 pages, real-time WebSocket updates
52 lines
1.2 KiB
YAML
Executable File
52 lines
1.2 KiB
YAML
Executable File
# NeuroSploit v3 - Security Sandbox
|
|
# Isolated container for running real penetration testing tools
|
|
#
|
|
# Usage:
|
|
# docker compose -f docker-compose.sandbox.yml up -d
|
|
# docker compose -f docker-compose.sandbox.yml exec sandbox nuclei -u https://target.com
|
|
# docker compose -f docker-compose.sandbox.yml down
|
|
|
|
services:
|
|
sandbox:
|
|
build:
|
|
context: .
|
|
dockerfile: Dockerfile.sandbox
|
|
image: neurosploit-sandbox:latest
|
|
container_name: neurosploit-sandbox
|
|
command: ["sleep infinity"]
|
|
restart: unless-stopped
|
|
networks:
|
|
- sandbox-net
|
|
volumes:
|
|
- sandbox-output:/opt/output
|
|
- sandbox-templates:/opt/nuclei-templates
|
|
deploy:
|
|
resources:
|
|
limits:
|
|
memory: 2G
|
|
cpus: '2.0'
|
|
reservations:
|
|
memory: 512M
|
|
cpus: '0.5'
|
|
security_opt:
|
|
- no-new-privileges:true
|
|
cap_drop:
|
|
- ALL
|
|
cap_add:
|
|
- NET_RAW # Required for naabu/nmap raw sockets
|
|
- NET_ADMIN # Required for packet capture
|
|
healthcheck:
|
|
test: ["CMD", "/opt/healthcheck.sh"]
|
|
interval: 30s
|
|
timeout: 10s
|
|
retries: 3
|
|
|
|
networks:
|
|
sandbox-net:
|
|
driver: bridge
|
|
internal: false
|
|
|
|
volumes:
|
|
sandbox-output:
|
|
sandbox-templates:
|