
Claude Skills by yanacuti1121
github.com/yanacuti1121'Performing authorized AWS penetration testing using Pacu, the open-source
Perform forensic acquisition and analysis of cloud storage services including
'Detects container escape attempts by analyzing namespace configurations,
'This skill covers hardening container images by minimizing attack surface,
Scan container images, filesystems, and Kubernetes manifests for vulnerabilities,
Analyze and bypass Content Security Policy implementations to achieve
Extract stored credentials from compromised endpoints using the LaZagne
A cryptographic audit systematically reviews an application's use of
Testing web applications for Cross-Site Request Forgery vulnerabilities
Leverage the CISA Known Exploited Vulnerabilities catalog alongside EPSS
Dark web monitoring involves systematically scanning Tor hidden services,
'Deploys deception technology including honeypots, honeytokens, and decoy
Testing web applications for path traversal vulnerabilities that allow
'Conducts disk forensics investigations using forensic imaging, file
Execute a phased DMARC rollout from p=none monitoring through p=quarantine
'Enumerates DNS records, attempts zone transfers, brute-forces subdomains,
'Detects DNS tunneling by computing Shannon entropy of DNS query names,
Docker Bench for Security is an open-source script that checks dozens
'Performs runtime dynamic analysis of Android applications using Frida,
'Performs interactive dynamic malware analysis using the ANY.RUN cloud
'Performs digital forensics investigation on compromised endpoints including
'Performs vulnerability remediation on endpoints by prioritizing CVEs
'Performs entitlement review and access certification campaigns using
Conduct a comprehensive external network penetration test to identify
Perform systematic SIEM false positive reduction through rule tuning,
Recover files from disk images and unallocated space using Foremost's
'Performs firmware image extraction and analysis using binwalk to identify
'Analyzes firmware images for embedded malware, backdoors, and unauthorized
'Perform coverage-guided fuzzing of compiled binaries using AFL++ (American
Perform GCP security testing using GCPBucketBrute for storage bucket
'Performing comprehensive security assessments of Google Cloud Platform
Execute and test GraphQL depth limit attacks using deeply nested recursive
'Performs GraphQL introspection attacks to extract the full API schema
Assessing GraphQL API endpoints for introspection leaks, injection attacks,
Integrate Hardware Security Modules (HSMs) using PKCS#11 interface for
Hash cracking is an essential skill for penetration testers and security
Execute HTTP Parameter Pollution attacks to bypass input validation,
'Perform comprehensive ICS/OT asset discovery using Claroty xDome platform,
Indicator lifecycle management tracks IOCs from initial discovery through
Perform authorized initial access using EvilGinx3 adversary-in-the-middle
'Investigates insider threat incidents involving employees, contractors,
'Automates Indicator of Compromise (IOC) enrichment by orchestrating
'Performs comprehensive iOS application security assessments using Frida
'Performs comprehensive security assessments of IoT devices and their
Analyze IP address reputation using the Shodan API to identify open ports,
Execute and test the JWT none algorithm attack to bypass signature verification
Kerberoasting is a post-exploitation technique that targets service accounts
Audit Kubernetes cluster security posture against CIS benchmarks using
Assess the security posture of Kubernetes etcd clusters by evaluating
Kubernetes penetration testing systematically evaluates cluster security