一键导入
vuln-oob-callback
Prepare and record safe out-of-band callback infrastructure observations for hypotheses that require callback evidence.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Prepare and record safe out-of-band callback infrastructure observations for hypotheses that require callback evidence.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Enforce artifact-contract, presence, dependency, freshness, and cross-reference correctness for the artifact graph.
Reuse prior work only when hashes, dependencies, and artifact semantics still support it.
Normalize remote configuration and connection hints into machine-readable, ambiguity-aware remote artifacts.
Run a bounded, evidence-heavy cribdrag workflow for suspected keystream reuse and XOR-style leakage.
Drive decode-first problems through explicit candidate generation, convergence tests, and branch stop conditions.
Map mixed decode-plus-crypto chains into explicit stages, transitions, and evidence-backed branch routes.
| name | vuln_oob-callback |
| description | Prepare and record safe out-of-band callback infrastructure observations for hypotheses that require callback evidence. |
| metadata | {"short-description":"Out-of-band callback helper."} |
This skill may use the ccx-search MCP server if the environment provides it.
Preferred usage:
ccx-search.gh_search_code, gh_search_issues, gh_search_repos for GitHub-oriented code and issue reconnaissanceccx-search.search_web and open_url for tightly scoped web references when dependency behavior or version-specific constraints need confirmationUsage rules:
Use this helper when a hypothesis requires out-of-band confirmation, such as safe callback observation for SSRF-like behavior, webhook delivery, or deferred fetch behavior. The helper must make callback expectations and observations explicit.
artifacts/out/context.jsonartifacts/out/attacks/<HID>.jsonThis skill must write:
artifacts/out/oob.jsonIt may also: