Search

Penetration testing

180 skills found, page 4.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
145

Run a third-party / vendor security review and assign a risk tier with required controls.

mohitagw15856/pm-claude-skills1.4k—~1.1kAutomated safety check: PassMIT2 days ago
146

Attack and enumerate Azure AD / Entra ID tenants — initial recon with AADInternals and ROADtools, password spraying, token theft (PRT, CAE, refresh tokens), application and service principal abuse…

trilwu/secskills157—~4.3kAutomated safety check: PassMIT1 mo ago
147

Prioritize and drive remediation of a vulnerability backlog by real risk, not raw CVSS — combining severity with exploitation signals (EPSS, CISA KEV), asset exposure and business context, using…

trilwu/secskills157—~2.2kAutomated safety check: PassMIT1 mo ago
148

Write security findings and assessment reports — severity scoring with CVSS and business impact, reproducible proof of concept, remediation guidance, executive summaries, and coordinated disclosure.

trilwu/secskills157—~3.4kAutomated safety check: PassMIT1 mo ago
149

Pentest Android and iOS mobile applications including APK analysis, dynamic analysis, SSL pinning bypass, root/jailbreak detection bypass, and mobile-specific vulnerabilities.

trilwu/secskills157—~2.8kAutomated safety check: PassMIT1 mo ago
150

Enumerates Active Directory trust relationships and exploits them for cross-domain and cross-forest privilege escalation.

blacklanternsecurity/red-run287—~4.5kAutomated safety check: NotesGPL-3.012 days ago
151
151.Hack

Entry P0 primary router and operating doctrine for HackSkills.

yaklang/hack-skills2.4k—~4.7kAutomated safety check: NotesMIT28 days ago
152

Coordinate a PCI DSS penetration-testing and CDE-scoping readiness assessment across methodology, scope, segmentation, execution evidence, remediation, and retesting.

cyberful/cyberful135—~895Automated safety check: PassAGPL-3.01 mo ago
153

Security architecture review, control validation, penetration testing guidance, and compliance verification for the CIA platform

Hack23/cia239—~1.9kAutomated safety check: PassApache-2.0yesterday
154

HTTP request smuggling via CL.TE/TE.CL desync and cache poisoning

NeoTheCapt/RedteamAgent143—~982Automated safety check: PassNo licence2 mo ago
155

Frontend source code analysis for hidden routes, API endpoints, and secrets

NeoTheCapt/RedteamAgent143—~3kAutomated safety check: PassNo licence2 mo ago
156

Detect and exploit SQL injection vulnerabilities in web application parameters

NeoTheCapt/RedteamAgent143—~1.2kAutomated safety check: PassNo licence2 mo ago
157

Detect and exploit server-side request forgery to access internal resources and cloud metadata

NeoTheCapt/RedteamAgent143—~768Automated safety check: PassNo licence2 mo ago
158

Subdomain discovery via subfinder, DNS brute-force, and passive sources

NeoTheCapt/RedteamAgent143—~1.7kAutomated safety check: NotesNo licence2 mo ago
159

Discover any interface (HTTP, WebSocket, GraphQL, gRPC, or other) that distinguishes between existing and non-existing users through any observable difference

NeoTheCapt/RedteamAgent143—~2.9kAutomated safety check: PassNo licence2 mo ago
160

Enumerate web technologies, headers, endpoints, and metadata from a target

NeoTheCapt/RedteamAgent143—~770Automated safety check: PassNo licence2 mo ago
161

Detect and exploit cross-site scripting vulnerabilities in web applications

NeoTheCapt/RedteamAgent143—~1.4kAutomated safety check: PassNo licence2 mo ago
162

XML external entity injection for file read, SSRF, and DoS. An agent skill from NeoTheCapt/RedteamAgent.

NeoTheCapt/RedteamAgent143—~1kAutomated safety check: PassNo licence2 mo ago
163

Build or challenge an application threat model from architecture, dataflows, identities, trust boundaries, business invariants, dependencies, and deployment context.

cyberful/cyberful135—~1.2kAutomated safety check: PassAGPL-3.01 mo ago
164

Audit C, C++, unsafe Rust, native extensions, parsers, codecs, FFI boundaries, and systems code for memory corruption and low-level exploitation risk.

cyberful/cyberful135—~829Automated safety check: PassAGPL-3.01 mo ago
165

Operate Cyberful as an authorized application-security control room.

cyberful/cyberful135—~1.1kAutomated safety check: PassAGPL-3.0-only1 mo ago
166

Bypass antivirus and EDR detection for payload delivery during exploitation.

blacklanternsecurity/red-run287—~5.4kAutomated safety check: NotesGPL-3.012 days ago
167

Host discovery and port scanning using nmap — ICMP/ARP host discovery, SYN/TCP/UDP port scanning with scope enforcement and audit logging.

automateyournetwork/netclaw676—~1.3kAutomated safety check: PassApache-2.0yesterday
168

Custom nmap scans with arbitrary flags, plus scan history retrieval and management.

automateyournetwork/netclaw676—~1.2kAutomated safety check: PassApache-2.0yesterday
169

Service fingerprinting, OS detection, NSE script execution, and vulnerability scanning using nmap MCP.

automateyournetwork/netclaw676—~1.5kAutomated safety check: PassApache-2.0yesterday
170

Analyze detected vulnerabilities to assess realistic exploitability by examining control flow, input sources, sanitization logic, and execution context.

ArabelaTso/Skills-4-SE253—~3.5kAutomated safety check: PassApache-2.01 mo ago
171

Assess AI-system risk from architecture, intended use, affected actors, model limitations, data lineage, autonomy, human oversight, monitoring, and failure consequences.

cyberful/cyberful135—~566Automated safety check: PassAGPL-3.01 mo ago
172

使用 naabu 进行高速端口扫描。当需要对目标主机/网段进行端口发现、存活检测时使用。naabu 是 ProjectDiscovery 出品的快速端口扫描器,支持 SYN/CONNECT/UDP 扫描,性能远超 nmap,支持批量目标、CDN 排除、nmap 集成。任何涉及端口扫描、端口发现、主机存活检测、网段探测的场景都应使用此技能。如果 naabu 结果不足再降级用 nmap

wgpsec/AboutSecurity1.8k—~812Automated safety check: NotesNo licenceyesterday
173

使用 nmap 进行端口扫描和服务识别。当需要对目标进行精细端口扫描、服务版本探测、操作系统指纹识别、NSE 脚本漏洞扫描时使用。nmap 是最经典的网络扫描器,支持 SYN/TCP/UDP/ACK 等多种扫描模式,内置 600+ NSE 脚本。任何涉及端口扫描、服务识别、漏洞脚本扫描、操作系统指纹的场景都应使用此技能。速度不如 naabu,但功能远超 naabu

wgpsec/AboutSecurity1.8k—~652Automated safety check: NotesNo licenceyesterday
174

Detect PII, credentials, and corporate sensitive data in API responses, source code, files, headers, and database extracts

NeoTheCapt/RedteamAgent143—~5.1kAutomated safety check: NotesNo licence2 mo ago
175

OS command injection detection, exploitation, and filter bypass

NeoTheCapt/RedteamAgent143—~754Automated safety check: PassNo licence2 mo ago
176

File upload vulnerability testing — webshells, bypass, path traversal

NeoTheCapt/RedteamAgent143—~1.6kAutomated safety check: PassNo licence2 mo ago
177

Insecure direct object reference testing for broken access control

NeoTheCapt/RedteamAgent143—~793Automated safety check: PassNo licence2 mo ago
178

Information disclosure detection — error messages, files, headers, debug endpoints

NeoTheCapt/RedteamAgent143—~1.1kAutomated safety check: NotesNo licence2 mo ago
179

Server-side template injection detection, engine identification, and RCE

NeoTheCapt/RedteamAgent143—~748Automated safety check: PassNo licence2 mo ago
180

MASTER SECURITY: OWASP Top 10, SAST/DAST, PenTest. An agent skill from Dokhacgiakhoa/Agent-Skills-4-Vibe-Coding-CLI.

Dokhacgiakhoa/Agent-Skills-4-Vibe-Coding-CLI508—~440Automated safety check: PassUnknown4 mo ago