Claude Code Skills·Claude Skills·The open SKILL.md registry for Claude
ClaudSkillsSecurity › Page 122

Claude Security Skills (Page 122 of 176)

Security auditing, penetration testing, vulnerability scanning, OWASP, cloud security, and compliance skills for Claude Code.

10,533 skills · updated 2026-08-26 · showing 7261–7320 of 10,533 by quality score

Sub-topics:Red Team (1,582)Web Security (1,094)Threat Hunting (754)Identity Access (496)Network Security (414)Appsec Tools (381)Forensics (295)Malware Analysis (207)

For the full experience including quality scoring and one-click install features for each skill — upgrade to Pro.

Testet Deal-These gegen Rechts-, Markt-, Finanzierungs-, Regulierungs- und Exit-Risiken.
Red-Team-Analyse zur Abwehr der Sweat-of-the-Brow-Verwechslung im Datenbankrecht: EuGH-Linie (BHB/William Hill C-203/02) verbietet Schutz für bloße Datenerzeugung.
Red Team Mandatsbeziehung: steuert Ergebnis, Dashboard, Rechnung und Beziehung auf Missverständnisse, Halluzinationen und Risiken prüfen zwischen Kanzlei, Mandant und…
Römisches Recht: Red-Team-Analyse zur Modernisierung - Grenzen der röm.-rechtl. Analogie für heutige Rechtsfragen, methodische Risiken, Scheinlegalität durch selektive Zitation…
Attack your own plan the way a smart adversary would — find the weakest point, the thing you're hoping nobody notices, and where it breaks under pressure.
Deutsche Rechtsgeschichte: Red-Team gegen verbreitete Mythen. BGB als burgerliches Recht nur für Reiche, Weimarer Republik scheiterte zwangslaeufig, NS-Recht war kein Recht und…
PrALR: OCR-Halluzinationen, falsch gelesene Paragraphen und Scheinfundstellen im PrALR erkennen. — from Klotzkette/claude-fuer-deutsches-recht
Use when running a full red-team engagement end-to-end — initial access, persistence, privilege escalation, defense evasion, C2 infrastructure, EDR bypass, living-off-the-land
Red-Team: Überabhängigkeit von China analysieren und abbauen: Selbstkritische Analyse Abhängigkeitspfade (Umsatz/Beschaffung/Technologie), Frühwarnindikator-System,…
Red-team a GitHub PR by writing focused failing tests, pushing them to the PR branch as CI proof, then fixing. Use to adversarially attack or validate a change before merge.
Red-Team-Qualitygate: prüft Ergebnis auf Fristenfehler, Zuständigkeitsfehler, Scheinpräzision und Ton in berufsgerichtlichen Verfahren freier Berufe; mit Normencheck, Aktenlog,…
Red-Team-Prüfung eines Rentenbescheids oder Rentenmemos: Rechenfehler, fehlende Zeiten, falscher Träger, Auslandslogik und Beweisdefizite finden.
(Industry standard: Review and Critique Pattern) Primary Use Case: Iterative generation paired with adversarial review, continuing until an 'Approved' verdict is reached.
Use this when red-teaming the agentic company decision system, final reports, RAG pipeline, tool access, human approval flow, or claim verification logic.
Red-Team Satzung jenseits BauGB: Ermächtigungsgrundlage, Zuständigkeit, Verfahren, Bekanntmachung, Bestimmtheit, Gleichheit, Verhältnismäßigkeit.; Normanker: VwGO § 47;…
Red-Team Shop vor Launch: prüft die einschlägigen Voraussetzungen, Dokumente, Risiken und Ausnahmen. Norm-/Quellenanker: BGB §§ 312 ff., 355 und 327 ff., 434 ff.; EGBGB…
Red team tactics principles based on MITRE ATT&CK. Attack phases, detection evasion, reporting. — from ThaiQuangSon031108FSDev/AlgoSphere-Enterprise
Implement proven methodologies and tool workflows from top security researchers for effective reconnaissance, vulnerability discovery, and bug bounty hunting.
Red-Team VA-Beschluss rechnerisch: prüft die einschlägigen Voraussetzungen, Dokumente, Risiken und Ausnahmen.
Adversarial verification for AI-generated legal content with systematic fact-checking, source validation, and quality control.
Red Team vor jeder Einreichung: Stellungnahme, Klage und Einspruchsbegründung auf Selbstwidersprüche, Blindzitate und Beweisrisiken prüfen. Normanker: DSGVO Art.
Run NVIDIA garak probe suites against an LLM endpoint to test for jailbreaks, prompt injection, data leakage, and toxic generation, then interpret the hit-rate report for triage…
Usar siempre que el usuario escriba, redacte, revise o traduzca texto científico/académico en ESPAÑOL — artículos, papers, tesis, abstracts, introducciones, metodologías,…
Red-team / red-hat skill suite dispatcher for offensive and defensive device research. Use when the user wants to unlock engineering or factory modes on devices they own, extract…
AI pressure redirection — handling conflicting demands, tool failures, and competing constraints by blending with incoming force then reframing.
Complete open redirect detection and exploitation methodology — parameter discovery, 30+ bypass techniques, OAuth token theft, SSRF chaining, CSP abuse, phishing escalation, and…
Redis security guidance covering authentication (requirepass and ACL users), TLS, ACL-based least-privilege access control, restricting network exposure via bind and…
Red team mindset that shifts the agent to offensive security thinking across any target or engagement type.
Use Red Rocket public read-only market data for China index valuation, ETF/fund discovery, related product lookup, and fund profile context.
Manage application secrets with the Redshift CLI (https://redshiftapp.com) — decentralized, encrypted secret management built on Nostr.
Spawn a one-shot red-team subagent to challenge a milestone result. Calibrated to return "nothing substantive" when the work is sound — does not invent issues to seem thorough.
Detailed Active Directory attack-path pack for kerberos, ACL, ADCS, and NTLM relay routes.
Compact operational boundary policy for durable red-team workflows. It does not route domains or decide workflow completion.
Detailed code-audit pack for entrypoint tracing, trust boundaries, exploit proofs, and sink selection.
Red-Team-Gate für alle Commercial-Court-Outputs: Zuständigkeit, Sprache, Fristen, Beweise, Übersetzungen, Geheimnisschutz, Kosten, Rechtsmittel.
Detailed cryptography pack for RSA, hash, symmetric-cipher, lattice, stego, and classical-cipher attack paths.
Domain routing and boundary guidance for authorized CSRF testing, including token bypasses, SameSite bypasses, and JSON CSRF.
CVE lookup and applicability assessment skill for matching collected product names, versions, and service fingerprints to known vulnerabilities.
CVE validation domain card. Use after CVE lookup has produced applicable or candidate CVEs and red-team mode needs scoped evidence to decide whether to continue, pivot, or report.
Adversarial analysis with 32 agents. USE WHEN red team, attack idea, counterarguments, critique, stress test. SkillSearch('redteam') for docs.
Detailed evasion pack for AV/EDR, WAF, 403/CSP bypass, and sandbox-oriented analysis.
Detailed injection pack for SSRF, SQLi, XSS, SSTI, deserialization, XML, command, and expression injection paths.
Red-team operator discipline — the mindset corrections that separate offensive testing from defensive WAPT.
OPSEC隐蔽作战纪律:IP黑名单绕过,速率时序,流量混淆,最小足迹,反取证,渐进暴露。Use when maintaining stealth, bypassing IP bans, or planning covert red-team ops.
Standards for creating redteam plugins and graders. Use when creating new plugins, writing graders, or modifying attack templates.
Detailed post-exploitation pack for foothold triage, privesc, credentials, lateral movement, and tunneling.
Red-Team Qualitygate: Fehlerbremse; prüft Fristen, Zuständigkeit, Beweislast, Quellen und taktische Risiken vor Abgabe oder Versand
Insolvenzplan oder StaRUG-Plan vor Einreichung aus Gegnersicht und Gerichtssicht prüfen. §§ 231 245 251 InsO Versagungsgründe § 64 StaRUG.
Detailed reconnaissance pack for attack-surface discovery, docs review, and pre-exploitation signal gathering.
Recon intake skill for first contact with a bare domain, URL, or IP address. Use to build an initial recon_profile and provide factual inputs for CVE lookup and attack-path…
Red-Team für TK-Projekte: Marktmacht, Zugangs-/Entgeltregulierung, Wegerecht, Sicherheit, Datenschutz, BNetzA, Kartellrecht und politische Sichtbarkeit.
Client-facing red-team deliverable format — codifies the Subject / Observations / Description / Impact / Recommendation / PoC structure used for external red-team engagements (not…
Detailed reverse-engineering pack for binaries, loaders, anti-analysis, deobfuscation, and exploitability clues.
Adversarial security review fleet for the Port Daddy whitepapers (Bonded Commons, Anchor Protocol). Use when a paper version is being prepared, when a coordination/cryptographic…
Domain routing and boundary guidance for authorized SQL injection testing, including union-based, blind, error-based, stacked query, and second-order SQL injection variants.
Detailed web/API/auth/injection/file/logic testing pack for hook-routed red-team mode.
Domain routing and boundary guidance for authorized cross-site scripting testing, including reflected, stored, DOM-based, mXSS, and CSP bypass variants.
Systematically detects all reentrancy vulnerability variants in smart contracts — classic, cross-function, cross-contract, and read-only reentrancy.
Issue type/topic label classification reference — invoke to classify an optional bug/enhancement type and at-most-one topic label for an issue; type may be absent for user-filed…
The AgenticProduct paved road — how to stand up and wire the family's reference implementations so each surface of the standard is satisfied out of the box.
Search all 10,533 Security skills →