Skip to main content
dariushoule
GitHub クリエイタープロフィール

dariushoule

2 件の GitHub リポジトリにある 24 件の収集済み skills をリポジトリ単位で表示します。

収集済み skills
24
リポジトリ
2
更新
2026年7月19日
リポジトリエクスプローラー

リポジトリと代表的な skills

recon
情報セキュリティアナリスト

Network, service, and web enumeration for authorized pentesting and CTF. Use when starting an engagement or CTF box and you need to map attack surface — discover open ports, fingerprint services, enumerate web apps, and triage what to attack first. Triggers…

2026年7月19日
hashcat
情報セキュリティアナリスト

Offline password-hash cracking with hashcat on the host GPU, for authorized pentesting and CTF. Use to identify an unknown hash's type, pick the right hashcat mode, fetch a wordlist, and run a sensible wordlist→rules→mask attack ladder. Triggers on "help me…

2026年7月6日
linux-privesc
情報セキュリティアナリスト

Linux local privilege escalation methodology for authorized pentesting and CTF — turn a foothold shell (often a low-priv/service account like www-data) into root. Use after landing any non-root shell on a Linux host and you need to escalate: enumerate the…

2026年7月6日
browse
ソフトウェア開発者

Drive a real web browser as a companion to the operator during authorized pentesting/CTF — a host Chrome routed through the VPN that both the human and the agent can control over CDP (Playwright MCP). Use to explore a web app interactively, reproduce/poke at…

2026年6月28日
retro
その他コンピュータ職

Post-engagement retrospective that turns one run's operator↔agent interactions into durable improvements to this repo's skills, runbooks, and tooling. Use at the end of an engagement (after the work, ideally before teardown wipes scratch) to refine skills,…

2026年6月22日
wordlists
情報セキュリティアナリスト

Pick and fetch the right SecLists wordlist on demand for content discovery, fuzzing, subdomain/vhost enum, parameter mining, default-cred spraying, and payload injection (LFI/SSRF/SQLi/XSS), for authorized pentesting and CTF. Use when a fuzz/brute job needs a…

2026年6月22日
cloud
情報セキュリティアナリスト

Cloud-emulator and AWS-compatible-API attack methodology for authorized pentesting and CTF. Use when a target exposes an AWS-shaped API (LocalStack, moto, or a custom/look-alike mock), an instance metadata service (IMDS / 169.254.169.254) reachable via SSRF,…

2026年6月22日
vuln-research
情報セキュリティアナリスト

CVE and public-exploit (PoC) research for authorized pentesting and CTF. Use after recon fingerprints a service/version to find known vulnerabilities and working exploits — GitHub PoCs, Exploit-DB, Metasploit modules — ranked by exploitability. Also sharpens…

2026年6月21日
収集済み skill 16 件中 8 件を表示しています。
yara-sigs
情報セキュリティアナリスト

Scan a state snapshot's memory dumps with YARA signatures to detect packers, crypto constants, malware, and more

2026年3月13日
state-snapshot
ソフトウェア開発者

Capture a full debuggee state snapshot (all committed memory regions + processor state) to disk for offline analysis

2026年3月13日
find-oep
情報セキュリティアナリスト

Smart trace-based OEP finder for packed/protected PE executables. Traces through packer stubs using intelligent stepping, anti-debug evasion, and heuristic OEP detection, then captures a state snapshot at the original entry point.

2026年3月11日
vuln-hunter
情報セキュリティアナリスト

Hunt for vulnerabilities in a running debuggee by analyzing imports/exports, triaging attack surface, and iteratively testing for bugs with PoC generation.

2026年3月11日
shellcode-analyzer
情報セキュリティアナリスト

Load, unpack, and analyze shellcode in x64dbg. Use this skill when the user wants to analyze shellcode, load a shellcode blob into a debugger, unpack encoded/encrypted shellcode, or perform static/dynamic analysis of shellcode payloads.

2026年3月5日
decompile
ソフトウェア開発者

Decompile a function to C-like pseudocode using angr

2026年2月12日
state-diff
ソフトウェア開発者

Compare two state snapshots to identify register and memory changes between two points in time

2026年2月12日
tracealyzer
ソフトウェア開発者

Trace execution (into or over calls) for N steps or until a condition, then analyze the recorded instruction log

2026年2月12日
2 件中 2 件のリポジトリを表示
すべてのリポジトリを表示しました