Skip to main content
PurpleAILAB
Profil créateur GitHub

PurpleAILAB

Vue par dépôt de 354 skills collectés dans 2 dépôts GitHub.

skills collectés
354
dépôts
2
mis à jour
17 août 2026
explorateur de dépôts

Dépôts et skills représentatifs

finding-protocol
Analystes en sécurité de l'information

Operational-tier finding template — minimal fields for sub-agent decision support. Heavyweight deliverable promotion lives in skills/decepticon/final-report.

17 août 2026
ad-overview
Analystes en sécurité de l'information

Active Directory attack lane — BloodHound ingestion, Kerberoasting, ADCS ESC scanning, DCSync, LAPS extraction.

17 août 2026
patch-diff-research
Analystes en sécurité de l'information

Authorized patch-diff workflow for deriving and validating vulnerability variants from a known vulnerable-to-fixed source change.

17 août 2026
pattern-exhaustion
Développeurs de logiciels

Systematic pattern exhaustion methodology. Load after finding any confirmed vulnerability to search for all instances of the same root cause pattern across the codebase.

17 août 2026
analyst-overview
Développeurs de logiciels

Root pointer for the analyst's vulnerability research playbooks. Load this first at iteration start to see the full catalog of vuln-class and chain-building skills.

17 août 2026
contracts-overview
Développeurs de logiciels

Smart contract audit lane — Solidity/EVM pattern scanner, Slither ingestion, Foundry PoC generation, DeFi attack playbooks.

17 août 2026
web
Développeurs de logiciels

Web application exploitation — the primary category skill for all web-based attacks. This is a routing skill: read this first to identify the attack type, then load the appropriate specialized sub-skill for detailed procedures. Covers 11 technique areas…

17 août 2026
fuzzing
Développeurs de logiciels

Coverage-guided fuzzing methodology for compiled binaries and libraries: target scoping, fuzzer selection (AFL++/libFuzzer/Honggfuzz), harness skeleton, ASan+UBSan flags, corpus curation, crash triage and minimization (afl-tmin/minimize_corpus),…

17 août 2026
Affichage de 8 skills collectés sur 315.
cross-chain
Développeurs de logiciels

Auto-loaded by cross-chain-auditor agent during Phase 2. Provides detection patterns for: missing source chain/address validation, replay attacks, message ordering, chain-specific code, finality assumptions. Core artifact: Cross-Chain Message Flow diagram.

2 févr. 2026
oracle
Développeurs de logiciels

Auto-loaded by oracle-auditor agent during Phase 2. Provides detection patterns for: stale prices, deprecated Chainlink functions, L2 sequencer downtime, decimal mismatches, spot price manipulation, oracle DoS. Core artifact: Oracle Integration Matrix.

2 févr. 2026
reentrancy
Développeurs de logiciels

Auto-loaded by reentrancy-auditor agent during Phase 2. Provides detection patterns for: CEI violations, cross-function/cross-contract reentrancy, read-only reentrancy, token callback exploits (ERC721/777/1155). Core artifact: State Timeline map.

2 févr. 2026
access-control
Développeurs de logiciels

Auto-loaded by access-control-auditor agent during Phase 2. Provides detection patterns for: missing modifiers, privilege escalation, tx.origin phishing, OR/AND logic errors, missing two-step transfer. Core artifact: Permission Matrix.

2 févr. 2026
token
Développeurs de logiciels

Auto-loaded by token-auditor agent during Phase 2. Provides detection patterns for: fee-on-transfer, rebasing tokens, ERC777 hooks, ERC721/1155 callbacks, missing return values, blacklist/pausable, low decimals. Core artifact: Token Compatibility Matrix.

2 févr. 2026
upgradeability
Développeurs de logiciels

Auto-loaded by access-control-auditor agent during Phase 2. Provides detection patterns for: UUPS/Transparent/Beacon proxy vulnerabilities, storage collision, initialization issues, function selector clashing, upgrade authorization. Core artifact: Proxy…

2 févr. 2026
lending
Développeurs de logiciels

Auto-loaded by defi-auditor agent during Phase 2 when analyzing lending protocols. Provides patterns for: liquidation logic, interest rate models, collateral management, health factor calculations, bad debt handling. Core vulnerabilities: self-liquidation,…

2 févr. 2026
vault-erc4626
Développeurs de logiciels

Auto-loaded by defi-auditor agent during Phase 2 when analyzing ERC4626 vaults. Provides patterns for: share/asset conversion, inflation attack mitigations, rounding direction rules, donation attacks. Critical: first depositor attack, virtual shares offset,…

2 févr. 2026
Affichage de 8 skills collectés sur 39.
2 dépôts affichés sur 2
Tous les dépôts sont affichés