Ross ROSS = Recommend OSS · open-source software intelligence for agents

OpenAEV-Platform/openaev

Open Adversarial Exposure Validation Platform observed · 2026-08-28

github.com/OpenAEV-Platform/openaev · homepage · Java · NOASSERTION (other) observed · 2026-08-28

Health v2 · maintenance only

95/100

  • Activity 99
  • Release rhythm 86
  • Longevity 100

Flags: no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 3
  • age_days: 3642
  • days_rel: 12
  • days_push: 7
  • n_releases_24m: 124

Full methodology

Adoption not part of the score

1782 stars · 220 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

OpenAEV is an open-source platform for planning, scheduling, and running cyber adversary simulation campaigns and security exercises, from technical attack emulation to strategic tabletop drills. It integrates with OpenCTI for threat context and supports injectors for email, SMS, social media, and other channels.

Use cases

  • run breach and attack simulation campaigns against my infrastructure
  • validate whether our security controls detect adversary techniques
  • schedule purple team exercises with technical and strategic scenarios
  • test incident response and crisis communication with tabletop exercises
  • measure security gaps against real threat intelligence from OpenCTI
  • automate adversarial exposure validation continuously

When to choose

  • you need an open-source alternative to commercial BAS/AEV platforms
  • your team runs purple team or adversary emulation programs and wants scenario management
  • you already use OpenCTI and want threat-informed simulation
  • you need to orchestrate injects across email, SMS, and other channels for exercises

When to avoid

  • you only need a vulnerability scanner or pentest tool rather than simulation orchestration
  • you want a lightweight CLI rather than a full self-hosted platform
  • you need enterprise features like advanced reporting without an EE license

Facets

application · maturity active

security monitoring testing workflow-automation self-hosted security self-hosted cross-platform adversary-emulation breach-and-attack-simulation purple-team exposure-validation cyber-drills attack-simulation opencti-integration devops automation docker web-server

2 sources

Member repositories

RepositoryRoleHealth v2
OpenAEV-Platform/openaevmain95

For agents

markdown · JSON · MCP: product_card(name="OpenAEV-Platform/openaev")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem