trilwutrilwuCommunityยท11 Agent Skills Included

secskills

Offensive, defensive, and reverse-engineering security methodologies

Guides penetration testing, incident response, detection engineering, and binary reverse engineering with fact-checked, step-by-step security methodology. Covers Active Directory, cloud platforms, web and mobile apps, containers, firmware, and memory forensics with explicit scope and authorization rules. Replaces unreliable scanner output and stale cheat sheets with verified procedures that route to the right technique for each target.
npx skills add trilwu/secskills --all -g -y

All Skills in This Repository (11)

Pure Emerald Level Indicators
๐Ÿ“ฆ In Repo
trilwutrilwu

exploiting-web3-smart-contracts

Identify and exploit vulnerabilities in Web3 smart contracts and DeFi applications.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

attacking-active-directory

Automate Active Directory security assessments with Kerberoasting, credential dumping, and BloodHound analysis.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

cracking-passwords

Identify hash types and crack password hashes with hashcat or John the Ripper.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

testing-mobile-applications

Automates end-to-end mobile app pentesting for Android and iOS.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

escalating-linux-privileges

Automate discovery and exploitation of Linux privilege escalation vectors.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

testing-apis

Identify and exploit API security weaknesses across REST and GraphQL endpoints.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

performing-reconnaissance

Map external attack surface via OSINT, subdomain enumeration, and port scanning.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

exploiting-cloud-platforms

Discover and validate cloud misconfigurations and weak IAM permissions across AWS, Azure, and GCP.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

enumerating-network-services

Enumerate and test network services across multiple protocols to identify vulnerabilities.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

escalating-windows-privileges

Enumerate Windows systems and guide privilege escalation techniques.

Community
Advanced
๐Ÿ“ฆ In Repo
trilwutrilwu

attacking-wireless-networks

Guide wireless network pentesting with structured workflows and tooling integration.

Community
Advanced

Frequently Asked Questions

FAQPage Schema
How to install SecSkills?โ–ผ

Run `npx skills add trilwu/secskills --all -g -y` in your terminal to install all skills in this collection globally.

What does SecSkills cover?โ–ผ

It spans three areas: offensive testing (Active Directory, cloud, web, mobile, wireless), defense (DFIR, detection engineering, threat hunting), and a shared core (reverse engineering, code audit, cryptography review, reporting).

How is SecSkills different from a cheat sheet?โ–ผ

Each skill encodes professional judgment, not just commands: explicit scope rules, hand-offs to sibling skills, and a Rationalizations to Reject section that counters the shortcuts that cause missed findings.

Are the commands in SecSkills verified?โ–ผ

Yes. Every skill is fact-checked line-by-line against primary sources and carries a verified date in its frontmatter, with stale tools and retired commands corrected across the collection.

Can I use SecSkills for authorized pentests only?โ–ผ

Yes. The offensive skills are written for authorized engagements and build scope, authorization, and safety constraints directly into each methodology.

Related Repositories in Software Engineering

View All in Software Engineeringโ†’