Netw0rkNoob/VulnClaw
这个仓库里有 50 个技能,GitHub 星标 ★ 3,350。
- ai-mcp-securityAI与MCP安全评估 — Prompt注入、工具滥用、MCP信任边界、Agent权限逃逸、数据泄露、模型风险、GAARM风险矩阵
- android-pentest安卓应用渗透测试 — APK分析、Hook、自动化测试、运行态驱动、签名恢复、抓包分析
- client-reverse客户端逆向与Burp重放 — 复杂客户端签名恢复、加密还原、请求链追踪、稳定重放,适用于已授权安卓App渗透测试、浏览器JS签名、桌面客户端逆向
- crypto-toolkit编码解码与加解密工具 — base64/URL/Hex/HTML实体编码解码,MD5/SHA哈希,AES/DES/RSA加解密,JWT解析,Caesar/ROT
- ctf-cryptoCTF密码学攻击知识库 — RSA攻击(小指数/共模/Wiener/Coppersmith)、AES攻击(Padding Oracle/ECB字节翻转/GCM
- ctf-miscCTF杂项知识库 — Python Jail逃逸、Bash Jail逃逸、编码链识别与解码、QR/音频/图像隐写、游戏VM逆向、CTFd API导航、Linux
- ctf-webCTF Web攻击知识库 — PHP弱比较绕过、命令注入空格绕过、eval回显技巧、SSTI注入链、反序列化利用链、PHP代码审计checklist、常见fla
- cve-triageCVE lookup and triage — map discovered services/versions to known CVEs via the c
- hackeroneHackerOne bounty program scope-guard workflow — reads program scope, enforces sc
- intranet-pentest-advanced内网渗透高级 — 横向移动、凭据窃取、提权、持久化、隧道代理、AD攻击、ADCS滥用、Exchange/SharePoint攻击
- osint-reconOSINT 开源情报收集知识库 — 四维信息收集模型(服务器→网站→域名→人员),维度四(人员信息)条件触发
- pentest-tools渗透工具速查 — 编码解码、反向Shell、红队工具、漏洞利用、密码攻击、内网工具、凭据窃取、提权、隧道代理、系统命令、信息收集、域渗透、Web工具、Windo
- rapid-checklist渗透速查与Payload — 快速Payload家族、绕过提醒、验证顺序、常见测试卡片,适用于已知测试方向后快速查找
- redteam-ad-detail-packDomain routing and boundary guidance for authorized Active Directory red-team se
- redteam-api-detail-packDomain routing and boundary guidance for authorized API security testing, includ
- redteam-auth-detail-packDomain routing and boundary guidance for authorized authentication, authorizatio
- redteam-cache-poison-detail-packDomain routing and boundary guidance for authorized web cache poisoning testing,
- redteam-clickjacking-detail-packDomain routing and boundary guidance for authorized clickjacking testing, includ
- redteam-cloud-detail-packDomain routing and boundary guidance for authorized cloud security testing, incl
- redteam-cmdi-detail-packDomain routing and boundary guidance for authorized operating system command inj
- redteam-code-audit-detail-packDomain routing and boundary guidance for authorized source code security review,
- redteam-container-detail-packDomain routing and boundary guidance for authorized container and orchestration
- redteam-cors-miscfg-detail-packDomain routing and boundary guidance for authorized CORS misconfiguration testin
- redteam-crypto-detail-packDomain routing and boundary guidance for authorized cryptography weakness testin
- redteam-csrf-detail-packDomain routing and boundary guidance for authorized CSRF testing, including toke
- redteam-cve-lookupCVE lookup and applicability assessment domain card. Use after reconnaissance ha
- redteam-cve-validationCVE validation domain card. Use after CVE lookup has produced applicable or cand
- redteam-deserialize-detail-packDomain routing and boundary guidance for authorized insecure deserialization tes
- redteam-evasion-detail-packDomain routing and boundary guidance for authorized defense evasion and bypass t
- redteam-file-detail-packDomain routing and boundary guidance for authorized file operation vulnerability
- redteam-injection-detail-packDomain routing and boundary guidance for authorized general injection testing ou
- redteam-logic-detail-packDomain routing and boundary guidance for authorized business logic vulnerability
- redteam-mobile-detail-packDomain routing and boundary guidance for authorized mobile application security
- redteam-network-detail-packDomain routing and boundary guidance for authorized network-layer security testi
- redteam-open-redirect-detail-packDomain routing and boundary guidance for authorized open redirect testing, inclu
- redteam-payload-detail-packDomain routing and boundary guidance for authorized payload construction and wea
- redteam-postex-detail-packDomain routing and boundary guidance for authorized post-exploitation testing af
- redteam-recon-detail-packDomain routing and boundary guidance for authorized reconnaissance and informati
- redteam-recon-intakeRecon intake skill for first contact with a bare domain, URL, or IP address. Use
- redteam-reverse-detail-packDomain routing and boundary guidance for authorized reverse engineering analysis
- redteam-sqli-detail-packDomain routing and boundary guidance for authorized SQL injection testing, inclu
- redteam-ssrf-detail-packDomain routing and boundary guidance for authorized SSRF testing, including basi
- redteam-ssti-detail-packDomain routing and boundary guidance for authorized server-side template injecti
- redteam-subdomain-takeover-detail-packDomain routing and boundary guidance for authorized subdomain takeover testing,
- redteam-web-detail-packRouting and boundary guidance for authorized general web application security te
- redteam-xss-detail-packDomain routing and boundary guidance for authorized cross-site scripting testing
- redteam-xxe-detail-packDomain routing and boundary guidance for authorized XXE testing, including file
- secknowledge-skill|
- web-pentestWeb应用渗透测试 — 针对Web应用的完整渗透流程,含技术栈识别、目录枚举、认证测试、输入验证、逻辑漏洞
- web-security-advancedWeb高级安全测试 — 注入攻击族、协议安全、认证与逻辑漏洞、文件与部署安全、现代Web攻击面,含完整Playbook
想一次拿到这个仓库的全部技能?
本站把开放许可(MIT / Apache 等)的仓库按整仓打包整理到网盘,点一下转存到你自己的网盘。许可未声明的仓库只给原始仓库链接,不打包。