mirror of
https://github.com/CyberSecurityUP/NeuroSploit.git
synced 2026-06-30 07:15:30 +02:00
55af0d4634
Re-model the pentest agent into an autonomous, markdown-driven engine that turns a URL into a full engagement and delegates execution to a locally installed agentic CLI backend. Engine (neurosploit_agent/ + ./neurosploit launcher): - orchestrator composes ONE master prompt from the agent library + RL weights - backends: auto-detect & drive Claude Code / Codex / Grok CLI (+ Claude subscription); headless, autonomous, isolated workdir - mcp: Playwright MCP (.mcp.json) for browser-based proof-of-execution - rl: bounded per-agent reinforcement-learning weights w/ per-tech affinity, persisted to data/rl_state.json - models: latest registry incl. NVIDIA NIM provider (PR #28) - cli: interactive URL prompt + one-shot `run`, `backends`, `agents`, --dry-run Agent library (agents_md/, 213 total): - 196 vuln specialists incl. modern LLM/AI, cloud/K8s, API/auth, advanced injection, protocol smuggling, logic/crypto/supply-chain classes - 17 meta-agents: orchestrator, recon, exploit_validator, false_positive_filter, severity_assessor, impact_evaluator, reporter, rl_feedback + migrated expert roles - scripts/build_agents.py data-driven builder; REGISTRY.md index Docs: rewritten README.md, v3.3.0 RELEASE.md, .env.example (NVIDIA NIM, xAI, engine vars). Retire legacy Python orchestration (neurosploit.py + agent classes) to legacy/. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
53 lines
1.5 KiB
Python
53 lines
1.5 KiB
Python
"""Configuration & paths for NeuroSploit v3.3.0."""
|
|
|
|
import os
|
|
from dataclasses import dataclass, field
|
|
from typing import Optional
|
|
|
|
ROOT = os.path.dirname(os.path.dirname(os.path.abspath(__file__)))
|
|
|
|
|
|
def _p(*parts) -> str:
|
|
return os.path.join(ROOT, *parts)
|
|
|
|
|
|
@dataclass
|
|
class RunConfig:
|
|
target: str
|
|
scope: str = ""
|
|
rules_of_engagement: str = "Authorized, non-destructive testing only. No DoS unless explicitly permitted. Stay strictly in scope."
|
|
backend: str = "claude" # claude | codex | grok
|
|
provider: str = "anthropic" # see models.PROVIDERS
|
|
model: str = "claude-opus-4-8"
|
|
autonomous: bool = True
|
|
collaborator: str = "" # OOB callback host for blind vuln proof
|
|
use_rl: bool = True
|
|
use_mcp: bool = True
|
|
max_agents: int = 0 # 0 = no cap (backend prioritises)
|
|
timeout: int = 7200
|
|
dry_run: bool = False
|
|
workdir: str = field(default="")
|
|
|
|
def resolved_workdir(self) -> str:
|
|
return self.workdir or _p("results", _slug(self.target))
|
|
|
|
|
|
def _slug(url: str) -> str:
|
|
s = url.replace("https://", "").replace("http://", "")
|
|
return "".join(c if c.isalnum() else "_" for c in s).strip("_")[:60] or "target"
|
|
|
|
|
|
PATHS = {
|
|
"agents": _p("agents_md"),
|
|
"results": _p("results"),
|
|
"reports": _p("reports"),
|
|
"data": _p("data"),
|
|
"logs": _p("logs"),
|
|
"rl_state": _p("data", "rl_state.json"),
|
|
}
|
|
|
|
|
|
def ensure_dirs():
|
|
for k in ("results", "reports", "data", "logs"):
|
|
os.makedirs(PATHS[k], exist_ok=True)
|