GhostPWN avatar

GhostPWN

Official

@ghostpwn

0Followers
|
2Public Repos
|
17Published Skills

Autonomous pentest agent TUI interactive, multi-provider LLM

Skills Distribution
DomainCybersecurit...Vulnerability Asse.. (30%)Threat Intelligence (30%)Infrastructure Har.. (25%)Digital Forensics (15%)

Agent Skills by GhostPWN

Showing 17 vetted skills indexed across 1 GitHub repositories.

GhostPWNGhostPWN
4

Malware Analysis & Sandboxing

Extract hashes, strings, imports, and entropy from suspicious binaries.

Official
Advanced
GhostPWNGhostPWN
4

Mobile Application Security

Analyze Android and iOS apps for security weaknesses and malicious indicators.

Official
Advanced
GhostPWNGhostPWN
4

Web Application Security Testing

Identify web application and API security weaknesses in authorized targets.

Official
Advanced
GhostPWNGhostPWN
4

Log Analysis & SIEM Integration

Parse security logs and generate SIEM detection queries for Splunk, Elastic, QRadar, Sentinel, and Sigma.

Official
Advanced
GhostPWNGhostPWN
4

Threat Hunting & IOC Analysis

Extract and normalize indicators of compromise from threat reports.

Official
Advanced
GhostPWNGhostPWN
4

GRC & Compliance

Analyze governance, risk, and compliance requirements into scored risk registers and control mappings.

Official
Advanced
GhostPWNGhostPWN
4

Reverse Engineering & Binary Analysis

Analyze binaries to recover structure, behavior, and security posture from static artifacts.

Official
Advanced
GhostPWNGhostPWN
4

CSOC Operations & Playbook Automation

Automate SOC alert triage and shift reporting with Python scripts.

Official
Advanced
GhostPWNGhostPWN
4

Incident Response & Digital Forensics

Create PICERL-aligned incident response playbooks and forensic workflows.

Official
Advanced
GhostPWNGhostPWN
4

Blue Team Defense & Hardening

Harden Linux and Windows environments with detection rules and baseline checks.

Official
Advanced
GhostPWNGhostPWN
4

OT / ICS / SCADA Security

Analyze OT and ICS security posture for exposure and boundary violations.

Official
Intermediate
GhostPWNGhostPWN
4

Cloud Security & Container Hardening

Audit cloud environments and infrastructure as code for security misconfigurations.

Official
Advanced
GhostPWNGhostPWN
4

Reconnaissance & OSINT Automation

Map external attack surfaces by discovering subdomains, DNS records, and web technology fingerprints.

Official
Advanced
GhostPWNGhostPWN
4

Cryptographic Analysis & Assessment

Analyze cryptographic configurations and implementations for security weaknesses.

Official
Advanced
GhostPWNGhostPWN
4

Network Security & Traffic Analysis

Analyze PCAP files and firewall configurations to generate Suricata, Snort, and Zeek detection rules.

Official
Advanced
GhostPWNGhostPWN
4

Vulnerability Scanning & Assessment

Audit Python, npm, and Go dependencies plus Nginx and SSHD configurations for known vulnerabilities.

Official
Advanced
GhostPWNGhostPWN
4

AI & LLM Security

Assess AI and LLM application security risks with OWASP LLM Top 10 mapping.

Official
Advanced

Frequently Asked Questions About GhostPWN

FAQPage Schema
What specific security tasks can GhostPWN perform?

GhostPWN enables malware binary analysis, mobile application security testing, and cloud infrastructure auditing. It facilitates threat hunting by normalizing indicators of compromise, performing network traffic analysis for detection rule generation, and mapping security risks against GRC compliance frameworks and OWASP LLM Top 10 standards.

Which technical personas benefit from these capabilities?

These capabilities are designed for security analysts, incident responders, and blue team engineers. Professionals tasked with CSOC operations, threat intelligence, and infrastructure hardening utilize these functions to streamline alert triage, perform forensic investigations, and maintain secure configurations across Linux, Windows, and cloud-native environments.

What are the prerequisites for deploying these security assessments?

Deployment requires authorized access to target environments, including network traffic captures, binary artifacts, or cloud infrastructure configurations. Users must ensure they have appropriate permissions to audit target systems, as these functions involve deep inspection of dependencies, cryptographic implementations, and system-level security postures.