
Claude Skills by oyi77
github.com/oyi77Use when identifies and exploits IPv6-specific vulnerabilities including
Use when exploits JWT algorithm confusion vulnerabilities where the server's
Use when perform Kerberoasting attacks using Impacket's GetUserSPNs to
Use when discover and exploit mass assignment vulnerabilities in REST
Use when mS17-010 (EternalBlue) is a critical vulnerability in Microsoft's
Use when exploit the noPac vulnerability chain (CVE-2021-42278 sAMAccountName
Use when detect and exploit NoSQL injection vulnerabilities in MongoDB,
Use when identifying and exploiting OAuth 2.0 and OpenID Connect misconfigurations
Use when detect and exploit JavaScript prototype pollution vulnerabilities
Use when detect and exploit race condition vulnerabilities in web applications
Use when identifying and exploiting SSRF vulnerabilities to access internal
Use when identifies and exploits SMB protocol vulnerabilities using Metasploit
Use when identifying and exploiting SQL injection vulnerabilities in
Use when detecting and exploiting SQL injection vulnerabilities using
Use when detecting and exploiting Server-Side Template Injection (SSTI)
Use when exploit PHP type juggling vulnerabilities caused by loose comparison
Use when the Metasploit Framework is the world's most widely used penetration
Use when testing WebSocket implementations for authentication bypass,
Use when exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon
Use when extract and analyze browser history, cookies, cache, downloads,
Use when extract embedded configuration from Agent Tesla RAT samples
Use when extract cached credentials, password hashes, Kerberos tickets,
Use when extracts indicators of compromise (IOCs) from malware samples
Use when uses Rekall memory forensics framework to analyze memory dumps
Use when extract, parse, and analyze Windows Event Logs (EVTX) using
Use when advanced fuzzing techniques for finding zero-days and hidden
Generates structured cyber threat intelligence reports at strategic,
'Use when reverse engineer Go and Rust binaries: recognize the language
Use when starting web application testing, API security assessment, bug bounty hunting, or authorized penetration testing. Master router that determines testing phase (Recon/Validation/PrivEsc/Chain) and routes to the correct vulnerability category skill (XSS, SQLi, SSRF, IDOR, JWT, API, Auth, etc.).
Use when all-in-one terminal hacking toolkit — 185+ security tools across
Use when hardening Docker containers for production involves applying
Use when harden the Docker daemon by configuring daemon.json with user
'Use when hardens Linux endpoints using CIS Benchmark recommendations
'Use when hardens Windows endpoints using CIS (Center for Internet Security)
Use when mCP-based cybersecurity automation with 150+ tools and 12 AI
'Use when proactively hunts for Advanced Persistent Threat (APT) activity
'Use when detects credential stuffing attacks by analyzing authentication
'Use when hunting for malicious PowerShell activity by analyzing Script
Use when identify command-and-control beaconing patterns in network traffic
Use when detect C2 beaconing patterns in network traffic using frequency
Use when hunt for data exfiltration through network traffic analysis,
Use when detect data staging activity before exfiltration by monitoring
Use when hunt for DCOM-based lateral movement by detecting abuse of MMC20.Application,
Use when detect DCSync attacks by analyzing Windows Event ID 4662 for
Use when detect NTFS timestamp manipulation (MITRE T1070.006) by comparing
Use when hunt for DNS-based persistence mechanisms including DNS hijacking,
Use when detect DNS tunneling and data exfiltration by analyzing Zeek
Use when detect domain fronting C2 traffic by analyzing SNI vs HTTP Host
Use when detect WMI-based lateral movement by analyzing Windows Event
Use when hunt for adversary abuse of legitimate cloud services for C2,