Source

snailsploit/claude-red

50 skills · 1.8K combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
offensive-fuzzing Practical offensive fuzzing methodology covering target identification, fuzzer selection (AFL++, libFuzzer, Honggfuzz…
snailsploit/claude-red
73
2
offensive-shellcode Shellcode development reference for offensive security engagements. Use when writing custom x86/x64 shellcode, implem…
snailsploit/claude-red
71
3
offensive-wifi Wireless / 802.11 attack methodology for red team engagements and wireless security assessments. Covers monitor-mode …
snailsploit/claude-red
70
4
offensive-wifi-recon Wi-Fi reconnaissance methodology — adapter selection, monitor mode and packet injection setup, regulatory domain hand…
snailsploit/claude-red
68
5
offensive-osint Comprehensive OSINT methodology skill for offensive security, red team intelligence gathering, and bug bounty reconna…
snailsploit/claude-red
67
6
offensive-jwt JWT attack methodology for penetration testers. Covers algorithm confusion (alg:none, RS256→HS256), weak HMAC secret …
snailsploit/claude-red
66
7
offensive-reporting Penetration test and red team report writing methodology. Covers executive summary structuring (risk-led narrative fo…
snailsploit/claude-red
65
8
offensive-sqli SQL injection testing skill for offensive security assessments and bug bounty hunting. Covers error-based, UNION-base…
snailsploit/claude-red
62
9
offensive-active-directory Active Directory attack methodology for internal network red team engagements. Covers reconnaissance (BloodHound, Pow…
snailsploit/claude-red
61
10
offensive-bluetooth-ble Bluetooth Low Energy (BLE) attack methodology — GATT enumeration, characteristic read/write without auth, pairing dow…
snailsploit/claude-red
61
11
offensive-business-logic Business logic vulnerability testing for web/mobile/API engagements. Covers workflow bypass, state machine violations…
snailsploit/claude-red
61
12
offensive-evil-twin Evil Twin / KARMA / Mana access point methodology — rogue AP construction with hostapd-mana / wifiphisher / airgeddon…
snailsploit/claude-red
60
13
offensive-lorawan-sub-ghz LoRaWAN and sub-GHz (433 / 868 / 915 MHz) attack methodology — LoRaWAN ABP/OTAA join attack, network/session key reus…
snailsploit/claude-red
60
14
offensive-bluetooth-classic Bluetooth Classic (BR/EDR) attack methodology — device discovery, service enumeration via SDP, LMP/L2CAP layer attack…
snailsploit/claude-red
59
15
offensive-cloud Cloud security attack methodology covering AWS, Azure, and GCP. Includes credential harvesting (IMDS, ~/.aws, env var…
snailsploit/claude-red
59
16
offensive-deauth-disassoc Deauthentication and disassociation attacks against 802.11 networks — targeted single-client deauth for handshake cap…
snailsploit/claude-red
59
17
offensive-iot IoT and embedded device security testing methodology. Covers hardware reconnaissance (UART, JTAG, SWD, SPI flash, I2C…
snailsploit/claude-red
59
18
offensive-zigbee-thread-matter Zigbee, Thread, and Matter mesh-protocol attack methodology — IEEE 802.15.4 sniffing with TI CC2531 / CC2540 / Sonoff…
snailsploit/claude-red
59
19
offensive-mobile Mobile (Android + iOS) application penetration testing methodology. Covers static analysis (apktool/jadx for Android,…
snailsploit/claude-red
58
20
offensive-toctou Time-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, …
snailsploit/claude-red
58
21
offensive-krack-fragattacks KRACK (CVE-2017-13077..082) and FragAttacks (CVE-2020-24586..588 + 26139-26147) — key reinstallation, fragmentation, …
snailsploit/claude-red
57
22
offensive-wpa-enterprise WPA/WPA2/WPA3-Enterprise (802.1X / EAP) attack methodology — EAP method identification (PEAP-MSCHAPv2, EAP-TTLS, EAP-…
snailsploit/claude-red
57
23
offensive-wpa2-psk WPA/WPA2-PSK attack methodology — four-way handshake capture via targeted deauthentication, PMKID attacks (no client …
snailsploit/claude-red
57
24
offensive-wpa3-sae
snailsploit/claude-red
57
25
offensive-wps WPS (Wi-Fi Protected Setup) PIN attack methodology — Pixie Dust offline attack against vulnerable chipsets (Ralink, R…
snailsploit/claude-red
57
26
offensive-z-wave Z-Wave attack methodology — sniffing with Z-Force / EZ-Wave / RTL-SDR + ZniffMobile, S0 (legacy) network-key derivati…
snailsploit/claude-red
57
27
offensive-api-abuse Advanced API exploitation methodology focused on business logic abuse and sophisticated attack patterns that bypass t…
snailsploit/claude-red
10
28
offensive-api-security Comprehensive API security testing methodology covering REST, gRPC, and WebSocket attack surfaces. Addresses the full…
snailsploit/claude-red
10
29
offensive-cicd-pipeline Comprehensive CI/CD pipeline exploitation methodology covering GitHub Actions injection vectors (expression injection…
snailsploit/claude-red
10
30
offensive-deserialization Insecure deserialization exploitation across Java, PHP, .NET, Python, Node.js, and Ruby. Covers gadget chain construc…
snailsploit/claude-red
10
31
offensive-advanced-redteam Comprehensive red team operations methodology covering full engagement lifecycle from planning through reporting. Add…
snailsploit/claude-red
9
32
offensive-anti-forensics Anti-forensics and evidence destruction techniques for red team operators conducting authorized engagements. Covers l…
snailsploit/claude-red
9
33
offensive-c2-frameworks Command and Control framework deployment, configuration, and operational tradecraft for red team engagements. Covers …
snailsploit/claude-red
9
34
offensive-cicd-secrets Comprehensive secrets extraction methodology targeting CI/CD environments across all major platforms. Covers environm…
snailsploit/claude-red
9
35
offensive-container-escape Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. Covers privileged contain…
snailsploit/claude-red
9
36
offensive-crypto-attacks Systematic methodology for identifying and exploiting cryptographic implementation weaknesses in real-world applicati…
snailsploit/claude-red
9
37
offensive-data-exfiltration Dense methodology covering DNS exfiltration (dnscat2, iodine, dns2tcp), HTTPS tunneling (domain fronting, CDN abuse, …
snailsploit/claude-red
9
38
offensive-dependency-confusion Deep-dive offensive methodology for dependency confusion and namespace attacks across all major package ecosystems. C…
snailsploit/claude-red
9
39
offensive-graphql Offensive methodology for attacking GraphQL APIs during penetration tests and bug bounty engagements. Covers the full…
snailsploit/claude-red
9
40
offensive-k8s-attacks Kubernetes cluster attack techniques covering the full attack lifecycle from initial foothold in a pod to cluster-wid…
snailsploit/claude-red
9
41
offensive-lateral-movement Comprehensive lateral movement tradecraft for authorized red team engagements covering credential-based movement (pas…
snailsploit/claude-red
9
42
offensive-linux-privesc Comprehensive Linux privilege escalation methodology for offensive security engagements. Covers the full attack surfa…
snailsploit/claude-red
9
43
offensive-network-attacks Dense description covering ARP spoofing, LLMNR/NBT-NS/mDNS poisoning, DNS poisoning, MITM attacks, VLAN hopping, DHCP…
snailsploit/claude-red
9
44
offensive-persistence Comprehensive persistence tradecraft for authorized red team engagements covering Windows and Linux mechanisms. Windo…
snailsploit/claude-red
9
45
offensive-phishing Phishing campaign execution methodology for authorized red team engagements. Covers end-to-end campaign lifecycle: in…
snailsploit/claude-red
9
46
offensive-social-engineering Social engineering attack techniques beyond email phishing for authorized red team and physical penetration testing e…
snailsploit/claude-red
9
47
offensive-ssti Dense description covering Server-Side Template Injection across Jinja2, Twig, Freemarker, Velocity, Pebble, Smarty, …
snailsploit/claude-red
9
48
offensive-supply-chain Comprehensive offensive methodology for software supply chain attacks covering the full kill chain from reconnaissanc…
snailsploit/claude-red
9
49
offensive-tls-attacks Comprehensive methodology for auditing and exploiting TLS/SSL implementations and misconfigurations across network se…
snailsploit/claude-red
9
50
offensive-windows-privesc Comprehensive Windows privilege escalation methodology for offensive security engagements. Covers the full attack sur…
snailsploit/claude-red
9