offensive-jwt

Comprehensive JWT attack checklist for offensive security engagements. Follow steps in order; apply each technique to th...

github

offensive-advanced-redteam

Skill Name: advanced-redteam-ops Folder: offensive-advanced-redteam Source: https://github.com/SnailSploit/offensive-che...

github

offensive-wps

WPS converts an 8-digit PIN into the network PSK via the M3/M4 message exchange. The PIN is split into 4-digit + 3-digit...

github

offensive-z-wave

Z-Wave runs in the 800/900 MHz ISM band (US: 908 MHz, EU: 868 MHz). Older networks used the S0 security scheme with a fi...

github

offensive-wpa3-sae

WPA3 fixes the offline-handshake-cracking weakness of WPA2 by replacing the 4-way PSK exchange with SAE (a Dragonfly-der...

github

offensive-wifi

Pick the right adapter (monitor mode + injection + correct band/PHY for target) Recon airspace passively — never deauth ...

github

offensive-wpa2-psk

The default mode for almost every consumer and SMB Wi-Fi network. The four-way handshake's PMKID and EAPOL frames give y...

github

offensive-wifi-recon

The first phase of any wireless engagement. Build a complete picture of the airspace before you deauth, evil-twin, or ca...

github

offensive-evil-twin

Stand up an AP that looks like (or is more attractive than) the legitimate target. Clients associate, you become their g...

github

offensive-krack-fragattacks

Two attack families against WPA2 client implementations. Both well-disclosed (KRACK 2017, FragAttacks 2021) and largely ...

github

offensive-deauth-disassoc

The most-used 802.11 management-frame attack: send a forged deauthentication or disassociation frame as the AP, and the ...

github

offensive-bluetooth-classic

Older than BLE, less commonly attacked today, but still present in cars, industrial sensors, audio gear, and legacy ente...

github

offensive-bluetooth-ble

BLE devices communicate via GATT — a hierarchy of services, characteristics, and descriptors. Many devices treat the BLE...

github

offensive-wpa-enterprise

Enterprise Wi-Fi delegates authentication to a RADIUS server — usually backed by AD. The PSK doesn't exist. Instead, you...

github

offensive-lorawan-sub-ghz

LoRaWAN provides long-range low-bitrate communication for IoT — common in smart cities, asset tracking, and industrial t...

github

offensive-request-smuggling

Skill Name: request-smuggling Folder: offensive-request-smuggling Source: https://github.com/SnailSploit/offensive-check...

github

offensive-exploit-development

Skill Name: exploit-development Folder: offensive-exploit-development Source: https://github.com/SnailSploit/offensive-c...

github

offensive-active-directory

Recon AD structure offline (BloodHound, ADExplorer snapshot) — minimize live queries Harvest creds via poisoning, Kerber...

github

offensive-zigbee-thread-matter

802.15.4-based mesh protocols underpin most "smart home" devices. Zigbee is widely deployed and has well-known crypto-ke...

github

youtube-shorts

Long video → ranked vertical short clips, tuned for short-form social. This skill is a platform-aware preset over the AI...

github

ai-clipping

One API call: long video in → ranked vertical short clips out. Each clip ships with a viral score (0–100), an opening ho...

github

huggingface-datasets

Use this skill to execute read-only Dataset Viewer API calls for dataset exploration and extraction. Optionally validate...

github

hf-cli

Install: curl -LsSf https://hf.co/cli/install.sh | bash -s. The Hugging Face Hub CLI tool hf is available. IMPORTANT: Th...

github

train-sentence-transformers

This SKILL.md is a router, not a manual. It tells you which references and example scripts to load for your task. The ac...

github