Skip to main content
EvilFreelancer
GitHub 创作者资料

EvilFreelancer

按仓库查看 11 个 GitHub 仓库中的 43 个已收集 skills。

已收集 skills
43
仓库
11
更新
2026年8月12日
这里展示前 8 个仓库;完整仓库列表在下方继续。
仓库浏览

仓库与代表性 skills

analyzing-binaries
信息安全分析师

Reverse engineer compiled binaries, firmware, and mobile app packages using triage, static disassembly, decompilation, and dynamic instrumentation. Use when analyzing an executable, ELF/PE/Mach-O file, firmware image, or stripped binary, recovering an…

2026年8月8日
analyzing-malware
信息安全分析师

Analyze suspected malware safely — containment, static triage, sandboxed detonation, unpacking, capability and C2 extraction, IOC production, and YARA rule authoring. Use when handed a suspicious file, hash, or sample, when triaging an alert artifact, or when…

2026年8月8日
analyzing-memory-images
信息安全分析师

Analyze volatile memory images (RAM dumps) using Volatility 3 — process enumeration, injected code detection, credential extraction, network artifacts, rootkit analysis, and timeline construction from memory-resident data. Use when examining a memory capture…

2026年8月8日
analyzing-phishing-emails
信息安全分析师

Analyze a reported or suspected phishing email safely — parse the Received chain and Return-Path, validate SPF/DKIM/DMARC alignment, extract and defang URLs and attachments, detonate payloads in a sandbox, and pivot on sender infrastructure to produce IOCs…

2026年8月8日
attacking-active-directory
信息安全分析师

Attack and enumerate Active Directory environments using Kerberos attacks (Kerberoasting, ASREPRoasting), credential dumping (DCSync, Mimikatz), lateral movement (PtH, PtT), and BloodHound analysis. Use when pentesting Windows domains or exploiting AD…

2026年8月8日
attacking-wireless-networks
信息安全分析师

Attack WiFi networks using WPA/WPA2 cracking, WPS exploitation, Evil Twin attacks, deauthentication, and wireless reconnaissance. Use when pentesting wireless networks or performing WiFi security assessments.

2026年8月8日
auditing-code-for-vulnerabilities
信息安全分析师

Audit source code for exploitable vulnerabilities using threat-model-driven review, taint tracing, invariant checking, and variant analysis. Use when reviewing a codebase or diff for security bugs, performing a security audit, hunting for vulnerabilities in a…

2026年8月8日
auditing-mcp-servers
信息安全分析师

Audit a Model Context Protocol server's own implementation for how it can subvert or exfiltrate from the agent that connects to it — tool-description injection (tool poisoning), tool shadowing and rug pulls, per-tool authorization and input schemas, SSRF via…

2026年8月8日
已展示 8 / 33 个已收集 Skill。
已展示 11 / 11 个仓库
已展示全部仓库