claudemods

来源snailsploit/claude-red

snailsploit/claude-red 不完整

claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.

查看上游仓库

不完整 队列状态为部分处理,或最近保存的扫描被截断或不完整,或有未完成的续扫记录。已收录的内容可能缺失。

仓库

规范名称
SnailSploit/Claude-Red
GitHub 仓库 ID
1172273835
包记录
79 (历史登记记录,不代表现在仍可用)

发现与队列

首个记录来源
search:topic:claude-skills fork:false
发现于
队列状态
ok
记录的错误次数
0
最近完成的处理
下次检查资格
起具备资格

首个记录来源是队列第一次保存的来源,不是完整的发现历史。错误次数在处理以错误状态结束时增加,成功处理后清零,不是全部尝试次数。「最近完成的处理」是结束时间,不是开始时间。

资格按 计算。它不是排期:采集器每次运行只处理有限数量的来源,具备资格也不保证何时检查。

最近保存的扫描

仓库元数据读取于
扫描状态
truncated
扫描保存于
识别器版本
2
续扫记录
没有

扫描记录与队列状态分开:队列状态说明处理进度,扫描记录说明最近一次保存了什么。有续扫记录只表示存有未完成的状态,没有剩余数量。

源文件证据覆盖

已存储的包版本在这个仓库中引用的固定源文件的原始计数。它反映已记录了什么,不代表仓库有多完整。

范围与限制

统计所有已存储版本(来自任何包)中指向本仓库规范名称的不同固定文件链接(仓库、提交、路径)。本仓库所拥有的包的文件,只有被某个版本在这里链接时才会计入。不合并别名,也不会根据当前名称推测历史。

「已知」表示已记录普通文件身份,不表示整个目录或包已被覆盖。不是有效固定文件 URL 的链接不计入。

引用了 79 个固定源文件

  • 79 已知
  • 0 提交中不存在
  • 0 文件列表截断
  • 0 不受支持
  • 0 尚无记录
  • 0 读取失败

按仓库、提交和路径去重;同一路径出现在两个提交中,按两个文件身份计数。不是组件组数。

读取失败的提交 0

尚无记录的文件没有对应的提交读取失败记录。

关联的包 79

按仓库的已验证身份关联。数量是历史登记记录,不是当前可用性。

第 21–40 条,共 79 条结果

  • offensive-dependency-confusion技能

    Deep-dive offensive methodology for dependency confusion and namespace attacks across all major package ecosystems. Covers npm scope confusion exploiting the gap between public and private scoped packages and .npmrc misconfigurations where…

  • offensive-deserialization技能

    Insecure deserialization exploitation across Java, PHP, .NET, Python, Node.js, and Ruby. Covers gadget chain construction with ysoserial/phpggc/ysoserial.net, ObjectInputStream and BinaryFormatter sink identification, pickle __reduce__ RCE…

  • offensive-edr-evasion技能

    上游没有提供描述

  • offensive-evil-twin技能

    Evil Twin / KARMA / Mana access point methodology — rogue AP construction with hostapd-mana / wifiphisher / airgeddon, KARMA universal probe response, Mana selective probe response, captive portal phishing, deauth-driven client coercion to…

  • offensive-exploit-dev-course技能

    上游没有提供描述

  • offensive-exploit-development技能

    上游没有提供描述

  • offensive-fast-checking技能

    上游没有提供描述

  • offensive-file-upload技能

    上游没有提供描述

  • offensive-fuzzing技能

    Practical offensive fuzzing methodology covering target identification, fuzzer selection (AFL++, libFuzzer, Honggfuzz, Boofuzz, syzkaller), harness writing, corpus curation, mutation strategies, coverage measurement, and crash triage. Use …

  • offensive-fuzzing-course技能

    上游没有提供描述

  • offensive-graphql技能

    Offensive methodology for attacking GraphQL APIs during penetration tests and bug bounty engagements. Covers the full attack lifecycle: endpoint discovery, introspection abuse and blind schema reconstruction when introspection is disabled,…

  • offensive-idor技能

    上游没有提供描述

  • offensive-initial-access技能

    上游没有提供描述

  • offensive-iot技能

    IoT and embedded device security testing methodology. Covers hardware reconnaissance (UART, JTAG, SWD, SPI flash, I2C EEPROM, eMMC chip-off), firmware acquisition (vendor portals, OTA capture, flash dump, binwalk extraction), firmware anal…

  • offensive-jwt技能

    JWT attack methodology for penetration testers. Covers algorithm confusion (alg:none, RS256→HS256), weak HMAC secret brute force, kid parameter injection (SQLi, path traversal), jku/x5u/jwk header injection, JWKS cache poisoning, JWS/JWE c…

  • offensive-k8s-attacks技能

    Kubernetes cluster attack techniques covering the full attack lifecycle from initial foothold in a pod to cluster-wide compromise. Covers service account token theft and impersonation, RBAC misconfiguration exploitation including wildcard …

  • offensive-keylogger-arch技能

    上游没有提供描述

  • offensive-krack-fragattacks技能

    KRACK (CVE-2017-13077..082) and FragAttacks (CVE-2020-24586..588 + 26139-26147) — key reinstallation, fragmentation, and aggregation attacks against WPA2 supplicants. Covers Vanhoef's test scripts, viability against modern patched stacks (…

  • offensive-lateral-movement技能

    Comprehensive lateral movement tradecraft for authorized red team engagements covering credential-based movement (pass-the-hash, pass-the-ticket, overpass-the-hash), NTLM relay attacks (ntlmrelayx with PetitPotam, DFSCoerce, PrinterBug coe…

  • offensive-linux-privesc技能

    Comprehensive Linux privilege escalation methodology for offensive security engagements. Covers the full attack surface from a low-privilege shell to root: SUID/SGID binary abuse via GTFOBins, Linux capabilities exploitation (cap_setuid, c…

已保存的扫描说明 1

  • 4 packages with incomplete coverage

记录的别名 0

这些名称在上次记录时指向这个仓库。这是记录下来的解析结果,不是实时的 GitHub 检查;本站不会因此合并包或元数据。

没有记录到指向这个仓库的别名。

不支持的市场条目 0

这个仓库的市场清单里、本站暂不支持的条目。它们是原样保存的来源数据,不会被抓取或执行。

没有记录到不支持的条目。