smithery.ai

vulnerability-analysis

Identify vulnerability class, analyze root cause, and plan exploitation strategy.

First seen Mar 24, 2026

Installation

$ npx skills add https://smithery.ai

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from smithery.ai · top by installs.

npx skills add https://smithery.ai

Browse all from smithery.ai

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 1,921 B
  • docs SUMMARY.md 111 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 2 installs

SKILL.md

Vulnerability Analysis

Systematic identification and analysis of vulnerabilities in binary targets.

Vulnerability Classes

Class Signals Typical Cause
Stack BOF No bounds check on input gets(), strcpy(), sprintf()
Format String User input as format arg printf(buf) instead of printf("%s", buf)
Heap Corruption Dynamic allocation + free UAF, double-free, heap overflow
Integer Overflow Arithmetic on user input Size calculations, array indexing
Race Condition Multi-threaded or file ops TOCTOU, signal handlers
Logic Bug Unexpected program state Auth bypass, incorrect checks

Analysis Process

  1. Trace user input - Where does it enter? Where does it go?
  2. Find sinks - Dangerous functions that consume input
  3. Check bounds - Are there size limits? Are they enforced?
  4. Check protections - What mitigations affect exploitation?

Dangerous Function Patterns

// Stack BOF
gets(buf);                    // No bounds
strcpy(dst, src);             // No bounds
sprintf(buf, fmt, ...);       // No bounds
scanf("%s", buf);             // No bounds

// Format String
printf(user_input);           // User controls format

// Command Injection
system(user_input);           // Direct command exec
popen(user_input, "r");       // Command exec

Mitigation Bypass Planning

Have Need Strategy
BOF + NX Code exec ROP chain, ret2libc
BOF + Canary Bypass Leak canary first
BOF + PIE Fixed addr Leak code address
Format + No write Write primitive Use %n specifier
Heap + no leak Info leak Heap feng shui

Output

Produce context/vulnerability-analysis.md using the template.