Source

transilienceai/communitytools

69 skills · 5.7K combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
attack-path-stitcher Stitches confirmed single-asset findings into multi-hop attack paths across the organization. Builds a graph where no…
transilienceai/communitytools
653
2
hackerone HackerOne bug bounty automation - parses scope CSVs, deploys parallel pentesting agents per asset, validates PoCs, an…
transilienceai/communitytools
236
3
osint Open-source intelligence gathering - company repository enumeration, secret scanning, git history analysis, employee …
transilienceai/communitytools
174
4
reconnaissance Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discove…
transilienceai/communitytools
166
5
cve-poc-generator CVE research, standalone PoC script and report generation. Given a CVE ID, researches NVD and advisories, generates a…
transilienceai/communitytools
152
6
social-engineering Social engineering testing - phishing, pretexting, vishing, and physical security assessment techniques.
transilienceai/communitytools
149
7
source-code-scanning Security-focused source code review and SAST. Scans for vulnerabilities (OWASP Top 10, CWE Top 25), CVEs in third-par…
transilienceai/communitytools
142
8
api-security API security testing - GraphQL, REST API, WebSocket, and Web-LLM attack techniques.
transilienceai/communitytools
141
9
web-app-logic Web application logic testing - business logic flaws, race conditions, access control, cache poisoning/deception, and…
transilienceai/communitytools
139
10
techstack-identification OSINT-based technology stack identification. Routes to 6 domain sub-skills (frontend, backend, infra, security, osint…
transilienceai/communitytools
137
11
infrastructure Network infrastructure testing - port scanning, DNS attacks, MITM, VLAN hopping, IPv6, SMB/NetBIOS, sniffing, and DoS…
transilienceai/communitytools
136
12
ai-threat-testing Offensive AI security testing and exploitation framework. Systematically tests LLM applications for OWASP Top 10 vuln…
transilienceai/communitytools
135
13
authentication Authentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass…
transilienceai/communitytools
135
14
server-side Server-side vulnerability testing - SSRF, HTTP Request Smuggling, Path Traversal, File Upload, Insecure Deserializati…
transilienceai/communitytools
135
15
client-side Client-side vulnerability testing - XSS (reflected/stored/DOM), CSRF, CORS misconfiguration, Clickjacking, DOM-based …
transilienceai/communitytools
134
16
injection Injection vulnerability testing - SQL, NoSQL, OS Command, SSTI, XXE, and LDAP/XPath injection techniques.
transilienceai/communitytools
134
17
hackthebox HackTheBox platform operations and automations to solve challenges, machines and capture the flags hacking competitio…
transilienceai/communitytools
130
18
essential-tools Core pentesting tools and methodology - Burp Suite usage, Playwright automation, binary analysis, testing methodology…
transilienceai/communitytools
127
19
cloud-containers Cloud and container security testing - AWS, Azure, GCP, Docker, and Kubernetes misconfigurations and exploitation.
transilienceai/communitytools
124
20
coordination Pentest coordination — orchestrates executor and validator agents with context-controlled spawning. Entry point for a…
transilienceai/communitytools
123
21
reverse-engineering Static and dynamic reverse engineering — ELF/PE analysis, custom-VM bytecode, packed binaries, anti-debug bypass, Fri…
transilienceai/communitytools
123
22
github-workflow GitHub workflow automation — branching, committing, pushing, pull requests, issues, and code review. Use when asked t…
transilienceai/communitytools
122
23
system System exploitation testing - Active Directory attacks, privilege escalation (Linux/Windows), and exploit development.
transilienceai/communitytools
122
24
dfir Digital forensics and incident response - Windows event log analysis, PCAP forensics, filesystem artifact analysis, A…
transilienceai/communitytools
117
25
cve-risk-score Retrieve CVE risk scores from NVD. Auto-invoked whenever a CVE ID is mentioned to display CVSS score, severity, CWE, …
transilienceai/communitytools
111
26
blockchain-security Smart contract security testing and blockchain CTF exploitation. Covers Solidity vulnerability analysis, EVM storage …
transilienceai/communitytools
109
27
mobile-security Mobile application security testing (Android + iOS) mapped to OWASP MASVS/MASTG — static reversing (Flutter AOT, Unit…
transilienceai/communitytools
106
28
firewall-review Evidence-safe firewall ruleset audit reference specification — 22 documented detector patterns (17 vendor-agnostic pl…
transilienceai/communitytools
103
29
script-generator Generates optimized, syntax-validated scripts on demand. Never executes — only generates, optimizes, and validates.
transilienceai/communitytools
103
30
patt-fetcher Fetches and extracts payloads from PayloadsAllTheThings on demand. Bake into executor prompts for live payload enrich…
transilienceai/communitytools
102
31
skill-update Skill creation, update and management — generates skill directory structure, validates against best practices, enforc…
transilienceai/communitytools
102
32
cryptography Cryptanalysis techniques — lattice attacks, padding oracles, weak-RNG exploitation, signature forgery, secret-sharing…
transilienceai/communitytools
90
33
skill-prune Identify and remove negative-ROI skill content — orphan files, never-read entries, duplicates, content reintroducing …
transilienceai/communitytools
90
34
risk-prioritiser Risk-based prioritisation of confirmed attack paths. Combines exploit feasibility, technical CVSS severity, and asset…
transilienceai/communitytools
80
35
regression-sweep Re-validates every previously-confirmed finding against its current target — detects drift (patched, mitigated, re-in…
transilienceai/communitytools
77
36
pentest-engagement Run a professional penetration engagement OR a network vulnerability scan from a scope. WEB mode (apex domains / app …
transilienceai/communitytools
75
37
ti-ingest Threat-intel signal ingest — converts a CVE + affected-asset + claim payload into a queued engagement-scope row for t…
transilienceai/communitytools
74
38
pci-secure-software Automated PCI Secure Software Standard (SSS) v2.0 readiness gap-assessment of an application from its source code and…
transilienceai/communitytools
67
39
transilience-report-style Generate a Transilience-branded PDF report (pentest, vuln assessment, compliance, threat intel) from a single finding…
transilienceai/communitytools
59
40
cloud-defense Detect and break the cloud post-compromise attack chain (AWS / Azure / GCP) — per-stage CloudTrail / Activity-Log / A…
transilienceai/communitytools
57
41
authenticated-session-acquisition Acquire an authenticated session THROUGH MFA/OTP on an in-scope target and emit a reusable session artifact (Playwrig…
transilienceai/communitytools
47
42
network-appliance-offensive Offensive testing of perimeter network appliances and VPN crypto — IKE/IPsec (aggressive-mode, transform/DH enum, NAT…
transilienceai/communitytools
44
43
protect-with-password Generate ONE strong password and apply it to each referenced file (PDF, Word, Excel, PowerPoint, or any type). Use wh…
transilienceai/communitytools
41
44
cve-testing CVE vulnerability testing coordinator that identifies technology stacks, researches known vulnerabilities, and tests …
transilienceai/communitytools
16
45
domain-assessment Domain reconnaissance coordinator that orchestrates subdomain discovery and port scanning to build comprehensive doma…
transilienceai/communitytools
16
46
pentest Penetration testing orchestrator that coordinates specialized attack agents. Provides attack indexes, methodology fra…
transilienceai/communitytools
16
47
subdomain-enumeration Enumerates subdomains using CT logs, passive DNS, and search engine dorks
transilienceai/communitytools
15
48
web-application-mapping Comprehensive web application reconnaissance and mapping coordinator that orchestrates passive browsing, active endpo…
transilienceai/communitytools
14
49
common-appsec-patterns Application security testing coordinator for common vulnerability patterns including XSS, injection flaws, and client…
transilienceai/communitytools
13
50
authenticating Authentication testing skill - automates signup, login, 2FA bypass, CAPTCHA solving, and bot detection evasion using …
transilienceai/communitytools
12
Page 1 · 69 total Next