Villager is being pitched as a legitimate AI-powered pentest tool for red teams, but the platform, made by Chinese company Cyberspike, has been loaded almost 11,000 times on PyPI in two months, raising concerns that it is on the same path as Cobalt Strike, another red team tool that became a favorite of malicious actors.
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2025/09/chinese-made-villager-ai-pentest-tool-raises-cobalt-strike-like-concerns/
![]()

