v2.0

Autonomous Bug Hunting Guided by Expertise

85 specialized agents orchestrate reconnaissance, vulnerability detection, exploitation, and reporting — covering the full OWASP WSTG test suite. No API key required — use free models or bring your own (Anthropic, OpenAI, Google, GitHub, and more).

dristi — install.sh
$ curl -sSL https://dristi.sh/install | bash
$ ./dristi setup --target example.com
$ dristi hunt --scope "*.example.com"
[+] 85 agents deployed · 86 tools loaded
[+] Phase 1/12 complete · 142 subdomains discovered
$
0
Autonomous Agents
0
Integrated Tools
0
WSTG Tests Covered
0
Pipeline Phases

Built for serious hunting

Dristi combines autonomous reasoning with industry-standard security tools to automate the entire bug bounty workflow.

Deep Reconnaissance

Subdomain enumeration, live host discovery, tech fingerprinting, parameter extraction — surface every attack vector.

Full WSTG Coverage

96+ OWASP WSTG tests automated across 12 categories — from information gathering to client-side testing.

85 Specialized Agents

Hunt-XSS, hunt-SQLi, hunt-SSRF — each vulnerability class has a dedicated agent with deep domain expertise. Works with free models or your own API key.

Exploitation Pipeline

Phase 8 EXPLOIT systematically validates findings with real PoCs before they enter your report.

Smart Prioritization

Risk-scored endpoint queue, attack chain discovery, and automated severity grading keep you focused on what matters.

Professional Reports

CVSS-scored findings with evidence, PoC output, remediation guidance — ready for client delivery or H1 submission.

Up and running in 3 commands

No complex setup. No endless configuration. Install, configure, and start hunting.

Install Tools

One command installs 60+ security tools — Go binaries, Python packages, Cargo crates, and wordlists.

curl -sSL https://dristi.sh/install | bash

Configure Agents

Set up your OpenCode config, agent definitions, and API credentials in one interactive session.

./dristi setup --target example.com

Start Hunting

Launch the full pipeline or target specific vulnerability classes with dedicated hunt agents.

dristi hunt --scope "*.example.com"

Meet the agents

From reconnaissance to reporting — every phase has dedicated specialists.

hunt-xss
hunt-sqli
hunt-ssrf
hunt-ato
hunt-idor
hunt-rce
recon
scope
capture
validate
cloud-iam-deep
supply-chain
m365-entra-attack
enterprise-vpn
hunt-cors
hunt-lfi
hunt-ssti
hunt-nosqli
hunt-oauth
hunt-brute-force
web2-vuln-classes
osint-methodology
report
autopilot