All authors
antigalautgr-ops avatar

Claude Skills by antigalautgr-ops

github.com/antigalautgr-ops
17 skillsA× 15B× 20 installs1 views
Ai Mcp SecurityA

AI与MCP安全评估 — Prompt注入、工具滥用、MCP信任边界、Agent权限逃逸、数据泄露、模型风险、GAARM风险矩阵

securityapici/cd
0
2
Android PentestA

安卓应用渗透测试 — APK分析、Hook、自动化测试、运行态驱动、签名恢复、抓包分析

securitytestingapi
0
2
Client ReverseA

客户端逆向与Burp重放 — 复杂客户端签名恢复、加密还原、请求链追踪、稳定重放,适用于已授权安卓App渗透测试、浏览器JS签名、桌面客户端逆向

securitytestingapi
0
2
Crypto ToolkitA

编码解码与加解密工具 — base64/URL/Hex/HTML实体编码解码,MD5/SHA哈希,AES/DES/RSA加解密,JWT解析,Caesar/ROT13密码,栅栏/Vigenere密码,Unicode转义,Morse电码等

securitysql
0
2
Ctf CryptoA

CTF密码学攻击知识库 — RSA攻击(小指数/共模/Wiener/Coppersmith)、AES攻击(Padding Oracle/ECB字节翻转/GCM nonce重用)、ECC攻击、LFSR/LCG/PRNG攻击、古典密码、LWE格攻击

securitypython
0
2
Ctf MiscB

CTF杂项知识库 — Python Jail逃逸、Bash Jail逃逸、编码链识别与解码、QR/音频/图像隐写、游戏VM逆向、CTFd API导航、Linux提权

securitypythonshell
0
2
Ctf WebB

CTF Web攻击知识库 — PHP弱比较绕过、命令注入空格绕过、eval回显技巧、SSTI注入链、反序列化利用链、PHP代码审计checklist、常见flag位置

securitypythonjava
0
2
Intranet Pentest AdvancedA

内网渗透高级 — 横向移动、凭据窃取、提权、持久化、隧道代理、AD攻击、ADCS滥用、Exchange/SharePoint攻击

securitygo
0
2
ReferencesA

Authorized internal security reference for selecting techniques, workflow summaries, OPSEC notes, prerequisites, and mitigations across internal recon, credential access, privilege escalation, lateral movement, persistence, tunneling, AD, ADCS, Exchange, SharePoint, and evasion scenarios. Use for pentest planning, report drafting, or converting the extracted intranet wiki into narrower skills.

securitygotesting
0
2
Osint ReconA

OSINT 开源情报收集知识库 — 四维信息收集模型(服务器→网站→域名→人员),维度四(人员信息)条件触发

securitypythongo
0
2
Pentest ToolsA

渗透工具速查 — 编码解码、反向Shell、红队工具、漏洞利用、密码攻击、内网工具、凭据窃取、提权、隧道代理、系统命令、信息收集、域渗透、Web工具、Windows工具

securitypythongo
0
2
ReferencesA

Authorized pentest tool reference for mapping tasks to the right utilities, command patterns, and installation notes across recon, web testing, exploitation, password attacks, internal operations, privilege escalation, tunneling, shell delivery, credential access, and encoding workflows. Use for tool selection, quick command recall, or converting the extracted tools wiki into narrower skills.

securitygoshell
0
2
Rapid ChecklistA

渗透速查与Payload — 快速Payload家族、绕过提醒、验证顺序、常见测试卡片,适用于已知测试方向后快速查找

securityjavascriptpython
0
2
Secknowledge SkillA

Web+AI 安全测试知识库。融合 WooYun 88,636 案例 + 先知 L1-L4 方法论 + GAARM 150 风险 + OWASP Top 10 (LLM/ASI/WSTG)。 TRIGGER when 任务是实战安全测试:渗透测试、漏洞挖掘/利用、红队攻防、安全审计 (SAST/DAST)、 CTF、AI/LLM 安全测试 (Prompt 注入/越狱/MCP/Agent/沙箱逃逸)。用户明确给出测试目标 (URL/代码/模型/Agent 架构) 且意图是"测试/审计/挖漏洞/利用"。 DO NOT trigger: - 安全概念讨论("什么是 XSS"、"SQL 注入原理是什么")→ 普通问答 - 非安全性质的 code review / debug / 性能优化 → code-audit-skill 或其他 - 修复语法错误 / 业务逻辑 bug → 普通编程协助 - 纯 Web 白盒代码审计(完整项目目录 / Source-Sink 污点分析)→ code-audit-skill - 仅引用 CVE 编号查文档 → WebSearch 边界细则: CTF 短代...

securityjavashell
0
2
Web PentestA

Web应用渗透测试 — 针对Web应用的完整渗透流程,含技术栈识别、目录枚举、认证测试、输入验证、逻辑漏洞

securitysqlgit
0
2
Web Security AdvancedA

Web高级安全测试 — 注入攻击族、协议安全、认证与逻辑漏洞、文件与部署安全、现代Web攻击面,含完整Playbook

securitypythonjava
0
2
ReferencesA

Authorized web security reference for selecting attack categories, payload families, bypass notes, workflow summaries, and mitigations across web, API, JWT, cloud, AI, framework, and WebSocket testing. Use for pentest planning, report drafting, or converting the extracted wiki into narrower web-focused skills.

securitygosql
0
2