All authors
MustafaKemal0146 avatar

Claude Skills by MustafaKemal0146

github.com/MustafaKemal0146
960 skillsA× 817B× 97C× 26D× 12F× 80 installs250 views
DspyA

DSPy: declarative LM programs, auto-optimize prompts, RAG.

ai-agentspythongo
0
4
ObsidianA

Read, search, create, and edit notes in the Obsidian vault.

toolsshellgit
0
4
Google WorkspaceA

Gmail, Calendar, Drive, Docs, Sheets via gws CLI or Python.

securitypythongo
0
4
LinearB

Linear: manage issues, projects, teams via GraphQL + curl.

toolspythongo
0
4
MapsA

Geocode, POIs, routes, timezones via OpenStreetMap/OSRM.

toolspythongo
0
4
Nano PdfA

Edit PDF text/typos/titles via nano-pdf CLI (NL prompts).

ai-agentsbashgit
0
4
NotionD

Notion API + ntn CLI: pages, databases, markdown, Workers.

ai-agentstypescriptgo
0
4
Ocr And DocumentsA

Extract text from PDFs/scans (pymupdf, marker-pdf).

ai-agentspythonbash
0
4
PowerpointB

Create, read, edit .pptx decks, slides, notes, templates.

ai-agentspythonrust
0
4
Teams Meeting PipelineA

Operate the Teams meeting summary pipeline via FETIH CLI — summarize meetings, inspect pipeline status, replay jobs, manage Microsoft Graph subscriptions.

toolsgobash
0
4
Ctf Challenge SolverA

Capture The Flag challenge solving — reverse engineering, steganography, forensics, crypto, web exploitation, binary exploitation, OSINT. Pattern recipes for fast triage and direct exploitation.

securityjavascriptpython
0
4
GodmodeA

Jailbreak LLMs: Parseltongue, GODMODE, ULTRAPLINIAN.

ai-agentspythongo
0
4
Building C2 Infrastructure With Sliver FrameworkB

Build and configure a resilient command-and-control infrastructure using BishopFox's Sliver C2 framework with redirectors, HTTPS listeners, and multi-operator support for authorized red team

securitypythongo
0
4
Building Red Team C2 Infrastructure With HavocA

Dağıt: and Şunu yapılandır: Havoc C2 framework with teamserver, HTTPS listeners, redirectors, and Demon agents for authorized red team operations.

securitypythonrust
0
4
Conducting Domain Persistence With DcsyncA

Perform DCSync attacks to replicate Active Directory credentials and establish domain persistence by extracting KRBTGT, Domain Admin, and service account hashes for Golden Ticket creation.

securitypythongo
0
4
Conducting Full Scope Red Team EngagementA

Plan and execute a comprehensive red team engagement covering reconnaissance through post-exploitation using MITRE ATT&CK-aligned TTPs to evaluate an organization's Tespit and response capabilities.

securitypythongo
0
4
Conducting Internal Reconnaissance With Bloodhound CeA

Conduct internal Active Directory reconnaissance using BloodHound Community Edition to map attack paths, identify privilege escalation chains, and discover misconfigurations in domain environments.

securitypythonrust
0
4
Conducting Pass The Ticket AttackA

Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen Kerberos tickets (TGT or TGS) to authenticate to services without knowing the user's password. By extracting Kerberos

securitypythongo
0
4
Conducting Social Engineering Pretext CallA

Plan and execute authorized vishing (voice phishing) pretext calls to assess employee susceptibility to social engineering and evaluate security awareness controls.

securityrustgo
0
4
Conducting Spearphishing Simulation CampaignA

Spearphishing simulation is a targeted social engineering attack vector used by red teams to gain initial access. Unlike broad phishing campaigns, spearphishing uses OSINT-derived intelligence

securitypythongo
0
4
Executing Red Team Engagement PlanningA

Red team engagement planning is the foundational phase that defines scope, objectives, rules of engagement (ROE), threat model selection, and operational timelines before any offensive testing

securitypythongo
0
4
Exploiting Active Directory Certificate Services Esc1A

Exploit misconfigured Active Directory Certificate Services (AD CS) ESC1 vulnerability to request certificates as high-privileged users and escalate domain privileges during authorized red

securitypythongo
0
4
Exploiting Active Directory With BloodhoundA

BloodHound is a graph-based Active Directory reconnaissance tool that uses graph theory to reveal hidden and unintended relationships within AD environments. Red teams use BloodHound to identify

securitypythonrust
0
4
Exploiting Constrained Delegation AbuseA

Exploit Kerberos Constrained Delegation misconfigurations in Active Directory to impersonate privileged users via S4U2self and S4U2proxy extensions for lateral movement and privilege escalation.

securitypythonrust
0
4
Exploiting Kerberoasting With ImpacketA

Perform Kerberoasting attacks using Impacket's GetUserSPNs to extract and crack Kerberos TGS tickets for Active Directory service accounts.

securitygoshell
0
4
Exploiting Ms17 010 Eternalblue VulnerabilityA

MS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1 implementation that allows remote code execution. Originally discovered by the NSA and leaked by the Shadow Brokers in

securitypythongo
0
4
Exploiting Nopac Cve 2021 42278 42287A

Exploit the noPac vulnerability chain (CVE-2021-42278 sAMAccountName spoofing and CVE-2021-42287 KDC PAC confusion) to escalate from standard domain user to Domain Admin in Active Directory

securitypythongo
0
4
Exploiting Zerologon Vulnerability Cve 2020 1472A

Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon Remote Protocol to achieve domain controller compromise by resetting the machine account password to empty.

securitypythongo
0
4
Implementing Attack Surface ManagementA

Implements external attack surface management (EASM) using Shodan, Censys, and ProjectDiscovery tools (subBul:er, httpx, nuclei) for asset discovery, subdomain enumeration, service fingerprinting,

securitypythongo
0
4
Performing Active Directory Bloodhound AnalysisA

Use BloodHound and SharpHound to enumerate Active Directory relationships and identify attack paths from compromised users to Domain Admin.

securityrustgo
0
4
Performing Active Directory Forest Trust AttackA

Enumerate and audit Active Directory forest trust relationships using impacket for SID filtering analysis, trust key extraction, cross-forest SID history abuse Tespit, and inter-realm Kerberos

securitypythonrust
0
4
Performing Binary Exploitation AnalysisA

Analyze binary exploitation techniques including buffer overflows and ROP chains using pwntools Python library. Covers checksec analysis, gadget discovery with ROPgadget, and exploit development

securitypythongo
0
4
Performing Credential Access With LazagneA

Extract stored credentials from compromised endpoints using the LaZagne post-exploitation tool to recover passwords from browsers, databases, system vaults, and applications during authorized

securitypythongo
0
4
Performing Initial Access With Evilginx3A

Perform authorized initial access using EvilGinx3 adversary-in-the-middle phishing framework to capture session tokens and bypass multi-factor authentication during red team engagements.

securitypythongo
0
4
Performing Kerberoasting AttackA

Kerberoasting is a post-exploitation technique that targets service accounts in Active Directory by requesting Kerberos TGS (Ticket Granting Service) tickets for accounts with Service Principal

securitypythongo
0
4
Performing Lateral Movement With WmiexecA

Perform lateral movement across Windows networks using WMI-based remote execution techniques including Impacket wmiexec.py, CrackMapExec, and native WMI commands for stealthy post-exploitation

securitypythongo
0
4
Performing Open Source Intelligence GatheringA

Open Source Intelligence (OSINT) gathering is the first active phase of a red team engagement, where operators collect publicly available information about the target organization to identify

securitypythongo
0
4
Performing Physical Intrusion AssessmentA

Conduct authorized physical penetration testing using tailgating, badge cloning, lock bypassing, and rogue device Dağıt:ment to evaluate facility security controls.

securityrustgo
0
4
Performing Privilege Escalation On LinuxA

Linux privilege escalation involves elevating from a low-privilege user account to root access on a compromised system. Red teams exploit misconfigurations, vulnerable services, kernel exploits,

securitypythongo
0
4
Performing Purple Team Atomic TestingA

Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the ATT&CK matrix, and runs Tespit validation loops to measure blue team visibility.

securitypythongo
0
4
Performing Red Team With CovenantA

Conduct red team operations using the Covenant C2 framework for authorized adversary simulation, including listener setup, grunt Dağıt:ment, task execution, and lateral movement tracking.

securitypythongo
0
4
Siber Vatan CtfA

Siber Vatan CTF playbook — flag formats, web/reverse/forensics/blockchain/OSINT/stego/crypto recipes, and pivot heuristics tailored to the Turkish CTF circuit.

securitypythongo
0
4
ArxivB

Search arXiv papers by keyword, author, category, or ID.

toolspythongo
0
4
BlogwatcherA

Monitor blogs and RSS/Atom feeds via blogwatcher-cli tool.

ai-agentsgobash
0
4
Llm WikiA

Karpathy's LLM Wiki: build/query interlinked markdown KB.

ai-agentspythongo
0
4
PolymarketA

Query Polymarket: markets, prices, orderbooks, history.

securitypythongit
0
4
Research Paper WritingA

Write ML papers for NeurIPS/ICML/ICLR: design→submit.

researchpythonrust
0
4
XurlC

X/Twitter via xurl CLI: post, search, DM, media, v2 API.

securitypythongo
0
4
Debugging Fetih Tui CommandsA

Debug FETIH TUI slash commands: Python, gateway, Ink UI.

ai-agentstypescriptpython
0
4
Fetih Skill AuthoringA

Author in-repo SKILL.md: frontmatter, validator, structure.

ai-agentspythongo
0
4