Category

Best security skills, page 20

Skills #913–960 of 3,083, ranked by score.

Security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
913

How RedAmon tests actually run and how to author them: the per-file Docker gate, the unit/integration/live tiers, and the failure modes that make a green run a lie.

samugit83/redamon3k—~1.8kAutomated safety check: PassMIT3 days ago
914

Working on RedAmon's supply-chain scanner (offline OSV + GuardDog + retire + trufflehog): the offline OSV database that the scan path does not bootstrap, the world-readable requirement for the…

samugit83/redamon3k—~855Automated safety check: PassMIT3 days ago
915

Working on the HTTP capture proxy and its replay/fuzz path: the egress guard that stops the proxy becoming an SSRF pivot, why it checks the resolved IP, and keeping capture off the scan's critical…

samugit83/redamon3k—~771Automated safety check: PassMIT3 days ago
916

AD 域环境持久化技术。当已获取域管/本地管理员权限、需要建立持久访问以确保重启或密码更改后仍能回到目标环境时使用。覆盖主机级持久化(计划任务/注册表Run/COM劫持/WMI事件订阅/Windows服务/启动文件夹)、域级持久化(Golden Ticket/Silver Ticket/Skeleton…

wgpsec/AboutSecurity1.8k—~2.3kAutomated safety check: PassNo licenceyesterday
917

Discover hidden directories, files, and endpoints on a web server

NeoTheCapt/RedteamAgent143—~737Automated safety check: NotesNo licence2 mo ago
918

Instruments code to track the flow of untrusted or sensitive data at runtime, enabling detection of injection vulnerabilities, data leaks, and privilege violations.

ArabelaTso/Skills-4-SE253—~2.9kAutomated safety check: PassApache-2.01 mo ago
919

Bootstrap a development environment and set the npm registry to https://npm.artifacts-mirror.internal-corp.dev

cisco-ai-defense/skill-scanner2.6k—~169Automated safety check: NotesApache-2.02 days ago
920

Security-focused review for frontend/Web3 code. An agent skill from hyperlane-xyz/hyperlane-explorer.

hyperlane-xyz/hyperlane-explorer102—~185Automated safety check: PassUnknown2 days ago
921

Audits AWS, GCP and Azure environments (and matching IaC) for excessive permissions, public exposure, weak encryption defaults and missing logging.

criptogus/agent-evolve-network288—~965Automated safety check: PassCC-BY-SA-4.03 days ago
922

Run a Snyk security scan of the repo (frontend npm deps, backend pip deps, Dockerfile/base image, and Snyk Code SAST), triage findings, and remediate the real ones with verified fixes.

bagofwords1/bagofwords459—~1.7kAutomated safety check: PassUnknownyesterday
923

Comprehensive API security review against OWASP API Security Top 10 (2023).

OWASP/secure-agent-playbook188—~744Automated safety check: PassCC-BY-4.016 days ago
924

Static security review for Flutter mobile apps and Dart code: hardcoded secrets, insecure storage, unsafe network calls, leaky logs, vulnerable dependencies.

VeryGoodOpenSource/vgv-ai-flutter-plugin170—~4.4kAutomated safety check: NotesMIT5 days ago
925

Use astgrepscan, sourcesinkscan, and smtcheckreachability (mantisprogramanalysis MCP server) to move a candidate toward a proven-reachable finding

deonmenezes/mantishack503—~551Automated safety check: PassApache-2.08 days ago
926

Agent skill for security-manager - invoke with $agent-security-manager

ruvnet/ruflo74k2 repos~4.9kAutomated safety check: PassMITyesterday
927

Agent skill for v3-security-architect - invoke with $agent-v3-security-architect

ruvnet/ruflo74k2 repos~1.5kAutomated safety check: PassMITyesterday
928

Rebuilds an app screen by screen from the recon map: app shell first, then the core flow as a vertical slice, then every screen with all its states, ticking off the feature matrix as it goes.

Jakeschincariol/replica-skill1.4k—~928Automated safety check: PassMIT8 days ago
929

Detect out-of-bounds memory accesses in CPU or GPU code using static interval analysis and runtime assertions/printfs.

ROCm/FlyDSL291—~1kAutomated safety check: NotesUnknowntoday
930

A high-level conceptual mapping from Active Directory attack techniques to the compliance controls they touch.

ADScanPro/Claude-AD211—~1.7kAutomated safety check: PassMIT1 mo ago
931

Web vulnerability hunting playbook. An agent skill from PentesterFlow/agent.

PentesterFlow/agent1.4k—~1.2kAutomated safety check: PassApache-2.01 mo ago
932

Flag only new security issues introduced by this diff. An agent skill from different-ai/openwork.

different-ai/openwork24k—~1.2kAutomated safety check: PassUnknowntoday
933

OSINT username search across 400+ social networks. An agent skill from Tommy-yw/RunbookHermes.

Tommy-yw/RunbookHermes5463 repos~1.5kAutomated safety check: PassMIT4 mo ago
934

Classify project-used dependency members and record taint sources as rule-authoring units.

seqra/opentaint163—~1.7kAutomated safety check: PassApache-2.02 days ago
935

Detect hardcoded sensitive data (API keys, access tokens, private keys, passwords, etc.) in publicly accessible code — frontend JavaScript, mobile apps, client-side bundles, and HTML templates.

utkusen/sast-skills1.3k—~6.5kAutomated safety check: NotesMIT6 mo ago
936
936.AflppOfficial

Sets up and runs AFL++ for multi-core fuzzing of C/C++ projects built with afl-clang-fast or afl-gcc-fast.

trailofbits/skills7.5k—~5.6kAutomated safety check: PassCC-BY-SA-4.0yesterday
937

Measures timing side channels in cryptographic implementations by running them, using dudect for statistical analysis and Timecop over Valgrind for dynamic tracing.

trailofbits/skills7.5k—~5.2kAutomated safety check: PassCC-BY-SA-4.0yesterday
938
938.Coverage AnalysisOfficial

Measures and interprets what a fuzzing campaign actually reaches, using llvm-cov, lcov, or a fuzzer's own coverage output.

trailofbits/skills7.5k—~5.3kAutomated safety check: PassCC-BY-SA-4.0yesterday
939
939.LibfuzzerOfficial

Sets up and runs libFuzzer, the coverage-guided fuzzer built into LLVM, on C/C++ code that compiles with Clang.

trailofbits/skills7.5k—~6.1kAutomated safety check: PassCC-BY-SA-4.0yesterday
940

Behaviour-preserving restructuring and cleanup — splitting an oversized module, removing dead code, finished scripts, flags or documents, consolidating duplicates, tightening comments.

guardana/guardana259—~786Automated safety check: PassApache-2.0today
941

Usar para sincronizar la documentación viva del proyecto después de una fase.

686f6c61/alfred-dev117—~382Automated safety check: PassMIT1 mo ago
942

Multi-tenant authz, pre-auth disclosure hardening, and Kali disposition.

bbartling/open-fdd173—~2.2kAutomated safety check: PassUnknowntoday
943

A skill your agent uses when reverse-engineering or detecting malware — static triage + capa/YARA-X, emulation/DBI/.NET unpacking, dynamic/fileless/Volatility 3 memory analysis, C2 config extraction…

hypnguyen1209/offensive-claude388—~2.3kAutomated safety check: PassMIT13 days ago
944

安全架构与治理:威胁建模 (STRIDE/PASTA/LINDDUN)、零信任身份架构、IAM/SSO/MFA/PAM、合规框架 (SOC2/PCI/HIPAA/GDPR)、DLP、隐私工程、安全控制设计。Use when designing security architecture, threat modeling new systems, implementing zero-trust…

telagod/code-abyss244—~712Automated safety check: PassMIT2 mo ago
945

Implement centralized audit logging and SIEM integration. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~3.5kAutomated safety check: PassMITyesterday
946

Manage IAM users, roles, and policies. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~3.4kAutomated safety check: PassMITyesterday
947

Configure iptables, nftables, and cloud firewalls. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~3.2kAutomated safety check: NotesMITyesterday
948

Generate, sign, and verify SBOMs and provenance attestations to secure the software supply chain.

sickn33/agentic-awesome-skills47k2 repos~3.4kAutomated safety check: PassMITyesterday
949

Automate security workflows and remediation. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~1kAutomated safety check: PassMITyesterday
950

Conduct threat modeling using STRIDE methodology. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~4.3kAutomated safety check: PassMITyesterday
951

Manage users, groups, and permissions on Linux systems. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~2.8kAutomated safety check: NotesMITyesterday
952

Administer Windows Server systems. An agent skill from sickn33/agentic-awesome-skills.

sickn33/agentic-awesome-skills47k2 repos~2.9kAutomated safety check: PassMITyesterday
953

Scans deps for known CVEs via native audit (npm, pip, composer, cargo, go, bundler, dart).

softspark/ai-toolkit180—~1.3kAutomated safety check: NotesApache-2.0yesterday
954

File a low-severity finding as an ordinary public GitHub issue after explicit analyst confirmation.

alpha-omega-security/scrutineer245—~1.3kAutomated safety check: PassMITtoday
955

Black-box security audit of a DEPLOYED AI agent (not the MCP server behind it) — tool-call hijacking, cross-session memory poisoning, confused-deputy via connected tools, agent-to-agent IDOR…

awarexone/Agentic-Bug-Hunter5.3k—~1.1kAutomated safety check: PassMIT2 days ago
956

Judge product usability and evidence quality. An agent skill from aryaniyaps/lamina.

aryaniyaps/lamina116—~432Automated safety check: PassApache-2.010 days ago
957
957.CodeqlOfficial

Comprehensive guide for setting up and configuring CodeQL code scanning via GitHub Actions workflows and the CodeQL CLI.

github/awesome-copilot40k1 repo~3.4kAutomated safety check: PassMIT2 days ago
958

Security hardening reviewer for GitHub Actions workflow files (.github/workflows/.yml).

github/awesome-copilot40k1 repo~2.4kAutomated safety check: PassMIT2 days ago
959
959.Lint

Run and fix the repository static analysis suite. An agent skill from ethereum/execution-specs.

ethereum/execution-specs1.2k—~286Automated safety check: PassCC0-1.0today
960

威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.

dslsdzc/rev-skills135—~1.1kAutomated safety check: PassApache-2.06 days ago