openaev: Plan and Run Cyber Adversary Simulations

Summary
OpenAEV helps security teams plan, schedule, and run adversary simulation campaigns and exercises. Use it to coordinate teams, monitor activity, and review security gaps in relation to current threats.
At a glance
- Language
- Java
- License
- NOASSERTION
- Stars
- 1.8k
- Forks
- 228
- Added to OSRepos
- February 22, 2026
- Last analyzed
- October 4, 2026
Topics
Click on any tag to explore related repositories
Use at your own risk
OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of code from these repositories is the user's own responsibility. Always review the repository, source code, dependencies, licenses, and security implications before running or installing anything. OSRepos is not responsible for issues, damages, or losses resulting from third-party repositories.
Overview
OpenAEV is a platform for planning and conducting cyber adversary simulations, from technical tests to strategic exercises. It helps organizations coordinate campaigns, observe progress, and capture feedback so they can assess how their people and defenses respond to threats.
It is suited to security teams that want a shared workspace for exercises and integrations with communication channels and threat knowledge from OpenCTI. The project offers Community and Enterprise editions; available features differ by edition.
Key Features
- Plan and schedule adversary simulation campaigns and tests.
- Organize scenarios, teams, and simulations in one platform.
- Monitor exercises in real time and review statistics and feedback.
- Verify communication means as part of exercises.
- Support injects through integrations such as email, SMS platforms, social media, and alarm systems.
- Connect threat context from the OpenCTI platform to assess security gaps.
Use Cases
- Purple teams can run repeatable adversary simulations and review how defenses respond.
- Security leaders can organize strategic exercises and collect participant feedback.
- Incident response teams can test communication channels and escalation processes during planned exercises.
- Organizations tracking real-world threats can use OpenCTI knowledge to inform simulations and identify potential gaps.
Project Facts
- Language: Java
- License: NOASSERTION
- Stars: 1.8k
- Forks: 228
- Topics: adversary-emulation, adversary-exposure-validation, aev, attack-simulation, breach-simulator, cybersecurity, purple-team
- Archived: false
Getting Started
Use the installation documentation to install with Docker or manually. For details, see the repository README.
Considerations
OpenAEV is described as under heavy development, and the repository reports 841 open issues. Installation and development require following the project's documentation; no specific runtime requirements are provided here. The repository metadata lists the license as NOASSERTION, while the README describes separate Community and Enterprise edition licenses, so review the license files and edition terms before adopting it.
Source repository
Open the original repository on GitHub.
9 counted GitHub visits
Related repositories
Similar repositories that may be relevant next.

awesome-ai-agent-attacks: Track Documented AI Agent Security Incidents
August 15, 2026
A sourced timeline of real AI agent security incidents, breaches, and vulnerabilities from 2024 to 2026. Useful for security researchers, incident responders, and teams assessing risks in agentic systems.

ADR: Secure and Monitor Enterprise AI Agents
August 14, 2026
ADR is an enterprise security toolkit for discovering AI tools, collecting agent activity, benchmarking defenses, and detecting risky behavior. It is aimed at security teams evaluating or monitoring AI agents across employee endpoints and customer-facing systems.

awesome-web-security: Find Web Security Learning Resources
July 9, 2026
A curated directory of web security articles, tools, and references covering vulnerability classes, testing techniques, and browser security. Useful for security learners and practitioners who need a starting point for research or authorized testing.

llm-guard: Add Security Checks to LLM Interactions
June 26, 2026
LLM Guard is a Python toolkit for screening prompts and model outputs for risks such as prompt injection, harmful content, and sensitive data. It is archived, so consider it for existing integrations or evaluation, not as a maintained security layer.