Authorized pentest tool reference for mapping tasks to the right utilities, command patterns, and installation notes across recon, web testing, exploitation, password attacks, internal operations, privilege escalation, tunneling, shell delivery, credential access, and encoding workflows. Use for tool selection, quick command recall, or converting the extracted tools wiki into narrower skills.
Scanned 9/5/2026
Install to Claude Code
npx -y skills add antigalautgr-ops/VulnClaw --skill references --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of References?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/antigalautgr-ops-references-vulnclaw)More formats (shields.io, HTML) on the badges page.
---
name: pentest-tools-reference
description: Authorized pentest tool reference for mapping tasks to the right utilities, command patterns, and installation notes across recon, web testing, exploitation, password attacks, internal operations, privilege escalation, tunneling, shell delivery, credential access, and encoding workflows. Use for tool selection, quick command recall, or converting the extracted tools wiki into narrower skills.
---
# Pentest Tools Reference
Use this skill to map testing goals to concrete tool choices and command patterns.
## When To Use
- The user needs a tool shortlist or command reference rather than a technique playbook.
- The task spans multiple candidate tools and you need to choose the smallest viable set.
- The user wants to turn the extracted tools wiki into narrower task-specific skills.
## When Not To Use
- The request needs full exploit workflow guidance rather than tool selection.
- A narrower existing skill already fits the job better.
- The task is mainly documentation of attack families, not tooling.
## Workflow
1. Start with `references/tools-reference-index.md`, then pick the smallest matching tool category.
2. Read only the relevant files in `references/`.
3. If detailed command syntax is needed, use the packaged reference entries in `references/`; any extracted source path still shown in entries should be treated as provenance only.
4. Return only the tools that fit the target OS, access level, assessment phase, and operator constraints.
5. When converting to a full skill, promote only the highest-value tools into the final workflow and keep the rest as optional references.
## Category Map
- 编码解码: `references/tools-reference-01-encoding-decoding.md`
- 反弹Shell: `references/tools-reference-04-exploitation.md`
- 红队工具: `references/tools-reference-03-red-team-tools.md`
- 漏洞利用: `references/tools-reference-04-exploitation.md`
- 密码攻击: `references/tools-reference-05-password-attacks.md`
- 内网渗透: `references/tools-reference-06-intranet-penetration.md`
- 凭证窃取: `references/tools-reference-07-credential-theft.md`
- 权限提升: `references/tools-reference-08-privilege-escalation.md`
- 隧道代理: `references/tools-reference-09-tunneling-and-proxy.md`
- 系统命令: `references/tools-reference-10-system-commands.md`
- 信息收集: `references/tools-reference-11-information-gathering.md`
- 域渗透: `references/tools-reference-12-domain-penetration.md`
- Web渗透: `references/tools-reference-13-web-penetration.md`
- Windows渗透: `references/tools-reference-14-windows-penetration.md`
## Notes
- Prefer the smallest viable toolset.
- Use `references/tools-reference-index.md` as the first stop for category selection.
- Include installation only when it materially affects execution.
- Distinguish between enumeration, exploitation, and post-exploitation tooling.
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!