Skip to main content

SoulEyez — AI-Powered Penetration Testing Platform

CI codecov Python 3.9+ Code style: black Security: bandit


What is SoulEyez?

SoulEyez is your penetration testing command center. Instead of juggling dozens of terminal windows and text files, SoulEyez gives you one organized place to:

  • Run security scans — Execute tools like Nmap, Gobuster, SQLMap with simple commands
  • Auto-discover next steps — When one scan finds something interesting, SoulEyez automatically suggests (or runs) the next logical tool
  • Stay organized — Keep all your targets, findings, and credentials in one searchable database
  • Generate reports — Export professional reports when you're done

Who is this for?

  • Security professionals conducting authorized penetration tests
  • CTF players who want better organization during competitions
  • Students learning penetration testing methodology

Important: Only use SoulEyez on systems you have explicit authorization to test. Unauthorized scanning or exploitation is illegal.


Features

Core Capabilities

  • 🎯 Interactive Dashboard — Real-time engagement monitoring with live updates
  • 🔗 Smart Tool Chaining — Automatic follow-up scans based on discoveries
  • 📊 Findings Management — Track and categorize vulnerabilities by severity
  • 🔑 Credential Vault — Encrypted storage for discovered credentials
  • 🌐 Network Mapping — Host discovery and service enumeration
  • 📈 Progress Tracking — Monitor scan completion and tool execution
  • 💾 SQLite Storage — Local database for all engagement data
  • 🔄 Background Jobs — Queue-based tool execution with status monitoring

Integrated Tools (40+)

  • Reconnaissance: nmap, masscan, osint_recon, whois, dnsrecon
  • Web Testing: nikto, gobuster, ffuf, sqlmap, nuclei, wpscan
  • Enumeration: enum4linux-ng, smbmap, crackmapexec, snmpwalk
  • Exploitation: Metasploit integration, searchsploit
  • Password Attacks: hydra, hashcat, john
  • Post-Exploitation: impacket suite, bloodhound

Pentest Workflow & Intelligence

  • 📁 Evidence Vault — Unified artifact collection organized by PTES phases
  • 🎯 Attack Surface Dashboard — Track what's exploited vs pending with priority scoring
  • 💣 Exploit Suggestions — Automatic CVE/Metasploit recommendations for discovered services
  • 🔗 Correlation Engine — Cross-phase attack tracking and gap analysis
  • 📝 Report Generator — Professional reports in Markdown/HTML/PDF formats
  • Deliverable Tracking — Manage testing requirements and acceptance criteria
  • 📸 Screenshot Management — Organized visual evidence by methodology phase

SIEM Integration

  • 🛡️ SIEM Connectors — Connect to Wazuh, Splunk, and other SIEM platforms
  • Detection Validation — Verify if your attacks triggered SIEM alerts
  • 🔍 Vulnerability Management — View CVEs from SIEM vulnerability data
  • ⚖️ Gap Analysis — Compare passive (SIEM) vs active (scan) findings
  • 🗺️ MITRE ATT&CK Reports — Detection coverage heatmaps by technique
  • 📡 Real-time Alerts — Monitor SIEM alerts during live engagements

Practice Lab (NEW in 4.1.0)

  • 🧪 Built-in vulnerable labsouleyez lab spins up intentionally-vulnerable practice targets in Docker on an isolated network, so you always have something safe to point SoulEyez at (learning, demos, chain regression testing)
  • 🎯 Six turnkey targets — OWASP Juice Shop & DVWA (web), Metasploitable 2 & 3 (network hosts), Apache Struts2 S2-045 / CVE-2017-5638 (named CVE), and a vulnerable WordPress (CMS / WPScan)
  • 🧭 Guided setup — walks you through Docker install, daemon, and the docker-group step; offers to register QEMU emulation so x86 targets run on ARM
  • 📋 Beginner cheat sheets — a step-by-step SoulEyez attack walkthrough for each target (souleyez lab cheatsheet <target>), sourced from the tool's own attack-path tests

⚠️ These targets are vulnerable by design. They run on an isolated souleyez-lab bridge network — never expose them to an untrusted network.

FREE vs PRO

Feature FREE PRO
Core features (scans, findings, credentials)
Report generation
AI-powered suggestions & auto-chaining
Metasploit integration & exploit suggestions
SIEM integration & detection validation
MITRE ATT&CK reports

Quick Start

Step 1: Install Prerequisites

sudo apt install pipx    # Install pipx
pipx ensurepath          # Add pipx apps to your PATH
source ~/.bashrc         # Reload shell (Kali: use ~/.zshrc)

Step 2: Install SoulEyez

pipx install souleyez

Step 3: Launch SoulEyez

souleyez interactive

Step 4: First-Time Setup

On your first run, the setup wizard guides you through:

  1. Vault Password — Create a master password that encrypts sensitive data
  2. First Engagement — Set up your first project and select engagement type
  3. Tool Check — Detect and optionally install missing security tools
  4. AI Setup — Configure Ollama for AI features (optional)
  5. Tutorial — Option to run the interactive tutorial (recommended)

Step 5: You're Ready!

Once setup completes, you'll see the main menu.


System Requirements

Component Minimum Recommended
OS Ubuntu 22.04+ Kali Linux
Python 3.9+ 3.11+
RAM 4GB 8GB+
Disk 10GB 50GB+

Supported Operating Systems

OS Status Notes
Kali Linux ✅ Recommended All pentesting tools pre-installed
Ubuntu 22.04+ ✅ Supported Tools installed via souleyez setup
Parrot OS ✅ Supported Security-focused distro
Debian 12+ ✅ Supported Stable base system
macOS/Windows ❌ Not Supported Use Linux in a VM

Common Commands

Command What it does
souleyez interactive Launch the main interface
souleyez dashboard Real-time monitoring view
souleyez doctor Check if everything is set up correctly
souleyez setup Install/update pentesting tools
souleyez lab up Start the built-in vulnerable practice lab
souleyez lab status Show lab targets and their IPs/URLs
souleyez lab cheatsheet <target> Beginner attack guide for a lab target
souleyez --help Show all available commands

Security & Encryption

SoulEyez encrypts all stored credentials using Fernet (AES-128-CBC + HMAC-SHA256) with PBKDF2 key derivation (600k iterations).

  • Master password is never stored (cannot be recovered if lost)
  • Credentials encrypted at rest with industry-standard cryptography
  • Sensitive data is masked in the UI until explicitly revealed

See SECURITY.md for complete security guidelines.


Documentation


Troubleshooting

Problem Solution
"command not found: souleyez" Run pipx ensurepath then restart terminal
"Tool not found" errors Run souleyez setup to install missing tools
Forgot vault password Data is encrypted — start fresh with rm -rf ~/.souleyez
Something seems broken Run souleyez doctor to diagnose

Glossary

New to pentesting? Here are some common terms:

Term Meaning
Engagement A project or assessment — contains all data for one test
Target/Host A computer, server, or device you're testing
Finding A security issue or vulnerability you discovered
Credential Username/password combo found during testing

Support & Feedback


License

See LICENSE for details.


Version: 2.43.21 | Maintainer: CyberSoul Security

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

souleyez-4.2.0.tar.gz (2.2 MB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

souleyez-4.2.0-py3-none-any.whl (2.2 MB view details)

Uploaded Python 3

File details

Details for the file souleyez-4.2.0.tar.gz.

File metadata

  • Download URL: souleyez-4.2.0.tar.gz
  • Upload date:
  • Size: 2.2 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for souleyez-4.2.0.tar.gz
Algorithm Hash digest
SHA256 c2c6e06c1f9e85b9c8cd5ba31e107dc0809191e2e30949572c610e5aaadc5cfd
MD5 b099e79fada8b9c349d8e9e139ca05c1
BLAKE2b-256 312ac8a0fdd38b513e8be3ae9d53c0a4d43768eb13016ce67aef589f8cad83b9

See more details on using hashes here.

Provenance

The following attestation bundles were made for souleyez-4.2.0.tar.gz:

Publisher: python-ci.yml on cyber-soul-security/SoulEyez

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file souleyez-4.2.0-py3-none-any.whl.

File metadata

  • Download URL: souleyez-4.2.0-py3-none-any.whl
  • Upload date:
  • Size: 2.2 MB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for souleyez-4.2.0-py3-none-any.whl
Algorithm Hash digest
SHA256 739a4c340f7578e1c41e97d46fbbad204553fd98e10c498bb54926e942378a68
MD5 41e303a859018981721d8b0b8b8c1b5b
BLAKE2b-256 f13697cb7b6ea57ccebc8f87335b928df9b901de916ecdc2481d1b18da44b3eb

See more details on using hashes here.

Provenance

The following attestation bundles were made for souleyez-4.2.0-py3-none-any.whl:

Publisher: python-ci.yml on cyber-soul-security/SoulEyez

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

This release

4.2.0

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page