MITRE Caldera™ is a cybersecurity platform that automates adversary emulation and supports manual red team operations and incident response activities. The platform is built on the MITRE ATT&CK™ framework and serves as an active research project at MITRE. The framework consists of two main components: Core System: The foundational framework code that includes an asynchronous command-and-control (C2) server with REST API capabilities and a web interface for management and operation. Plugins: Extension repositories that expand the core framework's capabilities by providing additional functionality such as agents, reporting tools, collections of tactics, techniques, and procedures (TTPs), and other operational enhancements. The platform enables security teams to conduct automated adversary emulation exercises, assist red team operations, and streamline incident response processes through its modular architecture and ATT&CK framework integration.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Pacu is an open-source AWS exploitation framework for offensive security testing against cloud environments.
Modular framework for pentesting Modbus protocol with diagnostic and offensive features.
APT Simulator is a tool for simulating a compromised system on Windows.
A login cracker that can be used to crack many types of authentication protocols.
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang for efficient and secure communication.
A free online wargame for practicing hacking skills and learning security concepts.
A guide on using Apache mod_rewrite to strengthen phishing attacks and bypass mobile device restrictions
An AI-powered penetration testing platform that autonomously discovers, exploits, and documents vulnerabilities while generating NIST-compliant reports.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.