Skip to main content

Streamline Your Penetration Testing Workflow

Faction is an all-in-one platform for security teams to create professional penetration testing reports, collaborate in real-time, and track vulnerability remediation from discovery to resolution.

factionversion</div><divclassName="dark:textgreen400textgreen600">Factionv1.7.5</div><divclassName="dark:textgray400textgray600"> faction --version</div> <div className="dark:text-green-400 text-green-600">Faction v1.7.5</div> <div className="dark:text-gray-400 text-gray-600"> docker-compose up
✓ Database ready
✓ Server running on :8080
Ready for assessments

Quick Start

Get Faction running in minutes

1

Install with Docker

Clone the repository and start the containers:
git clone https://github.com/factionsecurity/faction.git
cd faction
docker-compose up --build
MongoDB requires a CPU with AVX support. Check compatibility if using VirtualBox or Kubernetes.
2

Access Your Instance

Navigate to http://127.0.0.1:8080 in your browser. On first boot, you’ll be prompted to create an admin account.
3

Import Vulnerability Templates

Go to TemplatesDefault Vulnerabilities and click Update from Faction to import 75+ pre-populated vulnerability templates.
4

Create Your First Assessment

Create a new assessment, assign team members, and start collaborating. Use the Burp Suite extension to send findings directly from Burp to Faction.

Core Features

Everything you need for professional penetration testing

Automated Reporting

Generate professional DOCX reports with customizable templates. No more manual copy-paste.

Real-Time Collaboration

Work together seamlessly with team members via web interface and Burp Suite integration.

Vulnerability Tracking

Track findings from discovery through remediation with custom SLA alerts and status updates.

Peer Review System

Built-in peer review with track changes ensures quality before report delivery.

Extension Platform

Extend Faction with custom plugins for Jira, ServiceNow, and custom workflows.

Full REST API

Integrate with your tools using our comprehensive REST API.

Explore by Topic

Find what you need to accomplish your goals

Creating Assessments

Schedule and manage security assessments

Custom Templates

Design report templates for different assessment types

Team Management

Organize teams and control access permissions

Burp Suite Integration

Send findings directly from Burp to Faction

Extension Development

Build custom extensions for your workflow

API Reference

Complete REST API documentation

Ready to streamline your pentesting workflow?

Join security teams using Faction to deliver professional reports faster and track remediation more effectively.