发现 Claude mods
这里默认只列出有证据的 Claude Code Mod:插件的钩子配置声明了函数钩子模块(modules)。服务器每 6 小时在 GitHub 上找新的 Mod,也接受你提交的仓库。
第 1–20 条,共 79 条结果
★ 是仓库级 Star,不代表包的质量;下载请求不等于安装。指标定义
-
offensive-active-directory技能
Active Directory attack methodology for internal network red team engagements. Covers reconnaissance (BloodHound, PowerView, ADExplorer), credential abuse (Kerberoasting, ASREProasting, NTLM relay, L…
-
offensive-netexec技能
Use this skill whenever the user asks about NetExec (nxc) — a network exploitation and post-exploitation tool for Active Directory environments. Triggers include: any mention of 'nxc', 'netexec', 'cr…
-
offensive-ai-security技能
上游没有提供描述
-
offensive-api-abuse技能
Advanced API exploitation methodology focused on business logic abuse and sophisticated attack patterns that bypass traditional security controls. Covers business logic bypass through API call chaini…
-
offensive-api-security技能
Comprehensive API security testing methodology covering REST, gRPC, and WebSocket attack surfaces. Addresses the full OWASP API Security Top 10 2023 including BOLA/IDOR, broken authentication, excess…
-
offensive-jwt技能
JWT attack methodology for penetration testers. Covers algorithm confusion (alg:none, RS256→HS256), weak HMAC secret brute force, kid parameter injection (SQLi, path traversal), jku/x5u/jwk header in…
-
offensive-oauth技能
上游没有提供描述
-
offensive-cicd-pipeline技能
Comprehensive CI/CD pipeline exploitation methodology covering GitHub Actions injection vectors (expression injection via PR titles and issue bodies, workflow_run event abuse, GITHUB_TOKEN over-scopi…
-
offensive-cicd-secrets技能
Comprehensive secrets extraction methodology targeting CI/CD environments across all major platforms. Covers environment variable extraction from build contexts, exploitation of vault and secrets-man…
-
offensive-cloud技能
Cloud security attack methodology covering AWS, Azure, and GCP. Includes credential harvesting (IMDS, ~/.aws, env vars, leaked CI secrets, instance roles), enumeration with cloud-specific tools (pacu…
-
offensive-container-escape技能
Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. Covers privileged container breakout via host filesystem mount and nsenter, Docker socket abuse through /va…
-
offensive-k8s-attacks技能
Kubernetes cluster attack techniques covering the full attack lifecycle from initial foothold in a pod to cluster-wide compromise. Covers service account token theft and impersonation, RBAC misconfig…
-
offensive-crypto-attacks技能
Systematic methodology for identifying and exploiting cryptographic implementation weaknesses in real-world applications. Covers padding oracle attacks against CBC-mode ciphers with PKCS7 padding (Va…
-
offensive-tls-attacks技能
Comprehensive methodology for auditing and exploiting TLS/SSL implementations and misconfigurations across network services and mobile applications. Covers protocol downgrade attacks including POODLE…
-
offensive-basic-exploitation技能
上游没有提供描述
-
offensive-crash-analysis技能
上游没有提供描述
-
offensive-exploit-dev-course技能
上游没有提供描述
-
offensive-exploit-development技能
上游没有提供描述
-
offensive-mitigations技能
上游没有提供描述
-
offensive-toctou技能
Time-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and container layers. Covers symbolic-link races (open/access/stat split), file-de…
注册表状态
- Claude Mod
- 39
- 包
- 4,026
- 仓库
- 296
- 版本
- 4,242
- 下载请求
- 3
- 最近采集
- 部分成功 运行详情
发现队列还有 1,973 个仓库待处理,当前收录并不完整。 1 次扫描因上限被截断,部分内容可能缺失。