Skip to main content
dariushoule
Profil créateur GitHub

dariushoule

Vue par dépôt de 24 skills collectés dans 2 dépôts GitHub.

skills collectés
24
dépôts
2
mis à jour
19 juil. 2026
explorateur de dépôts

Dépôts et skills représentatifs

recon
Analystes en sécurité de l'information

Network, service, and web enumeration for authorized pentesting and CTF. Use when starting an engagement or CTF box and you need to map attack surface — discover open ports, fingerprint services, enumerate web apps, and triage what to attack first. Triggers…

19 juil. 2026
hashcat
Analystes en sécurité de l'information

Offline password-hash cracking with hashcat on the host GPU, for authorized pentesting and CTF. Use to identify an unknown hash's type, pick the right hashcat mode, fetch a wordlist, and run a sensible wordlist→rules→mask attack ladder. Triggers on "help me…

6 juil. 2026
linux-privesc
Analystes en sécurité de l'information

Linux local privilege escalation methodology for authorized pentesting and CTF — turn a foothold shell (often a low-priv/service account like www-data) into root. Use after landing any non-root shell on a Linux host and you need to escalate: enumerate the…

6 juil. 2026
browse
Développeurs de logiciels

Drive a real web browser as a companion to the operator during authorized pentesting/CTF — a host Chrome routed through the VPN that both the human and the agent can control over CDP (Playwright MCP). Use to explore a web app interactively, reproduce/poke at…

28 juin 2026
retro
Autres occupations informatiques

Post-engagement retrospective that turns one run's operator↔agent interactions into durable improvements to this repo's skills, runbooks, and tooling. Use at the end of an engagement (after the work, ideally before teardown wipes scratch) to refine skills,…

22 juin 2026
wordlists
Analystes en sécurité de l'information

Pick and fetch the right SecLists wordlist on demand for content discovery, fuzzing, subdomain/vhost enum, parameter mining, default-cred spraying, and payload injection (LFI/SSRF/SQLi/XSS), for authorized pentesting and CTF. Use when a fuzz/brute job needs a…

22 juin 2026
cloud
Analystes en sécurité de l'information

Cloud-emulator and AWS-compatible-API attack methodology for authorized pentesting and CTF. Use when a target exposes an AWS-shaped API (LocalStack, moto, or a custom/look-alike mock), an instance metadata service (IMDS / 169.254.169.254) reachable via SSRF,…

22 juin 2026
vuln-research
Analystes en sécurité de l'information

CVE and public-exploit (PoC) research for authorized pentesting and CTF. Use after recon fingerprints a service/version to find known vulnerabilities and working exploits — GitHub PoCs, Exploit-DB, Metasploit modules — ranked by exploitability. Also sharpens…

21 juin 2026
Affichage de 8 skills collectés sur 16.
yara-sigs
Analystes en sécurité de l'information

Scan a state snapshot's memory dumps with YARA signatures to detect packers, crypto constants, malware, and more

13 mars 2026
state-snapshot
Développeurs de logiciels

Capture a full debuggee state snapshot (all committed memory regions + processor state) to disk for offline analysis

13 mars 2026
find-oep
Analystes en sécurité de l'information

Smart trace-based OEP finder for packed/protected PE executables. Traces through packer stubs using intelligent stepping, anti-debug evasion, and heuristic OEP detection, then captures a state snapshot at the original entry point.

11 mars 2026
vuln-hunter
Analystes en sécurité de l'information

Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation.

11 mars 2026
shellcode-analyzer
Analystes en sécurité de l'information

Load, unpack, and analyze shellcode in x64dbg. Use this skill when the user wants to analyze shellcode, load a shellcode blob into a debugger, unpack encoded/encrypted shellcode, or perform static/dynamic analysis of shellcode payloads.

5 mars 2026
decompile
Développeurs de logiciels

Decompile a function to C-like pseudocode using angr

12 févr. 2026
state-diff
Développeurs de logiciels

Compare two state snapshots to identify register and memory changes between two points in time

12 févr. 2026
tracealyzer
Développeurs de logiciels

Trace execution (into or over calls) for N steps or until a condition, then analyze the recorded instruction log

12 févr. 2026
2 dépôts affichés sur 2
Tous les dépôts sont affichés