Skip to main content
Manus에서 모든 스킬 실행
원클릭으로
GitHub 저장소

blackbox-claude-plugin

blackbox-claude-plugin에는 allsmog에서 수집한 skills 17개가 있으며, 저장소 수준 직업 범위와 사이트 내 skill 상세 페이지를 제공합니다.

수집된 skills
17
Stars
4
업데이트
2026-02-23
Forks
1
직업 범위
직업 카테고리 1개 · 100% 분류됨
저장소 탐색

이 저장소의 skills

active-directory-attacks
정보 보안 분석가

This skill should be used when the user asks about "Active Directory", "Kerberoasting", "AS-REP roasting", "LDAP enumeration", "BloodHound", "DCSync", "Pass-the-Hash", "Golden Ticket", or needs guidance on attacking Windows domain environments.

2026-02-23
cacti-exploitation
정보 보안 분석가

This skill covers Cacti network monitoring tool exploitation including authenticated RCE via graph templates (CVE-2025-24367), unauthenticated command injection (CVE-2022-46169), and authentication bypass techniques.

2026-02-23
common-exploits
정보 보안 분석가

This skill should be used when the user asks about "searchsploit", "CVE exploits", "exploit database", "common vulnerabilities", "reverse shells", "webshells", or needs guidance on exploiting common vulnerabilities and services.

2026-02-23
container-escapes
정보 보안 분석가

This skill covers container escape techniques for Docker, LXC/LXD, and Kubernetes environments. Includes Docker socket escape, Docker Desktop API escape (192.168.65.7:2375), privileged container breakout, and capability-based escapes.

2026-02-23
credential-attacks
정보 보안 분석가

This skill should be used when the user asks about "password cracking", "brute force", "hydra", "hashcat", "john", "credential stuffing", "password spraying", or needs guidance on credential-based attacks.

2026-02-23
ctf-writeup-lookup
정보 보안 분석가

This skill should be used when stuck on a CTF challenge or when the user asks to look up a writeup. Use EARLY when brute forcing or guessing seems like the only option - writeups often reveal the intended path. Trigger on: "look up writeup", "how do others solve", "stuck", "what's the intended path", machine names like "Soulmate", "Headless".

2026-02-23
database-credential-extraction
정보 보안 분석가

This skill should be used when the user asks about "dump database", "extract credentials", "sqlite", "mysql credentials", "database passwords", or needs to extract user data from common database systems.

2026-02-23
erlangotp-exploitation
정보 보안 분석가

This skill should be used when Erlang/OTP services are detected: - Port 4369 (EPMD - Erlang Port Mapper Daemon) - Erlang SSH (usually port 2222) - RabbitMQ, CouchDB, or other Erlang-based services Covers CVE-2025-32433 pre-auth RCE and other Erlang attack vectors.

2026-02-23
ftp-server-exploitation
정보 보안 분석가

This skill should be used when FTP services are detected including: - CrushFTP (CVE-2025-31161 auth bypass) - vsftpd (backdoor) - ProFTPD (mod_copy) - Pure-FTPd, FileZilla Server Covers authentication bypass, file access, and privilege escalation.

2026-02-23
hash-cracking-workflow
정보 보안 분석가

This skill should be used when the user asks about "crack hash", "identify hash", "hashcat", "john", "found hash", or needs to crack password hashes. Provides complete workflow from hash identification to cracking.

2026-02-23
linux-privilege-escalation
정보 보안 분석가

This skill should be used when the user asks about "Linux privilege escalation", "linpeas", "SUID", "sudo abuse", "GTFOBins", "kernel exploits", "cron jobs", "capabilities", or needs guidance on escalating privileges on Linux systems.

2026-02-23
password-hunting
정보 보안 분석가

This skill should be used when you have shell access and need to find credentials for lateral movement or privilege escalation. Covers: - Grepping for passwords in config files - Common credential locations - Database extraction - History files and environment variables

2026-02-23
php-type-juggling
정보 보안 분석가

This skill covers PHP type juggling vulnerabilities including magic hashes, loose comparison bypass, and authentication circumvention. Use when encountering PHP applications with password reset, token validation, or strcmp-based auth.

2026-02-23
network-reconnaissance
정보 보안 분석가

This skill should be used when the user asks about "nmap", "port scanning", "network reconnaissance", "service discovery", "masscan", "host discovery", "banner grabbing", or needs guidance on network enumeration techniques.

2026-02-23
source-code-security-patterns
정보 보안 분석가

This skill should be used when analyzing discovered source code for security issues. Helps identify dangerous functions, hardcoded secrets, and vulnerable packages.

2026-02-23
web-application-enumeration
정보 보안 분석가

This skill should be used when the user asks about "gobuster", "directory fuzzing", "web enumeration", "nikto", "web vulnerabilities", "feroxbuster", "ffuf", "subdomain enumeration", or needs guidance on web application testing.

2026-02-23
windows-privilege-escalation
정보 보안 분석가

This skill should be used when the user asks about "Windows privilege escalation", "winpeas", "token impersonation", "potato attacks", "service exploitation", "unquoted service path", "AlwaysInstallElevated", or needs guidance on escalating privileges on Windows systems.

2026-02-23