Agent Skills by hanc00l
Showing 14 vetted skills indexed across 1 GitHub repositories.
pentest
Automate penetration testing across web, CVE, cloud, AI, and internal network assessments.
note
Store and retrieve markdown pentest notes per challenge with file locks.
ai-security
Detect prompt-injection and unauthorized access vulnerabilities in LLM services.
cve-exploitation
Identify and exploit CVEs on target systems using nmap and searchsploit.
web-security
Detect Java deserialization, Spring Boot Actuator, Apache Shiro, and Fastjson vulnerabilities.
internal-penetration
Discover and exploit assets in private IP ranges using Python, proxychains, frp, chisel, ligolo, and impacket.
terminal
Manage tmux sessions to send keys and fetch live outputs.
reverse-tools
Manage reverse connections for penetration testing via MCP APIs.
browser
Manage Playwright browser lifecycles and return native Page, BrowserContext, and Browser objects.
cloud-security
Detect cloud environments and extract metadata credentials via HTTP requests.
competition
Fetch CTF competition challenges, obtain hints, and submit answers via API.
business-logic
Identify and mitigate business-logic vulnerabilities in multi-step workflows using a four-stage testing methodology.
reporting
Generate Markdown post-CTF reports with challenge details and save via note naming.
reconnaissance
Performs penetration testing reconnaissance by scanning ports, identifying stacks, and crawling web content.