All authors
hypnguyen1209 avatar

Claude Skills by hypnguyen1209

github.com/hypnguyen1209
25 skillsA× 16B× 7C× 1D× 10 installs6 views
Active Directory AttackA

Active Directory penetration testing — BloodHound enumeration, Kerberos attacks (Kerberoasting, AS-REP, Golden/Silver Ticket), NTLM relay, DCSync, lateral movement, domain dominance

developmentpythongo
0
241
Advanced RedteamA

--- name: advanced-redteam-ops description: Advanced red team operations — OPSEC discipline, C2 infrastructure design, redirectors, malleable profiles, living-off-the-land, data exfiltration, infrastructure segregation metadata: type: offensive phase: operations ---

developmentjavascriptpython
0
241
Ai SecurityB

AI/ML security assessment — prompt injection, jailbreak detection, RAG poisoning, model extraction, adversarial examples, supply chain risks in ML pipelines

data-aipythonbash
0
241
Cloud SecurityB

Cloud penetration testing — AWS/Azure/GCP privilege escalation, container escape, Kubernetes attacks, serverless exploitation, IaC misconfigurations

devopsgobash
0
241
Coding MasteryA

Advanced software engineering — systems programming, exploit development tooling, automation scripting, network programming, cryptography implementation

developmentpythonrust
0
241
Crypto AnalysisA

Cryptographic assessment — cipher identification, TLS auditing, hash analysis, key strength evaluation, side-channel detection, crypto implementation review

developmentpythongo
0
241
Edr EvasionA

EDR/AV bypass — hook unhooking, direct/indirect syscalls, PPID spoofing, process injection, AMSI bypass, ETW patching, memory encryption, behavioral evasion

developmentshellrails
0
241
Exploit DevelopmentA

PoC development, payload crafting, shellcode generation, ROP chains, heap exploitation, bypass techniques for modern mitigations (ASLR, DEP, CFI, stack canaries)

developmentpythongo
0
241
Incident ResponseA

IR playbook execution — evidence collection, timeline analysis, memory forensics, disk forensics, containment strategies, post-incident reporting

developmentgoshell
0
241
Initial AccessA

Modern initial access techniques — phishing, payload delivery, HTML smuggling, ISO/IMG bypass, supply chain attacks, credential stuffing, exposed service exploitation

developmentjavascriptpython
0
241
Keylogger ArchA

--- name: keylogger-architecture description: Low-level keylogger architecture — SetWindowsHookEx, raw input devices, ETW-based capture, kernel drivers, stealth techniques, IOC analysis metadata: type: offensive phase: research ---

developmentgitapi
0
241
Malware AnalysisA

Static/dynamic malware analysis, YARA rules, sandbox evasion detection, behavioral profiling, unpacking, anti-analysis bypass

developmentjavascriptpython
0
241
Mobile PentestB

Mobile application penetration testing — Android/iOS static/dynamic analysis, Frida instrumentation, SSL pinning bypass, root/jailbreak detection bypass, deep-link abuse, exported components, insecure storage, biometric bypass

developmentjavascriptrust
0
241
Network AttackA

Network penetration testing — lateral movement, pivoting, protocol attacks, traffic interception, Active Directory exploitation, wireless attacks

developmentpythongo
0
241
Privesc LinuxD

Linux privilege escalation — SUID/SGID abuse, kernel exploits, capabilities, sudo misconfig, cron jobs, writable paths, container escape

developmentpythonshell
0
241
Privesc WindowsA

Windows privilege escalation — token abuse, service exploitation, UAC bypass, credential harvesting, AD escalation paths

developmentgoshell
0
241
Recon OsintB

Comprehensive reconnaissance and OSINT — subdomain enumeration, CVE lookup, breach intelligence, DNS history, social profiling, attack surface mapping

developmentgobash
0
241
Red Team OpsC

Full red team engagement — initial access, persistence, privilege escalation, defense evasion, C2 infrastructure, EDR bypass, living-off-the-land

developmentjavascriptpython
0
241
Reverse EngineeringB

Binary analysis, disassembly, decompilation, firmware RE, protocol reverse engineering, anti-reversing bypass, malware unpacking

developmentjavascriptpython
0
241
Shellcode DevA

Shellcode development — PIC techniques, PEB walking, API hashing, null-byte avoidance, encoders, loaders, PE-to-shellcode conversion, cross-platform shellcode

developmentpythonrust
0
241
Threat HuntingA

Proactive threat hunting, IOC extraction, MITRE ATT&CK mapping, behavioral anomaly detection, log analysis correlation

developmentgophp
0
241
Vulnerability AnalysisB

Every vulnerability you miss is one an attacker can find. Systematic analysis traces untrusted data from source to sink, evaluates filters for bypass, and questions every trust boundary assumption.

developmentrustgo
0
241
Web PentestB

Full-spectrum web application penetration testing — OWASP Top 10, API security, authentication attacks, business logic, WAF bypass, race conditions

developmentjavascriptpython
0
241
Windows BoundariesA

--- name: windows-boundaries description: Windows security boundary attacks — kernel/user boundary, sandbox escape, AppContainer/LPAC bypass, COM/RPC boundary, integrity levels, PPL exploitation metadata: type: offensive phase: exploitation ---

developmentrustshell
0
241
Windows MitigationsA

--- name: windows-mitigations-bypass description: Windows exploit mitigation bypass — ASLR, DEP/NX, CFG/XFG, CET/Shadow Stack, SEHOP, ACG, WDAC, ASR, PPL, AMSI, ETW blinding metadata: type: offensive phase: exploitation ---

developmentpythonc#
0
241