GitHub
Skills harvested from GitHub repositories
14810 skills availableoffensive-jwt
Comprehensive JWT attack checklist for offensive security engagements. Follow steps in order; apply each technique to th...
offensive-advanced-redteam
Skill Name: advanced-redteam-ops Folder: offensive-advanced-redteam Source: https://github.com/SnailSploit/offensive-che...
offensive-wps
WPS converts an 8-digit PIN into the network PSK via the M3/M4 message exchange. The PIN is split into 4-digit + 3-digit...
offensive-z-wave
Z-Wave runs in the 800/900 MHz ISM band (US: 908 MHz, EU: 868 MHz). Older networks used the S0 security scheme with a fi...
offensive-wpa3-sae
WPA3 fixes the offline-handshake-cracking weakness of WPA2 by replacing the 4-way PSK exchange with SAE (a Dragonfly-der...
offensive-wifi
Pick the right adapter (monitor mode + injection + correct band/PHY for target) Recon airspace passively — never deauth ...
offensive-wpa2-psk
The default mode for almost every consumer and SMB Wi-Fi network. The four-way handshake's PMKID and EAPOL frames give y...
offensive-wifi-recon
The first phase of any wireless engagement. Build a complete picture of the airspace before you deauth, evil-twin, or ca...
offensive-evil-twin
Stand up an AP that looks like (or is more attractive than) the legitimate target. Clients associate, you become their g...
offensive-krack-fragattacks
Two attack families against WPA2 client implementations. Both well-disclosed (KRACK 2017, FragAttacks 2021) and largely ...
offensive-deauth-disassoc
The most-used 802.11 management-frame attack: send a forged deauthentication or disassociation frame as the AP, and the ...
offensive-bluetooth-classic
Older than BLE, less commonly attacked today, but still present in cars, industrial sensors, audio gear, and legacy ente...
offensive-bluetooth-ble
BLE devices communicate via GATT — a hierarchy of services, characteristics, and descriptors. Many devices treat the BLE...
offensive-wpa-enterprise
Enterprise Wi-Fi delegates authentication to a RADIUS server — usually backed by AD. The PSK doesn't exist. Instead, you...
offensive-lorawan-sub-ghz
LoRaWAN provides long-range low-bitrate communication for IoT — common in smart cities, asset tracking, and industrial t...
offensive-request-smuggling
Skill Name: request-smuggling Folder: offensive-request-smuggling Source: https://github.com/SnailSploit/offensive-check...
offensive-exploit-development
Skill Name: exploit-development Folder: offensive-exploit-development Source: https://github.com/SnailSploit/offensive-c...
offensive-active-directory
Recon AD structure offline (BloodHound, ADExplorer snapshot) — minimize live queries Harvest creds via poisoning, Kerber...
offensive-zigbee-thread-matter
802.15.4-based mesh protocols underpin most "smart home" devices. Zigbee is widely deployed and has well-known crypto-ke...
youtube-shorts
Long video → ranked vertical short clips, tuned for short-form social. This skill is a platform-aware preset over the AI...
ai-clipping
One API call: long video in → ranked vertical short clips out. Each clip ships with a viral score (0–100), an opening ho...
huggingface-datasets
Use this skill to execute read-only Dataset Viewer API calls for dataset exploration and extraction. Optionally validate...
hf-cli
Install: curl -LsSf https://hf.co/cli/install.sh | bash -s. The Hugging Face Hub CLI tool hf is available. IMPORTANT: Th...
train-sentence-transformers
This SKILL.md is a router, not a manual. It tells you which references and example scripts to load for your task. The ac...