
Claude Skills by oyi77
github.com/oyi77Use when performs OAuth 2.0 scope minimization review to identify over-permissioned
Use when this skill covers conducting cybersecurity assessments specific
Use when open Source Intelligence (OSINT) gathering is the first active
Use when automating OSINT collection using SpiderFoot REST API and CLI
Use when this skill covers conducting comprehensive security assessments
Use when this skill covers performing vulnerability assessments in OT
Use when perform vulnerability scanning in OT/ICS environments safely
Use when crafts and injects custom network packets using Scapy, hping3,
Use when monitoring paste sites like Pastebin and GitHub Gists for leaked
Use when goPhish is an open-source phishing simulation framework used
Use when conduct authorized physical penetration testing using tailgating,
Use when this skill covers analyzing Programmable Logic Controller (PLC)
Use when assesses organizational readiness for post-quantum cryptography
Use when this skill covers conducting cybersecurity assessments of electric
Use when automating the Privacy Impact Assessment (PIA) workflow including
Use when performs privilege escalation assessments on compromised Linux
Use when linux privilege escalation involves elevating from a low-privilege
Use when conduct systematic reviews of privileged accounts to validate
Use when discover and inventory all privileged accounts across enterprise
Use when executing Atomic Red Team tests mapped to MITRE ATT&CK techniques,
'Use when performs purple team exercises by coordinating red team adversary
'Use when executes a structured ransomware incident response from initial
Use when plans and facilitates tabletop exercises simulating ransomware
Use when automating GoPhish phishing simulation campaigns using the Python
Use when conduct red team operations using the Covenant C2 framework
Use when perform security analysis of Siemens S7comm and S7CommPlus protocols
Use when this skill covers implementing Software Composition Analysis
Use when perform security assessments of SCADA Human-Machine Interface
Use when detect and exploit second-order SQL injection vulnerabilities
Use when auditing HTTP security headers including CSP, HSTS, X-Frame-Options,
Use when performing security reviews of serverless functions across AWS
Use when auditing service accounts across enterprise infrastructure to
Use when automating credential rotation for service accounts across Active
Use when perform security testing of SOAP web services by analyzing WSDL
'Use when performs tabletop exercises for SOC teams simulating security
Use when automating SOC 2 Type II audit preparation including gap assessment
Use when perform forensic analysis of SQLite databases to recover deleted
Use when sSL/TLS certificate lifecycle management encompasses the full
Use when simulates SSL stripping attacks using sslstrip, Bettercap, and
Use when configure SSL/TLS inspection on network security devices to
Use when assess SSL/TLS server configurations using the sslyze Python
Use when test for Server-Side Request Forgery vulnerabilities by probing
'Use when performs static analysis of Windows PE (Portable Executable)
Use when detect and extract hidden data embedded in images, audio, and
Use when enumerate subdomains of target domains using ProjectDiscovery's
Use when simulate and detect software supply chain attacks including
Use when conduct a thick client application penetration test to identify
'Use when executes Atomic Red Team tests for MITRE ATT&CK technique validation
'Use when performs proactive threat hunting in Elastic Security SIEM
Use when using YARA pattern-matching rules to hunt for malware, suspicious