Skip to main content

bx33661/oh-my-vul

SkillsMP a collecté 10 skills depuis bx33661/oh-my-vul. Ouvrez un skill pour examiner sa source et ses détails.

Dernière activité source enregistrée
Catalogue SkillsMP mis à jour
skills collectés
10
Étoiles GitHub
4
Forks GitHub
0

Skills dans ce dépôt

Affichage de 10 skills collectés sur 10.

métier
Analystes en sécurité de l'information
description

Deep-audits a candidate finding from an Evidence.v1 file. Use when the user has an omv-find result they want to investigate further, wants to prove or disprove a vulnerability, needs to fill Evidence.v1 fields for omv-report, or invokes `/omv-audit`. Reads…

Langue du texte source : Plusieurs langues

mis à jour
métier
non classé
description

Performs adversarial pre-submission review of an Evidence.v1 finding plus optional ThreatMap.v1 and Verification.v1 sidecars. Use before `/omv-report` when the user wants likely CNA rejection reasons, report argument quality review, a reject_risk rating, or a…

Langue du texte source : anglais

mis à jour
métier
non classé
description

Checks whether an Evidence.v1 finding is likely already disclosed. Use when the user asks to deduplicate a finding, check CNA duplicate risk, search NVD/GHSA/OSV/ecosystem advisory databases or public discussion (issues, PRs, commits, blogs), or invokes…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Helps prepare responsible disclosure communications and timelines from an Evidence.v1 finding. Use when the user asks to contact a vendor, create initial/follow-up/deadline disclosure email templates, plan a 90-day timeline, record disclosure fields, or…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Finds and ranks open-source packages worth auditing for passive CVE/VulDB research. Use when the user asks for vulnerability research targets, CVE hunting candidates, packages to audit, projects to fuzz, or `/omv-find`. Supports npm, Python, Go, Rust, Java,…

Langue du texte source : anglais

mis à jour
métier
non classé
description

Variant-driven diffusion hunting for oh-my-vul. Use when the user has a confirmed or publicly disclosed vulnerability pattern and wants to find the same bug class in sibling packages, forks, or downstream consumers; also when they ask for watchlist…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Generate a complete, ready-to-submit VulDB vulnerability report and CVE request. Covers all major package ecosystems: npm, pip, Go, Cargo (Rust), RubyGems, Maven, Gradle, NuGet, Composer (PHP), CocoaPods, Swift Package Manager, pub (Dart/Flutter), Hex…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Guides a researcher through local reproduction of a vulnerability finding. Use when the user has an omv-audit result with evidence.reproducer filled but evidence.observed_result still unknown, wants to confirm a finding by running it locally, or invokes…

Langue du texte source : Plusieurs langues

mis à jour
métier
Autres occupations informatiques
description

oh-my-vul local-first vulnerability research project manager for Pi, Codex, and Claude Code. Shows workspace status, next actions, installed omv-* skills, registry info, and delegates .omv findings lifecycle commands. Use when the user invokes /skill:omv,…

Langue du texte source : anglais

mis à jour
métier
Autres occupations informatiques
description

Bootstrap discipline for oh-my-vul research. Use at the start of any vulnerability research conversation, when the user asks to audit/find/report a package, dig for CVEs, or run omv skills — and before claiming a finding is confirmed, ready to submit, or…

Langue du texte source : anglais

mis à jour
Affichage de 10 skills collectés sur 10.