What problem does it solve?
This Skill solves the problem of individual medium or high-severity vulnerabilities failing to meet critical impact thresholds for penetration testing reports, enabling security teams to combine multiple related findings into demonstrably higher-severity attack paths that reflect real-world risk.
Core Features & Use Cases
- 9 Field-Validated Attack Chains: Pre-documented, confirmed exploit chains (A-I) for WordPress, e-commerce, and healthcare SaaS targets, including step-by-step proof-of-concept commands and severity matrices.
- Standardized Reporting Templates: Pre-built EXPLOIT_CHAINS.md document structure, comparison matrices, and remediation guidance to meet client audit and compliance requirements.
- Use Case: After a WordPress recon engagement identifies CORS misconfigurations and open user registration, use this Skill to chain those findings into a full server compromise path to justify a critical-severity rating.
Quick Start
Use the cross-attack-chains skill to map your target's recon findings against the 9 documented attack chains and generate a compliant EXPLOIT_CHAINS.md deliverable for your penetration test report.