GitHub organization
Agent skills by cyberful, page 2
Skills by cyberful, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | Operate Prowler, Cloudsplaining, cloud CLIs, policy documents, and resource evidence for advanced AWS, Azure, GCP, and Kubernetes-adjacent posture assessment. | cyberful/ | 135 | — | ~907 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 50 | Operate Cyberful's pinned Foundry toolchain and engagement-owned Anvil lab for authorized EVM smart-contract bug bounty work. | cyberful/ | 135 | — | ~851 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 51 | Operate kubectl, kube-bench, Trivy, Prowler, and manifest/runtime evidence for advanced Kubernetes security assessment. | cyberful/ | 135 | — | ~898 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 52 | Operate AFL++, libFuzzer with Clang sanitizers, and Jazzer for advanced coverage-guided native and JVM fuzzing. | cyberful/ | 135 | — | ~1.3k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 53 | Use sqlmap to confirm and characterize suspected SQL injection with faithful requests and bounded evidence. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 54 | Coordinate testing of authentication and authenticator state across registration, login, MFA, recovery, linking, federation, device trust, reauthentication, suspension, and revocation. | cyberful/ | 135 | — | ~709 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 55 | Coordinate testing of product invariants and multi-step workflows across money, entitlements, approvals, quotas, inventory, onboarding, and distributed state. | cyberful/ | 135 | — | ~714 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 56 | Assess sensitive-data lifecycle, secret handling, cryptographic design and implementation, key management, password storage, randomness, signing, encryption, transport protection, and side channels… | cyberful/ | 135 | — | ~924 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 57 | Assess externally or internally reachable services, administrative planes, debug interfaces, data stores, search clusters, object storage, orphaned DNS, and deployment exposure during authorized… | cyberful/ | 135 | — | ~866 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 58 | Assess server-side URL retrieval and network egress during authorized penetration tests or code audits. | cyberful/ | 135 | — | ~867 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 59 | Test and audit authenticated session state across cookies, opaque tokens, bearer tokens, refresh tokens, devices, browsers, APIs, and privilege transitions. | cyberful/ | 135 | — | ~915 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 60 | Reconstruct request and event causality across gateways, services, queues, workers, data stores, and external providers while preserving identity, tenant, authorization, retry, and side-effect… | cyberful/ | 135 | — | ~617 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 61 | Trace and test untrusted data through SQL, NoSQL, LDAP, XPath, XML, shell, process, template, expression-language, code-evaluation, log, spreadsheet, mail, header, and browser interpreters. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 62 | Transform bounded HAR captures into deterministic HTTP evidence about methods, origins, paths, status classes, header presence, redirects, cookies, and body sizes without replaying traffic or… | cyberful/ | 135 | — | ~544 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 63 | Normalize and correlate bounded SARIF and Cyberful finding exports offline by rule, location, fingerprint, source, level, suppression, and evidence reference without treating scanner severity as… | cyberful/ | 135 | — | ~543 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 64 | Assess AI-system risk from architecture, intended use, affected actors, model limitations, data lineage, autonomy, human oversight, monitoring, and failure consequences. | cyberful/ | 135 | — | ~566 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 65 | Audit build and release pipelines for identity separation, source-to-artifact integrity, provenance, approval, promotion, signing, rollback, and production deployment controls. | cyberful/ | 135 | — | ~555 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 66 | Audit container runtime isolation across namespaces, capabilities, seccomp, mandatory access control, mounts, devices, daemon sockets, cgroups, identity, and host integration. | cyberful/ | 135 | — | ~545 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 67 | Audit secret issuance, storage, delivery, use, rotation, revocation, replication, logging, and break-glass controls across application and cloud systems. | cyberful/ | 135 | — | ~550 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 68 | Audit serverless applications for event-source authority, function identity, tenant context, data exposure, retry behavior, deployment controls, and unsafe service integrations. | cyberful/ | 135 | — | ~577 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 69 | Test authorized retrieval-augmented generation boundaries for tenant isolation, corpus attribution, retrieval integrity, poisoned-content influence, citation fidelity, and protected-data crossover… | cyberful/ | 135 | — | ~612 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 70 | Test authorized serverless event handlers for source authority, signature and replay controls, tenant binding, schema validation, retry behavior, idempotency, and side-effect isolation using bounded… | cyberful/ | 135 | — | ~548 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 71 | Assess identity trust topology, assurance boundaries, issuer and relying-party responsibilities, and failure containment before testing a specific authentication or authorization mechanism. | cyberful/ | 135 | — | ~710 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 72 | Audit where access policy is decided and enforced across source, configuration, services, caches, jobs, and data stores, including deny behavior and decision-input integrity. | cyberful/ | 135 | — | ~725 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 73 | Route a cloud-native security audit across effective IAM, infrastructure as code, build and release paths, containers, Kubernetes, serverless workloads, secrets, event sources, and control-plane… | cyberful/ | 135 | — | ~852 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 74 | Operate a managed Firefox/Marionette laboratory for privileged chrome-context experiments, content automation, real WebDriver windows, permission readback, and synthetic X11 clipboard controls. | cyberful/ | 135 | — | ~673 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 75 | Use the release-embedded MITRE ATT&CK snapshot as a threat-informed reasoning lens without allowing the framework to constrain novel vulnerability discovery. | cyberful/ | 135 | — | ~1.5k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 76 | Test account and authenticator recovery as an assurance transition, including proofing, channel changes, support overrides, replay resistance, and post-recovery invalidation. | cyberful/ | 135 | — | ~665 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 77 | Route an identity assessment across federation architecture, policy enforcement, identity and tenant propagation, workload identity, recovery assurance, linking, and provisioning. | cyberful/ | 135 | — | ~803 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 78 | Route file-ingestion security work across processing pipelines, deserialization and object binding, and SOAP or XML services. | cyberful/ | 135 | — | ~600 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 79 | Route HTTP intermediary testing across request normalization, web-cache behavior, and offline traffic evidence. | cyberful/ | 135 | — | ~630 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 80 | Test identity linking, invitation, merge, provisioning, deprovisioning, and account-association ceremonies for proof-of-control, tenant binding, uniqueness, lifecycle, and rollback failures using… | cyberful/ | 135 | — | ~584 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 81 | Test promotions, referrals, quotas, inventory, and entitlement invariants through authorized, bounded, reversible experiments with tester-controlled accounts and assets. | cyberful/ | 135 | — | ~633 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 82 | Deterministically reconcile bounded offline cloud control-plane snapshots to expose resource, public-access, principal, policy, encryption, logging, and lifecycle drift without querying a live… | cyberful/ | 135 | — | ~471 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 83 | Deterministically compare bounded offline release manifests to identify artifact, digest, provenance, signer, permission, dependency, and deployment-input changes that alter the reviewed security… | cyberful/ | 135 | — | ~477 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 84 | Index and query Cyberful's local semantic Code Graph for repository-wide audits, incremental secure reviews, assessments, remediation blast-radius analysis, symbol and call exploration… | cyberful/ | 135 | — | ~1.9k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 85 | Trace secret fingerprints through bounded offline configuration, deployment, log, and runtime snapshots to identify allowed placement, unexpected propagation, stale copies, and cleanup gaps without… | cyberful/ | 135 | — | ~479 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |