ed1s0nz/cyberstrikeai

ai-llm-app-attack

>- AI/LLM应用攻击:提示注?

Installation

$ npx skills add ed1s0nz/cyberstrikeai --skill ai-llm-app-attack

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from ed1s0nz/cyberstrikeai · top by installs.

npx skills add ed1s0nz/cyberstrikeai

Browse all from ed1s0nz/cyberstrikeai

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Repository health

Stars 6.5K
License LICENSE
Default branch main
Open issues 54
Status Active

Skill metadata

Parsed from SKILL.md frontmatter.

More metadata
tags
["渗透测试","penetration-testing","红队"]

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 1,114 B
  • docs SUMMARY.md 201 B

History

  1. First recorded snapshot · 6 installs

SKILL.md

AI / LLM 应用攻击

=== AI/LLM应用(大模型应用爆发期真实攻击面) ===
提示注入: 直接(忽略上文输出system prompt) | 间接(更危险):指令藏RAG文档/网页/邮件/工具返回值/图片EXIF → 劫持Agent
🚨Agent工具滥用(最高危,直达RCE): code interpreter→注入执行 | fetch工具→SSRF内网/云元数据 | 文件工具→读/etc/passwd写webshell
  | SQL工具→导全表 | shell工具→命令注入 → 验证:实际触发工具副作用(OOB回连/读到文件)才写Fact
系统提示泄露/RAG投毒/过度授权跨租户越权/MCP插件供应链/资源成本攻击(烧token) | 输出处理:LLM输出进eval/SQL/前端→二次注入/存储XSS
模型文件: torch.load默认pickle→RCE | 发现端点:抓流量找/chat /agent /tool,问Agent"你有哪些工具"