Kali Linux

Gemini CLI to Your Kali Linux Terminal To Automate Penetration Testing Tasks

With the release of Kali Linux 2025.3, a major update introduces an innovative tool that combines artificial intelligence and cybersecurity: the Gemini Command-Line Interface (CLI).

This new open-source package integrates Google’s powerful Gemini AI directly into the terminal, offering penetration testers and security professionals an intelligent assistant designed to streamline and automate complex security workflows.

The introduction of the Gemini CLI marks a pivotal moment in the evolution of penetration testing.

For years, security operations have involved manually chaining together various tools for reconnaissance, enumeration, and exploitation.

Gemini CLI Automates Work Flows

This AI-powered agent promises to transform these workflows by automating repetitive tasks and dynamically adapting reconnaissance strategies.

By offloading the tedious work, the Gemini CLI frees up valuable time for security analysts, allowing them to focus on deeper analysis, vulnerability remediation, and the strategic aspects of application security that still require human expertise.

This shift allows for a more efficient and effective security posture, where human judgment is augmented, not replaced, by machine intelligence. For security professionals, the practical applications are extensive.

The Gemini CLI can assist in testing for common vulnerabilities, including the OWASP Top 10, by providing AI-guided suggestions for both identification and remediation.

Instead of manually scripting connections between different tools, an analyst can now use natural language prompts to direct the AI to perform a sequence of actions.

For example, a tester could instruct Gemini to conduct a port scan, identify services, and then launch a series of vulnerability checks against any discovered web servers.

This capability significantly accelerates the initial phases of a penetration test without sacrificing the rigor and precision that skilled analysts provide. The tool is designed to complement the analyst’s skills, acting as a force multiplier.

The goal is not to replace the critical thinking and intuition of a seasoned expert but to handle the laborious processes that can consume a significant portion of an assessment.

With features like an interactive mode and even a “YOLO” (You Only Live Once) mode to automatically accept all suggested actions, it provides flexibility for different use cases, from careful, supervised testing to rapid, automated scans.

The integration keeps the human operator firmly in control, ensuring that the AI serves as a powerful assistant rather than an autonomous agent.

Getting started with the new tool is straightforward for any Kali user. The gemini-cli package is a lightweight addition, with an installed size of just 12.04 MB.

It can be installed with a simple command: sudo apt install gemini-cli. As the cybersecurity landscape continues to evolve, the integration of AI tools like the Gemini CLI into standard platforms like Kali Linux signifies a clear direction for the industry.

Professionals who embrace these advancements, learning to leverage AI to enhance their natural abilities, will be best positioned to tackle the next generation of security challenges.

Cyber Awareness Month Offer: Upskill With 100+ Premium Cybersecurity Courses From EHA's Diamond Membership: Join Today

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago