Skip to main content

anthropics/defending-code-reference-harness

SkillsMP ha recopilado 9 skills de anthropics/defending-code-reference-harness. Abre una skill para revisar su origen y sus detalles.

Última actividad de origen registrada
Catálogo de SkillsMP actualizado
skills recopiladas
9
Estrellas en GitHub
7360
Forks en GitHub
593

Mostrando 9 de 9 skills recopiladas.

ocupación
Desarrolladores de software
descripción

Adapt this C/C++ ASAN vulnerability pipeline to a different vulnerability class, target shape, language, or detection mechanism. Use when the user wants to port, migrate, retarget, customize, or fork the pipeline for something other than C/C++ memory-safety…

Idioma del texto original: inglés

actualizado
ocupación
Desarrolladores de software
descripción

Generate candidate fixes for verified security findings. Consumes TRIAGE.json (preferred), VULN-FINDINGS.json, INCIDENTS.json, or a vuln-pipeline results directory. Pipeline input is delegated to the execution-verified `vuln-pipeline patch` ladder;…

Idioma del texto original: inglés

actualizado
ocupación
Analistas de seguridad de la información
descripción

Build a threat model for a target codebase. Three modes: "interview" walks an application owner through the four-question framework and produces a threat model from their answers; "bootstrap" derives a threat model from the code plus past vulnerabilities…

Idioma del texto original: inglés

actualizado
ocupación
Analistas de seguridad de la información
descripción

Triage a batch of raw security findings. Verify each is real, collapse duplicates, re-rank by derived exploitability, and tag with an owner. Takes a directory or file of scanner output and writes TRIAGE.json + TRIAGE.md sorted by what actually needs…

Idioma del texto original: inglés

actualizado
ocupación
Analistas de seguridad de la información
descripción

Proactive threat hunt over web/application logs — no alert in hand. Profiles the corpus, runs a hypothesis-driven hunt loop with a mandatory written ledger, confirms suspects in source, detonates a local PoC, and writes INCIDENTS.json + INCIDENT_REPORT.md.…

Idioma del texto original: inglés

actualizado
ocupación
Analistas de seguridad de la información
descripción

Incident response workup for a lead in hand — an alert, an IOC, or a /dnr-hunt finding. Scopes the lead across the logs, verdicts whether the attack succeeded, quantifies blast radius, confirms root cause in source with a local PoC, and writes a proposed…

Idioma del texto original: inglés

actualizado
ocupación
Otras ocupaciones informáticas
descripción

The front door for this repo. With no argument: a 30-second intro, then an offer to walk you through your first run on the canary target. With a question: answers it from this repo's own docs and source, cites where it looked, and hands you the next command.…

Idioma del texto original: inglés

actualizado
ocupación
Analistas de garantía de calidad de software y probadores
descripción

Verify harness changes end-to-end without docker — drive the real pinned CLI against a header-capturing stub server with the exact env resolve_auth_env() produces.

Idioma del texto original: inglés

actualizado
ocupación
Analistas de seguridad de la información
descripción

Static source-code vulnerability scan. Reads a target directory (and THREAT_MODEL.md if present), spawns parallel review subagents per focus area, and writes VULN-FINDINGS.json + .md for /triage to consume. Read-only — no building, running, or network. For…

Idioma del texto original: inglés

actualizado
Mostrando 9 de 9 skills recopiladas.