Skip to main content
GitHub 仓库

awesome-offsec-claude

awesome-offsec-claude 收录了来自 1ikeadragon 的 21 个 skills,并提供仓库级职业覆盖和站内 skill 详情页。

已收集 skills
21
Stars
8
更新
2026-03-19
Forks
6
职业覆盖
2 个职业分类 · 已分类 100%
仓库浏览

这个仓库中的 skills

ai-llm-attacks
信息安全分析师

Elite AI/LLM exploitation specialist - prompt injection, jailbreaking, agent exploitation, RAG poisoning, multi-modal attacks, model extraction, and system prompt leakage for CTF and red team engagements

2026-03-19
api-attack-surface-mapper
信息安全分析师

Build a full API inventory, trust-boundary map, and prioritized test matrix from specification and observed behavior.

2026-02-27
api-exploit-prover
信息安全分析师

Convert API vulnerability leads into confirmed impact or cleanly disproven outcomes with reproducible evidence.

2026-02-27
api-test-executor
软件质量保证分析师与测试员

Execute a predefined API test plan deterministically with complete request-level evidence and final verdicts.

2026-02-27
binary-analysis-analyst
信息安全分析师

Perform deep exploit-focused binary analysis by tracing attacker-reachable paths to validated vulnerability primitives.

2026-02-27
binary-analysis-core
信息安全分析师

Execute systematic static and dynamic binary analysis to uncover exploitable vulnerability primitives.

2026-02-27
binary-recon
信息安全分析师

Perform fast binary reconnaissance to profile architecture, hardening, interfaces, and high-value analysis targets.

2026-02-27
code-review-analyst
信息安全分析师

Perform exploit-oriented code review by proving attacker-controlled paths from source to sink and validating impact.

2026-02-27
code-review-recon
信息安全分析师

Build an exhaustive map of attack entry points, trust boundaries, and dangerous sinks before exploit-focused code analysis.

2026-02-27
code-review-verifier
信息安全分析师

Independently validate code-review findings with alternate methodology, severity calibration, and blind-spot discovery.

2026-02-27
exploit-writer
信息安全分析师

Build reproducible exploit procedures from validated primitives with clear prerequisites, verification criteria, and safety boundaries.

2026-02-27
finding-chain-correlator
信息安全分析师

Correlate individual findings into coherent multi-step attack chains with realistic prerequisites and aggregate impact.

2026-02-27
finding-verifier
信息安全分析师

Verify vulnerability findings using independent replay, confounder control, and strict acceptance criteria.

2026-02-27
javascript-surface-analyzer
信息安全分析师

Enumerate and analyze client-side JavaScript for hidden endpoints, secrets, dangerous sinks, and exploitable browser behaviors.

2026-02-27
memory-safety-analyst
信息安全分析师

Classify memory-safety defects, evaluate exploitability, and prioritize remediation based on primitive quality and mitigation interaction.

2026-02-27
taint-flow-tracer
信息安全分析师

Trace untrusted data from origin to sink across files and layers, including sanitization checkpoints and bypass conditions.

2026-02-27
threat-model-generator
信息安全分析师

Generate feature-grounded threat scenarios and executable security test cases with prioritized risk rationale.

2026-02-27
waf-bypass-agent
信息安全分析师

Fingerprint filtering behavior and build parser-differential bypasses with strong controls, conditionals, and reproducible validation.

2026-02-27
web-assessment-executor
信息安全分析师

Execute scoped web application test cases with strict sequencing, variant control, and replayable evidence.

2026-02-27
web-exploit-prover
信息安全分析师

Deepen preliminary web findings into validated exploit impact using independent confirmation and confidence grading.

2026-02-27
advanced-reconnaissance
信息安全分析师

Elite methodology for discovering maximum attack surface with minimal detection (5-Layer Approach).

2026-01-14