New BruteForceArtificial Intelligence tool automatically detects login pages and executes smart brute-force attacks

BruteForceArtificial Intelligence combines large language models with browser automation to identify login forms and run multithreaded, evasion-aware credential tests. The project supports local and cloud LLMs, webhook alerts, SQLite logging and is intended for authorized penetration testing.

BruteForceArtificial Intelligence is a penetration testing framework developed by Mor David that uses large language models alongside browser automation to autonomously locate login forms and perform credential testing. The tool automates form analysis, selector extraction, and attack orchestration to help red teams and security auditors identify weak authentication mechanisms more quickly. The author positions the project for authorized penetration testing, security research, and education, and disclaims liability for illicit use.

The tool operates in two stages. In Stage 1 an LLM (via Ollama or Groq) parses page HTML to identify login form elements, input fields and submission endpoints, and automatically generates precise CSS selectors. The article reports selector detection accuracy of up to 95 percent in real-world tests. Stage 2, the Smart Attack phase, performs multi-threaded credential testing using the AI-discovered selectors and offers two modes: Brute-Force Mode, which exhaustively cycles username and password combinations, and Password-Spray Mode, which tests passwords across multiple usernames to reduce lockouts. Intelligent retry logic, DOM-change detection and feedback learning help validate successful logins.

BruteForceArtificial Intelligence includes a broad evasion and operational feature set: synchronized delays, configurable jitter, random user-agent rotation, proxy support, browser visibility control, and human-like timing patterns to reduce detection. It logs attempts to SQLite, supports real-time webhook notifications to Discord, Slack, Teams and Telegram, and offers output capture, database cleanup and schema inspection tools. Installation requires Python 3.8 or newer, Playwright browsers and standard libraries. After cloning the GitHub repository and installing requirements, users configure an LLM locally with Ollama (for example llama3.2:3b) or in the cloud with Groq (for example llama-3.3-70b-versatile). The article includes command examples for analyze and attack workflows and reiterates that the tool must be used only with proper authorization.

68

Impact Score

Nvidia launches nemotron 3 nano omni for enterprise agents

Nvidia has introduced Nemotron 3 Nano Omni, a multimodal open model designed to support enterprise agents that reason across vision, speech and language. The launch extends Nvidia’s push beyond hardware into models and services while targeting more efficient agentic workflows.

Intel 18A-P node improves performance and efficiency

Intel plans to present new results for its 18A-P process at the VLSI 2026 Symposium, highlighting gains in performance, power efficiency, and manufacturing predictability. The updated node is positioned as a stronger option for customers seeking 18A density with better operating characteristics.

EA CEO defends broader Artificial Intelligence use in game development

EA CEO Andrew Wilson defended the company’s internal use of Artificial Intelligence after employee claims that the tools were slowing work rather than helping. He framed the technology as an aid for repetitive quality assurance tasks, even as concerns persist over its broader impact on development.

Generative Artificial Intelligence is reshaping cybercrime less than feared

Research into criminal underground forums suggests generative Artificial Intelligence is being used mainly as a productivity tool rather than a transformative criminal breakthrough. The biggest near-term risks may come from automation, fraud support, and attackers adapting content to influence chatbot outputs.

Contact Us

Got questions? Use the form to contact us.

Contact Form

Clicking next sends a verification code to your email. After verifying, you can enter your message.