Summary
内网渗透中的网络层投毒和协议欺骗攻击方法论。当需要通过网络投毒获取 NTLM 认证、实现中间人攻击时使用。覆盖 ARP 投毒、DHCP 投毒、DHCPv6/mitm6 欺骗、DNS 欺骗、ADIDNS 记录注入、WPAD 劫持、WSUS 投毒、ICMP 重定向、NBT Name Overwrite。通常作为 NTLM…
wgpsec/aboutsecurity
npx skills add https://github.com/wgpsec/aboutsecurity
内网渗透中的网络层投毒和协议欺骗攻击方法论。当需要通过网络投毒获取 NTLM 认证、实现中间人攻击时使用。覆盖 ARP 投毒、DHCP 投毒、DHCPv6/mitm6 欺骗、DNS 欺骗、ADIDNS 记录注入、WPAD 劫持、WSUS 投毒、ICMP 重定向、NBT Name Overwrite。通常作为 NTLM…
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
Exploiting web cache mechanisms to serve malicious content to other users by poisoning cached r…
216 installsAudit MCP servers for tool poisoning, tool shadowing, rug pulls, SSRF, and unauthenticated expo…
197 installsDiscovers and maps adversary-controlled infrastructure (C2 servers, phishing domains, exploit-k…
113 installsOther skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
master