Skip to main content

anthropics/defending-code-reference-harness

SkillsMP a collecté 9 skills depuis anthropics/defending-code-reference-harness. Ouvrez un skill pour examiner sa source et ses détails.

Dernière activité source enregistrée
Catalogue SkillsMP mis à jour
skills collectés
9
Étoiles GitHub
7 360
Forks GitHub
593

Affichage de 9 skills collectés sur 9.

métier
Développeurs de logiciels
description

Adapt this C/C++ ASAN vulnerability pipeline to a different vulnerability class, target shape, language, or detection mechanism. Use when the user wants to port, migrate, retarget, customize, or fork the pipeline for something other than C/C++ memory-safety…

Langue du texte source : anglais

mis à jour
métier
Développeurs de logiciels
description

Generate candidate fixes for verified security findings. Consumes TRIAGE.json (preferred), VULN-FINDINGS.json, INCIDENTS.json, or a vuln-pipeline results directory. Pipeline input is delegated to the execution-verified `vuln-pipeline patch` ladder;…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Build a threat model for a target codebase. Three modes: "interview" walks an application owner through the four-question framework and produces a threat model from their answers; "bootstrap" derives a threat model from the code plus past vulnerabilities…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Triage a batch of raw security findings. Verify each is real, collapse duplicates, re-rank by derived exploitability, and tag with an owner. Takes a directory or file of scanner output and writes TRIAGE.json + TRIAGE.md sorted by what actually needs…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Proactive threat hunt over web/application logs — no alert in hand. Profiles the corpus, runs a hypothesis-driven hunt loop with a mandatory written ledger, confirms suspects in source, detonates a local PoC, and writes INCIDENTS.json + INCIDENT_REPORT.md.…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Incident response workup for a lead in hand — an alert, an IOC, or a /dnr-hunt finding. Scopes the lead across the logs, verdicts whether the attack succeeded, quantifies blast radius, confirms root cause in source with a local PoC, and writes a proposed…

Langue du texte source : anglais

mis à jour
métier
Autres occupations informatiques
description

The front door for this repo. With no argument: a 30-second intro, then an offer to walk you through your first run on the canary target. With a question: answers it from this repo's own docs and source, cites where it looked, and hands you the next command.…

Langue du texte source : anglais

mis à jour
métier
Analystes en assurance qualité des logiciels et testeurs
description

Verify harness changes end-to-end without docker — drive the real pinned CLI against a header-capturing stub server with the exact env resolve_auth_env() produces.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Static source-code vulnerability scan. Reads a target directory (and THREAT_MODEL.md if present), spawns parallel review subagents per focus area, and writes VULN-FINDINGS.json + .md for /triage to consume. Read-only — no building, running, or network. For…

Langue du texte source : anglais

mis à jour
Affichage de 9 skills collectés sur 9.