Adaptive Web Fuzzing
Encod3d-Sec/TORCH
Adaptive web fuzzing for pentests, bug bounty and CTF work: picks the smallest suitable SecLists wordlist per target surface and calibrates filters against soft-404 responses.
安全研究元思考方法论 - 从先知社区5600+篇安全文档中提炼的漏洞挖掘方法论框架. An agent skill from tanweai/xianzhi-research.
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install tanweai/xianzhi-research vuln-research --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
Claude Code skills documentation · loads skills from .claude/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .claude/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install tanweai/xianzhi-research vuln-research --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .agents/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install tanweai/xianzhi-research vuln-research --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .cursor/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install tanweai/xianzhi-research vuln-research --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .gemini/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install tanweai/xianzhi-research vuln-researchInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .github/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add tanweai/xianzhi-research --skill vuln-research -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install tanweai/xianzhi-research vuln-research --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "vuln-research" agent skill from https://github.com/tanweai/xianzhi-research/tree/main into .opencode/skills/vuln-research/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "vuln-research", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
vuln-research安全研究元思考方法论 - 从先知社区5600+篇安全文档中提炼的漏洞挖掘方法论框架. An agent skill from tanweai/xianzhi-research.
Vuln Research is an agent skill from tanweai/xianzhi-research. 安全研究元思考方法论 - 从先知社区5600+篇安全文档中提炼的漏洞挖掘方法论框架。 Use this skill when: - 进行漏洞挖掘和安全研究时,需要系统化的思考框架 - 分析特定类型漏洞(Web注入、反序列化、二进制、域渗透等)的攻击路径 - 需要了解绕过防护措施(WAF、EDR、沙箱)的思维模式 - 进行代码审计需要Source-Sink分析方法论 - 红队攻防需要完整攻击链规划 - CTF竞赛需要快速解题思路 - 逆向分析恶意软件需要方法论指导 Triggers: 漏洞挖掘、安全研究、渗透测试、代码审计、红队攻防、CTF、逆向分析、 WAF绕过、免杀、提权、横向移动、域渗透、反序列化、二进制安全、Fuzzing
Its SKILL.md is about 850 tokens, which your agent loads only when the skill is triggered. The skill folder holds 11 other files, including reference files (for example `README.md`, `references/binary-exploitation.md` and `references/case-index.md`).
It sits in Security, covering Capture the flag and Fuzzing.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 5be2798. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Vuln Research loads about 847 tokens when it runs, and up to ~14k if it reads all its reference files. Until then it costs about 84 tokens; SKILL.md has 138 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
Without a licence we can't republish the file, so here is its outline and opening line. It has 138 words (~847 tokens).
SKILL.md and 10 other files (references) in the repository root of tanweai/xianzhi-research.
Open the folder on GitHubat commit 5be2798
Vuln Research next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Vuln Research this skilltanweai/xianzhi-research | 185 | — | ~847 | Automated safety check: Pass | None | |
| Adaptive Web FuzzingEncod3d-Sec/TORCH | 329 | — | ~1.3k | Automated safety check: Pass | MIT | |
| Fizzpashov/skills | 1.2k | 2 repos | ~11k | Automated safety check: Pass | MIT | |
| Reverse Flowlingbol088-spec/reverse-flow-skill | 940 | — | ~2.4k | Automated safety check: Pass | MIT | |
| Ctf Osintljagiello/ctf-skills | 3.4k | 1 repos | ~2.3k | Automated safety check: Notes | MIT | |
| Fizz Syncpashov/skills | 1.2k | 2 repos | ~3.9k | Automated safety check: Pass | MIT |
Encod3d-Sec/TORCH
Adaptive web fuzzing for pentests, bug bounty and CTF work: picks the smallest suitable SecLists wordlist per target surface and calibrates filters against soft-404 responses.
pashov/skills
Generate Echidna/Medusa-compatible Solidity fuzz suites from Foundry or Hardhat projects.
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
ljagiello/ctf-skills
Provides open source intelligence techniques for CTF challenges.
pashov/skills
Reconcile an existing Fizz harness with a changed source tree.
ARA-Labs/Agent-Native-Research-Artifact
Treat an open-ended investigation the way a fuzzer treats a program.
Categories
安全研究元思考方法论 - 从先知社区5600+篇安全文档中提炼的漏洞挖掘方法论框架. An agent skill from tanweai/xianzhi-research. Vuln Research is an agent skill from tanweai/xianzhi-research.
Vuln Research fits situations like: tasks that involve Capture the flag; tasks that involve Fuzzing.
Run `npx skills add tanweai/xianzhi-research --skill vuln-research -a claude-code`. Or copy the skill folder (the tanweai/xianzhi-research repository) into .claude/skills/vuln-research in your project. Claude Code loads it when a task matches its description.
Run `npx skills add tanweai/xianzhi-research --skill vuln-research -a codex`. Or copy the skill folder (the tanweai/xianzhi-research repository) into .agents/skills/vuln-research in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add tanweai/xianzhi-research --skill vuln-research -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/vuln-research, .gemini/skills/vuln-research, .github/skills/vuln-research and .opencode/skills/vuln-research in your project.
SKILL.md names no scripts, command-line tools or credentials: Vuln Research is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
No licence was found for Vuln Research or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.
About 847 tokens (SKILL.md is roughly 3.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 14k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Vuln Research: Adaptive Web Fuzzing (Encod3d-Sec/TORCH, 329 stars), Fizz (pashov/skills, 1.2k stars), Reverse Flow (lingbol088-spec/reverse-flow-skill, 940 stars) and Ctf Osint (ljagiello/ctf-skills, 3.4k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
tanweai (a GitHub user) maintains it in tanweai/xianzhi-research, which has 185 GitHub stars. The repository was last updated on January 29, 2026.
Source: tanweai/xianzhi-research on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.