Automated Adversary Emulation Platform
-
Updated
Aug 27, 2026 - Python
Automated Adversary Emulation Platform
A collection of agents that use Large Language Models (LLMs) to perform tasks common on our day to day jobs in cyber security.
GRFICSv3 is a FREE and open source OT security lab with realistic networking and a 3D process simulation for training and learning ICS security
MITRE Caldera™ for OT Plugins & Capabilities
Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translating those scans into adversaries for network traversal.
Automatic detection engineering technical state compliance
Automated adversary emulation (Caldera) against an AD lab to validate Sigma detection coverage and map results to MITRE ATT&CK.
An AI-powered plugin for Caldera that orchestrates long-running LLM workflows to automatically create adversary emulation abilities and plan operations. Optionally enriches workflows with Retrieval-Augmented Generation (RAG) using Cyber Threat Intelligence (CTI) from STIX JSON files.
Caldera plugin to deploy "humans" to emulate user behavior on systems
This CALDERA Plugin converts Adversary Emulation Plans from the Center for Threat Informed Defense
A CALDERA plugin for autonomous incident response
🔐 Hands-on SOC lab - 12 tools (OpenSearch, Suricata, Zeek, MISP, Caldera, Velociraptor + AI agents) via Docker Compose. MITRE ATT&CK v14. Free
Plugin that serves the ATT&CK website alongside CALDERA.
To associate your repository with the caldera topic, visit your repo's landing page and select "manage topics."