Skip to main content
brucesongs
GitHub creator profile

brucesongs

Repository-level view of 139 collected skills across 1 GitHub repositories.

skills collected
139
repositories
1
updated
Aug 19, 2026
repository explorer

Repositories and representative skills

ai-security
unclassified

Semantic-layer attack testing against AI systems and LLM-integrated applications.

Aug 19, 2026
cloud-security
unclassified

Cloud security covers security assessment for major cloud platforms including AWS, Azure, and GCP, with core focus on IAM misconfiguration detection, storage bucket exposure scanning, metadata service attacks, container escape, and Kubernetes RBAC auditing.

Aug 19, 2026
deception-honeypot
unclassified

Defensive deception and honeypot deployment covering SSH/Telnet (Cowrie), web (OpenCanary), enterprise (HFish), ICS/SCADA (Conpot), all-in-one (T-Pot), AI-driven deception (Beelzebub), Thinkst Canarytokens (DNS, HTTP, file, AWS API key, SQL), Dionaea…

Aug 19, 2026
deep-research
unclassified

Multi-source intelligence gathering through systematic web research — producing thorough, cited reports from diverse sources.

Aug 19, 2026
social-intelligence
unclassified

Real-time intelligence gathering from social platforms and community discussions — capturing what people are saying, sharing, and leaking right now.

Aug 19, 2026
5g-telecom-attack
information-security-analysts

5G core (AMF/SMF/UPF), RAN, signaling (PFCP/GTP/Diameter/SS7), IMSI catchers, O-RAN security, roaming abuse, SMS interception, and telecom infrastructure red team operations.

Aug 17, 2026
ad-cs-abuse
information-security-analysts

Active Directory Certificate Services (AD CS) abuse — ESC1-ESC15 attack patterns, PKINIT, PetitPotam to AD CS to Domain Admin chains, CVE-2022-26923 (Certifried), Shadow Credentials, Golden Certificate, certificate template ACL abuse, NTLM relay to web…

Aug 17, 2026
ai-agent-security
information-security-analysts

Offensive security testing of AI agent systems covering MCP server attacks, tool poisoning, indirect prompt injection against agents, RAG knowledge base poisoning, agent sandbox escape, multi-agent compromise chains, and autonomous agent hijacking — using MCP…

Aug 17, 2026
Showing 8 of 139 collected skills.
Showing 1 of 1 repositories
All repositories loaded