Skip to content
@gensecaihq

GenSecAI

A non-profit community using generative AI to defend against AI-powered attacks, building open-source tools to secure our digital future from emerging AI

GenSecAI - Securing the GenAI Future ️

GitHub Organization Website Non-Profit Location

A global community of security researchers, developers, and enthusiasts building open-source tools to secure generative AI applications and infrastructure.


Our Mission

GenSecAI is a non-profit community dedicated to using generative AI to defend against AI-powered attacks. We build open-source tools to secure our digital future from emerging AI threats, making AI security accessible to everyone.


Featured Projects

Shai-Hulud 2.0 Detector

Repo Stars Issues Language

Detect npm packages compromised in the Shai-Hulud 2.0 supply-chain attack with a battle-tested GitHub Action and CLI.

  • Features: Lockfile and repo scanning, SARIF reports, CI/CD integration, allowlist support
  • Tech Stack: TypeScript, GitHub Actions, Node.js
  • Target: Supply chain security for npm projects

react2shell-scanner

Repo Stars Issues Language

Security scanner for CVE-2025-55182 – a critical RCE vulnerability in React Server Components.

  • Features: Scans npm/pnpm/yarn lockfiles, Docker images, SBOMs, and live URLs; auto-fix mode; SARIF output; GitHub Actions; Vercel runtime protection middleware
  • Tech Stack: TypeScript, Node.js, GitHub Actions
  • Use Case: React2Shell exposure detection and mitigation

Wazuh-MCP-Server

Repo Stars Issues Language

AI-powered security operations with Wazuh SIEM + Claude Desktop.

Transform your SOC with natural language threat detection, automated incident response & compliance monitoring.

  • Features: Real-time monitoring, ML anomaly detection, conversational security analysis
  • Tech Stack: Python, Wazuh, MCP Protocol
  • Status: Production-ready

🛡️ KubeKavach

Repo Stars Issues Language

Developer-first Kubernetes security scanner with instant pod replay.

Debug production issues locally in seconds with AI-powered explanations.

  • Features: CERT-IN friendly posture, instant pod replay, AI-guided diagnostics
  • Tech Stack: Go, Kubernetes, AI/ML
  • Use Case: Kubernetes security scanning and compliance

MCP Security Command Center (mcpscc)

Repo Stars Issues Language

“The Trivy of MCP security” – a Security Command Center for Model Context Protocol (MCP) servers.

  • Features: Detects prompt injection, tool poisoning, secret exposure, and misconfigurations; OWASP MCP Top 10 coverage; SARIF/JSON/HTML/PDF outputs
  • Tech Stack: Python, FastAPI, MCP client + YARA rules
  • Use Case: Continuous security scanning of MCP servers and CI/CD pipelines

pfSense-MCP-Server

Repo Stars Issues Language

Manage pfSense firewalls using natural language through AI assistants like Claude Desktop.

  • Features: 5-level RBAC, REST/XML-RPC/SSH support, built-in compliance checks
  • Tech Stack: Python, pfSense, MCP Protocol
  • Benefits: Natural language firewall management

GenAI API Pentest Platform

Repo Stars Issues Language

API security testing tool that leverages multiple Large Language Models (LLMs) to perform intelligent, context-aware API security assessments.

  • Features: Multi-LLM support, context-aware testing, automated vulnerability discovery
  • Tech Stack: Python, multiple LLM providers
  • Target: API security testing

Ubuntu Security Hardening Script

Repo Stars Issues Language

Automates the scanning process using OpenSCAP Security Guide to harden Ubuntu systems, aligning with DISA-STIG-style compliance.

  • Features: Ubuntu 24.04 LTS minimum, opinionated hardening, compliance-friendly profiles
  • Tech Stack: Shell scripting, OpenSCAP
  • Purpose: System hardening and compliance

RDAP Lookup

Repo Stars Issues Language

Modern web application utilizing Next.js App Router to perform robust RDAP queries.

  • Features: Domain/IP/ASN/entity lookup, modern UI, security-centric checks
  • Tech Stack: TypeScript/JavaScript, Next.js
  • Benefits: Structured registration & domain intelligence data

⚠️ MCP Poisoning PoC

Repo Stars Issues Language

Demonstrates various MCP poisoning attacks affecting real-world AI agent workflows.

  • Purpose: Security research and awareness
  • Target: AI agent and tool security
  • Type: Proof of Concept

CVE-2024-3094 Vulnerability Checker & Fixer

Repo Stars Issues Language

Shell scripts to identify and remediate installations of xz-utils affected by CVE-2024-3094.

  • Features: Detection, downgrade/rollback options, Ansible playbook
  • Use Case: Fleet-wide validation during critical backdoor incidents

Sonicwall-MCP-Server

Repo Stars Issues Language

A comprehensive MCP server for analyzing SonicWall firewall logs from SonicOS 7.x and 8.x.

  • Features: Intelligent log analysis, threat detection, security insights via MCP tools
  • Tech Stack: TypeScript, MCP, SSE/HTTP transport
  • Compatibility: SonicOS 7.x and 8.x

Claude-Code-Subagents-Collection

Repo Stars Issues License

A meticulously crafted collection of 75+ specialized Claude Code sub-agents for comprehensive software development support.

  • Features: Curated sub-agents, accuracy-focused, efficiency-optimized
  • Tech Stack: Claude Code framework
  • Purpose: Enhanced AI-assisted development

️MCP-Developer-SubAgent

Repo Stars Issues Language

Specialized framework for MCP development featuring 8 Claude Code sub-agents and production-ready templates.

  • Features: Security hooks, FastMCP server templates, markdown-driven agents
  • Tech Stack: Python, FastMCP, MCP Protocol
  • Benefits: Immediate MCP development assistance

LetsEncrypt-IP-SSL-Manager

Repo Stars Issues Language

Simplifies obtaining and managing Let’s Encrypt IP certificates with automatic renewal and comprehensive validation.

  • Features: Automatic renewal, robust validation, logging
  • Tech Stack: Shell scripting, Let’s Encrypt/Certbot
  • Use Case: SSL certificate management for IP-only endpoints

Nginx-SSL-Automation-LetsEncrypt

Repo Stars Issues Language

Simple shell script for automating the installation and renewal of Let’s Encrypt SSL certificates on Linux servers using Nginx.

  • Features: Automated installation, renewal, Nginx integration
  • Tech Stack: Shell scripting, Nginx, Let’s Encrypt
  • Purpose: Simplify SSL certificate management

Community & Collaboration

We believe in the power of community-driven security research.
Our projects are:

  • 100% Open Source – All tools are freely available
  • 🌍 Globally Collaborative – Contributors from around the world
  • 🧪 Research-Focused – Advancing the state of AI and security
  • 🧱 Practical & Production-Ready – Real-world, deployable solutions

Getting Started

For Security Professionals

  1. Browse our repositories for tools that match your needs
  2. Check individual project documentation for installation and deployment guides
  3. Join our community discussions to share insights and get help

For Contributors

  1. Fork the repository you’re interested in
  2. Create a feature branch (git checkout -b feature/AmazingFeature)
  3. Commit your changes (git commit -m 'Add some AmazingFeature')
  4. Push to the branch (git push origin feature/AmazingFeature)
  5. Open a Pull Request

Our Impact

  • 15+ Active Projects – Covering multiple areas of AI and security
  • Growing Community – Security researchers, developers, and enthusiasts
  • Global Reach – Contributors and users worldwide
  • Enterprise-Ready – Tools used in production environments

Resources


Why GenSecAI?

  1. AI-First Security – We leverage AI to defend against AI threats
  2. Open Source Philosophy – Democratizing AI security for everyone
  3. Practical Solutions – Production-ready tools, not just research
  4. Community Driven – Built by the community, for the community
  5. Compliance Focus – Tools designed with regulatory requirements in mind

License

Most of our projects are released under open-source licenses (MIT, Apache 2.0, etc.).
Please check individual repositories for specific licensing information.


Support Our Mission

As a non-profit organization, we rely on community support to continue our work. You can help by:

  • ⭐ Starring our repositories
  • 🐛 Reporting bugs and suggesting features
  • 🧩 Contributing code and documentation
  • 📣 Spreading the word about our projects
  • ☁️ Supporting our infrastructure costs

Building a secure AI future, one commit at a time.
Made with ❤️ by the GenSecAI Community

Pinned Loading

  1. Wazuh-MCP-Server Wazuh-MCP-Server Public

    AI-powered security operations with Wazuh SIEM + Claude Desktop. Natural language threat detection, automated incident response & compliance. Real-time monitoring, ML anomaly detection. Transform …

    Python 92 28

  2. mcp-poisoning-poc mcp-poisoning-poc Public

    This repository demonstrates a variety of **MCP Poisoning Attacks** affecting real-world AI agent workflows.

    Python 14 4

  3. Ubuntu-Security-Hardening-Script Ubuntu-Security-Hardening-Script Public

    This script automates the scanning process using the OpenSCAP Security Guid to hardening Ubuntu systems, aligning with DISA-STIG compliance for Ubuntu 24.04. LTS minimum. It includes a range of sec…

    Shell 58 9

  4. genai-api-pentest-platform genai-api-pentest-platform Public

    The GenAI API Pentest Platform is a API security testing tool that leverages multiple Large Language Models (LLMs) to perform intelligent, context-aware API security assessments. Unlike traditional…

    Python 12 3

  5. LetsEncrypt-IP-SSL-Manager LetsEncrypt-IP-SSL-Manager Public

    This tool simplifies the process of obtaining and managing Lets' Encrypt IP certificates with automatic renewal, comprehensive validation, and user ready features.

    Shell 5 1

  6. Sonicwall-MCP-Server Sonicwall-MCP-Server Public

    A comprehensive Model Context Protocol (MCP) server for analyzing SonicWall firewall logs from SonicOS 7.x and 8.x. This server provides intelligent log analysis, threat detection, and security ins…

    TypeScript 4

Repositories

Showing 10 of 17 repositories
  • react2shell-scanner Public

    Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components. Scan npm/pnpm/yarn lockfiles, Docker images, SBOMs, and live URLs. Auto-fix, SARIF output, GitHub Actions, Vercel integration, and runtime protection middleware.

    gensecaihq/react2shell-scanner’s past year of commit activity
    TypeScript 19 MIT 1 0 0 Updated Dec 7, 2025
  • shadowgate Public

    High-performance stealth redirector and deception gateway. Traffic filtering with GeoIP, ASN, rate limiting, and boolean rule logic. Reverse proxy with health checks, load balancing, decoys, and tarpit responses.

    gensecaihq/shadowgate’s past year of commit activity
    Go 6 MIT 0 0 0 Updated Dec 7, 2025
  • .github Public
    gensecaihq/.github’s past year of commit activity
    0 0 0 0 Updated Dec 7, 2025
  • Shai-Hulud-2.0-Detector Public

    Detect npm packages compromised in the Shai-Hulud 2.0 supply chain attack (Nov 2025). Scans for 790+ malicious packages, suspicious scripts, TruffleHog activity, SHA1HULUD runners, and secrets exfiltration. GitHub Action with SARIF support.

    gensecaihq/Shai-Hulud-2.0-Detector’s past year of commit activity
    TypeScript 107 MIT 29 0 0 Updated Dec 7, 2025
  • Ubuntu-Security-Hardening-Script Public

    This script automates the scanning process using the OpenSCAP Security Guid to hardening Ubuntu systems, aligning with DISA-STIG compliance for Ubuntu 24.04. LTS minimum. It includes a range of security enhancements and configurations designed to strengthen the security posture of Ubuntu servers.

    gensecaihq/Ubuntu-Security-Hardening-Script’s past year of commit activity
    Shell 58 MIT 9 0 0 Updated Dec 7, 2025
  • mcpscc Public

    Security Command Center for Model Context Protocol (MCP) servers. Detect prompt injection, tool poisoning, secrets, and vulnerabilities. The Trivy of MCP security.

    gensecaihq/mcpscc’s past year of commit activity
    Python 2 Apache-2.0 0 0 0 Updated Dec 5, 2025
  • Wazuh-MCP-Server Public

    AI-powered security operations with Wazuh SIEM + Claude Desktop. Natural language threat detection, automated incident response & compliance. Real-time monitoring, ML anomaly detection. Transform your SOC with conversational security analysis. Production-ready MCP server.

    gensecaihq/Wazuh-MCP-Server’s past year of commit activity
    Python 92 MIT 28 0 0 Updated Nov 28, 2025
  • kubekavach Public

    Developer-first K8s security scanner with instant pod replay. Debug prod issues locally in seconds. AI-powered explanations. CERT-IN compliant for Indian orgs.

    gensecaihq/kubekavach’s past year of commit activity
    TypeScript 4 0 0 12 Updated Nov 20, 2025
  • genai-api-pentest-platform Public

    The GenAI API Pentest Platform is a API security testing tool that leverages multiple Large Language Models (LLMs) to perform intelligent, context-aware API security assessments. Unlike traditional tools that rely on pattern matching, this platform uses AI to understand logic, predict vulnerabilities, and generate sophisticated attack scenario.

    gensecaihq/genai-api-pentest-platform’s past year of commit activity
    Python 12 MIT 3 1 0 Updated Aug 21, 2025
  • pfsense-mcp-server Public

    pfSense MCP Server enables security administrators to manage their pfSense firewalls using natural language through AI assistants like Claude Desktop. Simply ask "Show me blocked IPs" or "Run a PCI compliance check" instead of navigating complex interfaces. Supports REST/XML-RPC/SSH connections, and includes built-in complian

    gensecaihq/pfsense-mcp-server’s past year of commit activity
    Python 25 MIT 2 0 1 Updated Aug 20, 2025

People

This organization has no public members. You must be a member to see who’s a part of this organization.