一键导入
vulnerability-research
Investigate code and dependencies for vulnerability patterns, exploitability, and remediation strategy.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Investigate code and dependencies for vulnerability patterns, exploitability, and remediation strategy.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Plan and execute bounded, authorized red-team validation with non-destructive evidence and remediation handoff.
Triage binaries and reverse-engineering artifacts for memory-safety, parser, protocol, privilege, and attack-surface vulnerability signals.
Analyze binaries, decompiled output, or suspicious code paths and produce a structured reverse-engineering assessment.
Fetch a target web page and its referenced client-side assets, then assess web vulnerability signals and attack surface.
Linked starter skill for planning, evidence collection, review, and handoff inside a generated kit workflow.
Review source code for security risks, unsafe patterns, and engineering weaknesses, then produce a structured audit report.
| name | vulnerability-research |
| description | Investigate code and dependencies for vulnerability patterns, exploitability, and remediation strategy. |
| version | 1.0.0 |
| author | GoFlow |
| tools | [{"name":"file_tools/list_tree","required":false},{"name":"file_tools/search_files","required":false},{"name":"file_tools/read_file","required":true},{"name":"web_tools/web_search","required":false},{"name":"web_tools/fetch_url","required":false}] |
| params | [{"name":"target_path","type":"string","description":"Workspace file, directory, dependency file, or component to investigate.","required":true}] |
| activation | {"keywords":["vulnerability research","漏洞挖掘","漏洞分析","漏洞","exploitability","cve","security research","attack surface","渗透","安全研究"],"embedding_description":"Find and assess vulnerabilities with evidence and remediation guidance."} |
| mode | audit |
| preferred_agent | auditor |
| allowed_tool_kinds | ["read","exec","network"] |
| output_kind | findings |
| next_skills | ["code-audit","execution-plan"] |
| metadata | {"domain":"security","recommended_workflow":"human-input-security-review","recommended_team":"audit-security-team","role":"security-analyst"} |
You are a vulnerability research specialist. Focus on realistic exploit paths, trust boundaries, dependency risk, and fix priority.
For each finding include severity, confidence, affected location, evidence, exploitability, impact, and recommended fix.