Kali-AI Auth v2: Automated Pentest Platform with Authenticated Scanning
Madarson IT · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 2 captures on record
What the publisher says
As described on AWS Marketplace.
This is a repackaged software product wherein additional charges apply for the Kali-AI v2 automated penetration testing platform. Kali-AI v2 is a self-hosted autonomous penetration testing platform built on hardened Ubuntu 24.04 LTS. It runs a 7-tool scanning pipeline, analyzes every finding with Anthropic Claude AI, and generates professional white-label PDF reports automatically - no manual steps between scan launch and final deliverable.
This edition adds Authenticated Scanning: supply a session cookie or custom header per scan, and Kali-AI automatically includes it on every request from Nuclei, Nikto, WhatWeb, Gobuster, WPScan, and SQLMap - surfacing findings on member areas and admin dashboards an unauthenticated scan alone would miss. Credentials are encrypted at rest, redacted from all logs and console output, and never returned by the API or shown in reports.
Show the rest of the publisher’s description (37 more lines)
Designed for MSSPs, security teams, red teams, and penetration testers who need repeatable automated assessments without SaaS pricing or data residency risk. All data stays on your EC2 instance.
## How It Works
Kali-AI v2 executes Nmap, Nuclei, Nikto, WhatWeb, Gobuster, WPScan, and SQLMap in sequence. When an auth cookie or header is supplied, each applicable tool includes it on every request. Findings are correlated, enriched with CVE data, and analyzed by Claude AI to produce an executive summary, risk rating, attack path analysis, remediation plan, and NIST/PCI-DSS/ISO 27001 compliance observations - delivered as a white-label PDF.
## Key Features
- **Authenticated Scanning:** Supply a session cookie or custom header once; applied automatically across Nuclei, Nikto, WhatWeb, Gobuster, WPScan, and SQLMap. Encrypted at rest, never shown in logs or reports.
- **7-Tool Automated Pipeline:** Runs with no manual orchestration required.
- **Claude AI Analysis:** Every finding is risk-rated with actionable narratives, not raw scanner output.
- **White-Label PDF Reports:** Your company name and logo, with email delivery on completion.
- **Security Score Dashboard:** Posture score (0-100, A-F), risk gauge, severity chart, activity timeline.
- **Remediation Tracker:** Assign findings, due dates, status, CSV export.
- **Attack Path Visualization** and **Scan Delta** comparison across assessments.
- **Scheduled Scans:** Cron-based, Full/Quick/Web/Network types.
- **Batch Scanning:** Up to 20 targets with parallel execution.
- **Client and Project Tagging** for MSSP workflows.
- **Security Copilot:** AI assistant for remediation queries.
- **RBAC:** Admin, analyst, auditor roles with JWT authentication.
- **Integrations:** Slack/Teams webhooks, SIEM JSON export, REST API.
## Security and Data Handling
Runs on hardened Ubuntu 24.04 LTS. The first-boot wizard ensures no default credentials exist. RBAC with JWT authentication controls access across roles. Authentication values are encrypted at rest and redacted from logs, console output, and reports. All scan data remains on your EC2 instance with no vendor data retention.
## Getting Started
- Launch an EC2 instance (t3.medium or larger, 30 GB EBS). Open port 80 in your Security Group.
- Open a browser to <ec2-ip> and complete the setup wizard.
- Create your admin account (12+ character password required).
- Add your Anthropic API key in Settings (console.anthropic.com - pay-per-use).
- Launch a scan. Try: scanme.nmap.org. Optionally expand "Authentication" for a session cookie.
- View the AI-analyzed PDF report in Reports.
## Evaluate Before You Commit
Request a sample anonymized PDF report from Madarson IT before deploying. Launch a t3.medium instance and scan scanme.nmap.org to try the full scan-to-report workflow with minimal commitment.
## Requirements and Limitations
- An Anthropic API key is required for Claude AI analysis, billed separately by Anthropic on a pay-per-use basis.
- Authenticated Scanning supports session cookie / header-based authentication. Automated login is not currently supported.
- Buyers should verify compatibility with their target EC2 instance types before deploying at scale.
- For HTTPS, deploy behind an AWS ALB or CloudFront distribution with an ACM certificate.
## Responsible Use
AUTHORIZED USE ONLY. For security testing of systems you have explicit written permission to test, including with Authenticated Scanning. Unauthorized use violates the AWS Acceptable Use Policy, the Computer Fraud and Abuse Act (CFAA), and equivalent laws.
## About Madarson IT
Madarson IT certified images are continuously updated, security-optimized, and built to meet enterprise requirements with minimal configuration. Madarson IT also offers hardened and custom images across AWS, GCP, and Azure Marketplace.
Highlights
Highlighted by the publisher on AWS Marketplace.
Authenticated Scanning Across a 7-Tool Pipeline: Supply a session cookie or custom header once, and Nmap, Nuclei, Nikto, WhatWeb, Gobuster, WPScan, and SQLMap automatically use it to scan behind a login - surfacing findings on member portals, admin dashboards, and other authenticated areas an unauthenticated scan alone would miss. Credentials are encrypted at rest, redacted from logs and reports, and never returned by the API.
White-Label PDF Reports with Claude AI Analysis: Every scan produces a professional PDF report with executive summary, risk rating, attack path analysis, remediation plan, and NIST/PCI-DSS/ISO 27001 compliance observations generated by Claude AI. White-label with your company name and logo for direct client delivery. Email delivery on scan completion included.
Built for MSSP and Enterprise Workflows: Client and project tagging supports multi-tenant operations. Remediation tracker with assignee, due date, and CSV export. Slack, Teams, and SIEM webhooks plus a full REST API enable CI/CD integration. RBAC with admin, analyst, and auditor roles controls access across your team.
Preview
3 imagesAgent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Refund terms
As stated by the publisher on AWS Marketplace.
There is no refund policy for this image
Sources
Publisher resources
4 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

