Search
Security · Python
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration abuse, and Man-in-the-Middle interception. | mukul975/ | 34k | — | ~3.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 98 | Detect anomalies in Modbus/TCP and Modbus RTU industrial traffic via function code monitoring, register range validation, timing analysis, and deep packet inspection, using Zeek's Modbus analyzer… | mukul975/ | 34k | — | ~3.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 99 | Detect RDP brute force attacks by parsing Windows Security Event Logs (EVTX files, via python-evtx) for failed logon patterns (Event ID 4625, Logon Type 10/3), correlating with successful logons… | mukul975/ | 34k | — | ~779 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 100 | Configures mutual TLS (mTLS) authentication between microservices using Python cryptography library for certificate generation and ssl module for TLS verification. | mukul975/ | 34k | — | ~650 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 101 | Create, validate, and share STIX 2.1 threat intelligence objects (indicators, malware, campaigns, relationships, bundles) using the stix2 Python library, and publish them over TAXII 2.1. | mukul975/ | 34k | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 102 | Maps observed adversary behaviors, security alerts, and detection rules to MITRE ATT&CK techniques and sub-techniques to quantify detection coverage and guide control prioritization. | mukul975/ | 34k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 103 | Deploy OpenCTI (Filigran) via Docker Compose and use the pycti Python client to model threat actors, intrusion sets, campaigns, and indicators as a STIX 2.1 knowledge graph with relationships (uses… | mukul975/ | 34k | — | ~2.8k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 104 | Audits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces… | mukul975/ | 34k | — | ~648 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 105 | Performs rapid malware triage and classification using YARA rules that match file patterns, strings, byte sequences, and structural characteristics against known malware families and suspicious… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 106 | Conducts a sector-specific threat landscape assessment (financial, healthcare, energy, government, etc.) by profiling targeting threat actors, mapping attack vectors and MITRE ATT&CK TTPs with the… | mukul975/ | 34k | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 107 | Scan package dependencies for known vulnerabilities using Snyk, Dependabot, and OWASP Dependency-Check. | sickn33/ | 47k | 1 repo | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 108 | 108.Sast Scanning Perform static application security testing with tools like Semgrep, CodeQL, and SonarQube. | sickn33/ | 47k | 1 repo | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 109 | Automates the full SSL/TLS certificate lifecycle, including generating Certificate Signing Requests, issuing, deploying, monitoring, renewing, and revoking X.509 certificates, using Python and ACME… | mukul975/ | 34k | — | ~867 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 110 | Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. | mukul975/ | 34k | — | ~543 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 111 | Parse Windows PowerShell Script Block Logs (Event ID 4104) from EVTX files to detect obfuscated commands, encoded payloads, and living-off-the-land techniques. | mukul975/ | 34k | — | ~666 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 112 | Audit Azure Blob and ADLS storage accounts for public access exposure, weak or long-lived SAS tokens, missing encryption at rest, disabled HTTPS-only traffic, and outdated TLS versions, using the… | mukul975/ | 34k | — | ~732 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 113 | Detect unauthorized SaaS and cloud service usage (shadow IT) by parsing proxy access logs, DNS query logs, and firewall/netflow data with Python pandas to aggregate traffic by domain, classify… | mukul975/ | 34k | — | ~637 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 114 | Detect NTFS timestamp manipulation (MITRE T1070.006) by comparing $STANDARDINFORMATION vs $FILENAME timestamps in the MFT. | mukul975/ | 34k | — | ~3.6k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 115 | Detects T1547.001 startup folder persistence by monitoring Windows startup directories for suspicious file creation, cross-referencing Autoruns entries, and running a Python watchdog script for… | mukul975/ | 34k | — | ~676 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 116 | Deploy and operate Greenbone/OpenVAS vulnerability management using the python-gvm library over the Greenbone Management Protocol (GMP) to connect via Unix socket or TLS, create scan targets and… | mukul975/ | 34k | — | ~778 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 117 | Integrates Hardware Security Modules (HSMs) via the PKCS11 interface using python-pkcs11, performing key generation, signing, encryption, verification, and token/slot queries against SoftHSM2, AWS… | mukul975/ | 34k | — | ~617 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 118 | Assess SSL/TLS server configurations using the sslyze Python scanning library to evaluate supported protocol versions, cipher suite strength, certificate chain validation, HSTS enforcement, OCSP… | mukul975/ | 34k | — | ~597 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 119 | Use YARA pattern-matching rules to hunt for malware, suspicious files, and indicators of compromise across filesystems and memory dumps. | mukul975/ | 34k | — | ~3.5k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 120 | Use as the lead skill when Python tests must expose scheduler/interleaving bugs in asyncio, threading, queues, workers, databases, caches, or mixed-concurrency code | dzhalaevd/ | 135 | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 121 | PreToolUse security-anti-pattern hook for Claude Code. An agent skill from alirezarezvani/claude-skills. | alirezarezvani/ | 28k | — | ~1.9k | Automated safety check: Pass | MIT | 1 mo ago |
| 122 | Apply Karpathy-style minimalism and anti-dependency principles to code and system design. | LearnPrompt/ | 109 | — | ~1.6k | Automated safety check: Pass | MIT | 3 mo ago |
| 123 | Deploy Runtime Application Self-Protection (RASP) agents to detect and block attacks from within application runtime, covering OpenRASP integration, attack pattern detection, and security policy… | mukul975/ | 34k | — | ~754 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 124 | Handle CVE/vulnerability reports from security linters (trivy, osv-scanner, etc.). | hardisgroupcom/ | 401 | — | ~1.3k | Automated safety check: Notes | AGPL-3.0 | today |
| 125 | Azure Key Vault SDK for Python. An agent skill from microsoft/skills. | microsoft/ | 3.1k | — | ~2.4k | Automated safety check: Pass | MIT | 2 days ago |
| 126 | 126.Aif Set up agent context for a project. An agent skill from unxed/f4. | unxed/ | 241 | — | ~8.4k | Automated safety check: Pass | BSD-3-Clause | today |
| 127 | 127.Sast Sqli Detect SQL injection vulnerabilities in a codebase using a three-phase approach: recon (find unsafe SQL construction sites), batched verify (trace user input to those sites in parallel subagents, 3… | utkusen/ | 1.3k | — | ~6k | Automated safety check: Pass | MIT | 6 mo ago |
| 128 | 128.Sast Scanning Perform static application security testing with tools like Semgrep, CodeQL, and SonarQube. | BagelHole/ | 1.1k | — | ~2.2k | Automated safety check: Pass | MIT | 4 mo ago |
| 129 | Audit a Python project's installed dependencies for known CVEs by wrapping pip-audit (PyPA's official vulnerability auditor) and emitting findings in the canonical penetration-tester schema. | jeremylongshore/ | 2.8k | — | ~2.3k | Automated safety check: Notes | MIT | today |
| 130 | Build a dependency-tree map of a project (npm or Python) and trace the path from each known-vulnerable transitive package back to one or more direct dependencies. | jeremylongshore/ | 2.8k | — | ~2.2k | Automated safety check: Notes | MIT | today |
| 131 | Hunt Insecure Deserialization | sickn33/ | 47k | 1 repo | ~2.1k | Automated safety check: Notes | MIT | yesterday |
| 132 | Insecure deserialization hunting across Java / .NET / PHP / Python / Ruby / Node. | Encod3d-Sec/ | 329 | — | ~1.7k | Automated safety check: Pass | MIT | 1 mo ago |
| 133 | 信息安全分析师与软件开发工程师在搭建文档处理流水线时,当需要拦截违规文件或外部URL,请挂载此技能作为强制前置安检,自动输出 pass/reject 判定与详细合规扫描报告,一键守住零信任安全底线。 | anbeime/ | 7.6k | — | ~321 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 134 | 134.Security Scan 对进入系统的文件或 URL 执行安全与合规扫描,输出 pass/reject 判定与扫描报告,作为所有文档处理的强制前置关卡。 | anbeime/ | 7.6k | — | ~310 | Automated safety check: Pass | No licence | yesterday |
| 135 | 135.Sast Xss Detect Cross-Site Scripting (XSS) vulnerabilities in a codebase using a three-phase approach: recon (find HTML/JS/DOM sink sites), batched verify (trace user input to sinks in parallel subagents, 3… | utkusen/ | 1.3k | — | ~7.2k | Automated safety check: Pass | MIT | 6 mo ago |
| 136 | Scan project dependencies for vulnerabilities, license issues, and upgrade opportunities across Python, Node.js, Go, and Rust. | borghei/ | 881 | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 137 | Generate targeted test inputs to reach specific code paths and hard-to-reach behaviors in Python code. | ArabelaTso/ | 253 | — | ~3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 138 | A skill your agent uses when auditing Docker images in this project for CVEs, base image staleness, or remediation recommendations — covers all four TUI images (Go, Python, Kotlin, C) | Habitat-Thinking/ | 114 | — | ~2k | Automated safety check: Pass | Unknown | 18 days ago |
| 139 | 139.Dependency Scan Detect CVEs and security issues in project dependencies. An agent skill from jwynia/agent-skills. | jwynia/ | 166 | — | ~1.7k | Automated safety check: Pass | MIT | 7 mo ago |
| 140 | Configure Claude Code sandbox network isolation with trusted domains, custom access policies, and environment variables | Microck/ | 403 | 1 repo | ~2.7k | Automated safety check: Notes | Unknown | 1 mo ago |
| 141 | 141.Senior Secops SecOps for application security, vulnerability management, compliance, and secure development. | borghei/ | 881 | — | ~1.7k | Automated safety check: Pass | MIT | yesterday |
| 142 | 扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。 | rongxinzy/ | 154 | — | ~868 | Automated safety check: Pass | MIT | today |
| 143 | Run a Python fuzzer script (provided as a string) for a fixed duration. | opensage-agent/ | 127 | — | ~228 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 144 | 144.Binary Re This skill should be used when analyzing binaries, executables, or bytecode to understand what they do or how they work. | aiskillstore/ | 430 | 1 repo | ~2.6k | Automated safety check: Pass | No licence | yesterday |