复制安装命令
用 Codex 或 Claude 安装复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它先审查 Skill 页面再帮你安装。
复制前请先查看来源、License 和安全提示。
Offensive security skills for Claude — drop-in SKILL.
用 Codex 或 Claude 安装复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它先审查 Skill 页面再帮你安装。
复制前请先查看来源、License 和安全提示。
来源文件:README.md

Offensive security skills for Claude — drop-in SKILL.md files that turn Claude into a context-aware red team operator.
Overview • Quickstart • Categories • Skill Index • Roadmap • Contributing
claude-red is a curated library of offensive security skills for the Claude Skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQL injection to shellcode, EDR evasion to ADCS abuse.
Drop a skill into your Claude environment and it behaves like a domain specialist: it knows the techniques, the tooling, the edge cases, and the escalation paths. Skills load on demand based on conversational triggers — you don't pay context for skills you aren't using.
Use cases: authorized red team engagements, bug bounty triage, security research, CTF preparation, operator training, and methodical attack surface exploration.
git clone https://github.com/SnailSploit/claude-red ~/.claude/skills/claude-red
Claude auto-loads matching skills based on conversational triggers (e.g., mentioning SQL injection loads offensive-sqli).
To install a single category:
git clone --filter=blob:none --sparse https://github.com/SnailSploit/claude-red
cd claude-red && git sparse-checkout set Skills/web Skills/active-directory
cat Skills/web/offensive-sqli/SKILL.md | claude --system-file -
cat Skills/active-directory/**/SKILL.md | claude --system-file -
Paste the contents of a SKILL.md into a Project's system prompt or prepend it to your conversation.
./install.sh # interactive
./install.sh --target ~/.claude/skills # explicit target
./install.sh --category web # single category
| Category | Skills | Focus |
|---|---|---|
| Web Application | 16 | OWASP Top 10, business logic, advanced web vulnerability classes |
| Auth & Identity | 2 | JWT exploitation, OAuth/OIDC abuse |
| Active Directory | 1 | On-prem AD attack methodology |
| Wireless | 14 | 802.11, WPA2/3, EAP, WPS, evil-twin, BLE, Zigbee, Z-Wave, LoRa, sub-GHz |
| Cloud | 1 | AWS, Azure, GCP attack paths |
| Mobile | 1 | Android and iOS application testing |
| IoT & Embedded | 1 | Hardware, firmware, RTOS, ICS/OT |
| Infrastructure & Red Team | 7 | Initial access, EDR evasion, advanced red team operations, Windows internals |
| Exploit Development | 6 | Stack/heap corruption, ROP, mitigations, crash analysis, TOCTOU |
| Fuzzing & Vulnerability Research | 4 | libFuzzer, AFL++, coverage-guided fuzzing, vulnerability taxonomy |
| Reconnaissance | 2 | OSINT tooling and structured intelligence collection |
| API Security | 2 | REST/gRPC/WebSocket testing, business logic abuse |
| Container & Kubernetes | 2 | Container escape, Kubernetes cluster exploitation |
| CI/CD & Pipeline | 2 | Pipeline exploitation, secrets extraction |
| Cryptography | 2 | Cryptographic implementation attacks, TLS/SSL |
| Privilege Escalation | 2 | Linux and Windows privilege escalation |
| Post-Exploitation | 3 | Lateral movement, persistence mechanisms, data exfiltration |
| Forensics & C2 | 2 | Anti-forensics tradecraft, C2 framework operations |
| Supply Chain | 2 | Supply chain attacks, dependency confusion |
| Social Engineering | 2 | Phishing campaigns, physical/vishing/smishing |
| Network Attacks | 1 | Layer 2/3 attacks, MITM, protocol poisoning |
| AI Security | 1 | Prompt injection, jailbreaking, RAG poisoning |
| Utility | 2 | Fast triage checklists, professional reporting |
Skills/web/
| Skill | Description |
|---|---|
offensive-sqli | SQL injection — error-based, blind, OOB, DB-specific payloads, ORM CVEs |
offensive-xss | Cross-site scripting — stored, reflected, DOM-based, mutation XSS |
offensive-ssrf | Server-side request forgery — cloud metadata pivots, filter bypass |
offensive-ssti | Server-side template injection — engine fingerprinting, RCE chains |
offensive-xxe | XML external entity — OOB exfiltration, blind XXE techniques |
offensive-idor | Insecure direct object references — enumeration, authorization bypass |
offensive-file-upload | File upload — extension bypass, polyglot files, webshell deployment |
offensive-rce | Remote code execution — command injection, deserialization chains |
offensive-deserialization | Insecure deserialization — Java, PHP, .NET gadget chains |
offensive-race-condition | Race conditions — TOCTOU, single-packet attacks, limit bypass |
offensive-request-smuggling | HTTP request smuggling — CL.TE, TE.CL, H2 desync |
offensive-open-redirect | Open redirect — OAuth token theft, phishing, SSRF pivots |
offensive-parameter-pollution | HTTP parameter pollution — WAF bypass, logic confusion |
offensive-graphql | GraphQL — introspection abuse, batching attacks, alias-based IDOR |
offensive-waf-bypass | WAF bypass — encoding tricks, chunked transfer, case mutation |
offensive-business-logic | Business logic — workflow bypass, pricing abuse, multi-step chains |
Skills/auth/
| Skill | Description |
|---|---|
offensive-jwt | JWT attacks — alg:none, key confusion, secret cracking, claim tampering |
offensive-oauth | OAuth/OIDC — redirect URI abuse, token leakage, PKCE bypass |
Skills/active-directory/
| Skill | Description |
|---|---|
offensive-active-directory | AD methodology — Kerberoast, ASREProast, ACL abuse, ADCS ESC1-15, delegation, hybrid AAD |
Skills/wireless/
| Skill | Description |
|---|---|
offensive-wifi | 802.11 overview — entrypoint for wireless assessments |
offensive-wifi-recon | Adapter configuration, monitor mode, multi-band airspace mapping |
offensive-wpa2-psk | WPA2-PSK — handshake capture, PMKID extraction, hashcat cracking |
offensive-wpa3-sae | WPA3-SAE — transition-mode downgrade, Dragonblood, side-channel attacks |
offensive-wpa-enterprise | 802.1X/EAP — credential relay, evil-twin RADIUS, certificate abuse |
offensive-wps | WPS — Pixie Dust offline attack, online PIN brute force, vendor PIN prediction |
offensive-evil-twin | Evil twin — KARMA, Mana, captive portal credential capture, MITM |
offensive-krack-fragattacks | KRACK and FragAttacks — supplicant vulnerability testing |
offensive-deauth-disassoc | Deauthentication — targeted/broadcast frames, PMF awareness |
offensive-bluetooth-ble | Bluetooth LE — GATT enumeration, pairing downgrade, sniffing, MITM |
offensive-bluetooth-classic | Bluetooth BR/EDR — SDP probing, KNOB attack, BlueBorne, HID spoofing |
offensive-zigbee-thread-matter | 802.15.4 mesh — KillerBee, Touchlink commissioning abuse, ZCL injection |
offensive-z-wave | Z-Wave — S0 key derivation, S2 commissioning attacks, hub pivots |
offensive-lorawan-sub-ghz | LoRaWAN and sub-GHz — ABP/OTAA attacks, KeeLoq, fixed-code replay, TPMS |
Skills/cloud/
| Skill | Description |
|---|---|
offensive-cloud | Multi-cloud — privilege escalation, IMDS abuse, cross-account pivots, CSPM evasion |
Skills/mobile/
| Skill | Description |
|---|---|
offensive-mobile | Android and iOS — Frida hooking, certificate pinning bypass, storage, biometric flaws |
Skills/iot/
| Skill | Description |
|---|---|
offensive-iot | IoT/OT — hardware interfaces, firmware extraction, RTOS, ICS protocols, MQTT/CoAP |
Skills/infrastructure/
| Skill | Description |
|---|---|
offensive-initial-access | Initial access — phishing payloads, drive-by delivery, supply chain vectors (TA0001) |
offensive-advanced-redteam | Full kill chain — C2 infrastructure, OPSEC, lateral movement, persistence |
offensive-edr-evasion | EDR evasion — userland unhooking, indirect syscalls, PPID spoofing |
offensive-shellcode | Shellcode — writing, encoding, injection techniques, position-independent code |
offensive-keylogger-arch | Input capture — keylogger architecture, hooking mechanisms |
offensive-windows-mitigations | Windows mitigations — ACG, CIG, CFG, CET bypass techniques |
offensive-windows-boundaries | Windows boundary defeat — sandbox escape, integrity level bypass |
Skills/exploit-dev/
| Skill | Description |
|---|---|
offensive-exploit-development | Exploit development — stack/heap corruption, ROP chains, mitigation bypass |
offensive-exploit-dev-course | Structured exploit development curriculum |
offensive-basic-exploitation | Linux binary exploitation — beginner to intermediate, mitigations disabled |
offensive-crash-analysis | Crash triage — exploitability assessment, root-cause analysis |
offensive-mitigations | Modern mitigations — ASLR, CFG, CET, PAC analysis and bypass |
offensive-toctou | TOCTOU race conditions — binary, kernel, web, and container contexts |
Skills/fuzzing/
| Skill | Description |
|---|---|
offensive-fuzzing | Fuzzing — libFuzzer, AFL++, coverage-guided strategies, mutation engines |
offensive-fuzzing-course | Vulnerability discovery through fuzzing — structured curriculum |
offensive-bug-identification | Bug identification — code review patterns, static analysis triggers |
offensive-vuln-classes | Vulnerability taxonomy — real-world examples, classification frameworks |
Skills/recon/
| Skill | Description |
|---|---|
offensive-osint | OSINT tooling — recon-ng, theHarvester, Maltego, Spiderfoot |
offensive-osint-methodology | OSINT methodology — structured intelligence collection and analysis |
Skills/api/
| Skill | Description |
|---|---|
offensive-api-security | API testing — OWASP API Top 10, BOLA, BFLA, mass assignment, rate limiting |
offensive-api-abuse | API business logic — endpoint chaining, batching abuse, webhook hijacking |
Skills/container/
| Skill | Description |
|---|---|
offensive-container-escape | Container breakout — privileged mode, Docker socket, capabilities, runc CVEs |
offensive-k8s-attacks | Kubernetes attacks — RBAC abuse, etcd access, kubelet API, pod escape, CRD exploitation |
Skills/cicd/
| Skill | Description |
|---|---|
offensive-cicd-pipeline | CI/CD exploitation — GitHub Actions injection, Jenkins RCE, GitLab CI abuse |
offensive-cicd-secrets | CI/CD secrets — environment variable extraction, vault misconfigs, runner token abuse |
Skills/crypto/
| Skill | Description |
|---|---|
offensive-crypto-attacks | Cryptographic attacks — padding oracle, ECB manipulation, hash extension, weak PRNG |
offensive-tls-attacks | TLS/SSL attacks — POODLE, DROWN, Heartbleed, pinning bypass, 0-RTT replay |
Skills/privesc/
| Skill | Description |
|---|---|
offensive-linux-privesc | Linux privilege escalation — SUID, capabilities, sudo, cron, kernel exploits |
offensive-windows-privesc | Windows privilege escalation — Potato family, service misconfigs, DLL hijacking, UAC bypass |
Skills/post-exploitation/
| Skill | Description |
|---|---|
offensive-lateral-movement | Lateral movement — PTH, PTT, NTLM relay, WMI/WinRM/DCOM, tunneling |
offensive-persistence | Persistence — registry, scheduled tasks, WMI subscriptions, ticket forgery, PAM backdoors |
offensive-data-exfiltration | Data exfiltration — DNS/HTTPS/ICMP tunneling, cloud staging, steganography |
Skills/forensics/
| Skill | Description |
|---|---|
offensive-anti-forensics | Anti-forensics — log manipulation, timestomping, ADS abuse, memory cleanup |
offensive-c2-frameworks | C2 tradecraft — Cobalt Strike, Sliver, Mythic, Havoc, redirectors, domain fronting |
Skills/supply-chain/
| Skill | Description |
|---|---|
offensive-supply-chain | Supply chain attacks — dependency confusion, typosquatting, build system compromise |
offensive-dependency-confusion | Dependency confusion — npm/PyPI/NuGet/Maven namespace attacks, safe PoC methodology |
Skills/social-engineering/
| Skill | Description |
|---|---|
offensive-phishing | Phishing — GoPhish, EvilGinx2, payload delivery, email authentication bypass |
offensive-social-engineering | Social engineering — pretexting, vishing, smishing, physical SE, USB drops |
Skills/network/
| Skill | Description |
|---|---|
offensive-network-attacks | Network layer attacks — ARP spoofing, LLMNR/NBT-NS poisoning, VLAN hopping, MITM |
Skills/ai/
| Skill | Description |
|---|---|
offensive-ai-security | AI/ML security — prompt injection, jailbreaking, RAG poisoning, model extraction |
Skills/utility/
| Skill | Description |
|---|---|
offensive-fast-checking | Fast triage — quick-win identification checklists |
offensive-reporting | Professional reporting — CVSS scoring, evidence standards, executive summaries |
The library is being expanded across multiple phases. See CHANGELOG.md for release history.
| Phase | Focus | Skills | Status |
|---|---|---|---|
| 1 | Internal AD/Windows — split into focused skills | +16 | Planned |
| 2 | Cloud Identity — Entra, ADFS, Okta, M365 | +10 | Planned |
| 3 | Wireless — WPA2/3, EAP, BLE, Zigbee, Z-Wave, LoRa, sub-GHz | +12 | Complete |
| 4 | IoT — UART/JTAG, flash extraction, fault injection, RTOS, ICS | +10 | Planned |
| 5 | Web Fundamentals — recon, auth bypass, access control, CSRF, CORS | +8 | Planned |
| 6 | Web Advanced — proto pollution, SAML, OIDC, WebSocket, SSI/ESI | +10 | Planned |
| 7 | Documentation and tooling polish | — | Complete |
| 8 | New categories — 10 new domains with 20 skills | +20 | Complete |
| 9 | Deep rewrites — deserialization, GraphQL, advanced red team, SSTI | — | Complete |
Target: ~130 skills across 23+ categories.
Contributions welcome. See CONTRIBUTING.md for the skill template, frontmatter standard, and review process. Focused, single-surface skills are preferred over monolithic overviews.
MIT — use freely, attribution appreciated.
Give Claude the right skill and it stops being a chatbot — it becomes an operator.
snailsploit.com • GitHub • Research • X
IDOR (Insecure Direct Object Reference) testing checklist: object ID enumeration, horizontal/vertical privilege escalation, GUID predictability, indirect references via hashes, chained IDOR, and API endpoint IDOR. Use for web app pentests and bug bounty IDOR discovery.
Use this skill when the conversation involves any of:
IDOR, insecure direct object reference, horizontal privilege escalation, vertical privilege escalation, object enumeration, GUID, API IDOR, mass assignment, broken access control
When this skill is active:
flowchart LR
A[Create Test Accounts] --> B[Discover Features]
B --> C[Intercept Traffic]
C --> D[Switch IDs in Requests]
D --> E{IDOR Found?}
E -->|Yes| F[Document Vulnerability]
E -->|No| G[Try Protection Bypass]
G --> H[Monitor Information Leaks]
flowchart TD
A[IDOR Vulnerabilities] --> B[Missing Authorization Checks]
A --> C[Client-Side ID Transmission]
A --> D[Predictable Resource Identifiers]
A --> E[Insufficient Access Control Logic]
A --> F[Improper Session Handling]
A --> G[Reliance on Obfuscation]
B --> H[Horizontal Access Control Failures]
C --> H
D --> I[Vertical Access Control Failures]
E --> I
F --> J[Context-Dependent Access Control Failures]
G --> J
Insecure Direct Object References (IDOR) occur when an application exposes a reference to an internal implementation object without sufficient access control. These vulnerabilities allow attackers to manipulate these references to access unauthorized data or perform unauthorized actions.
IDOR vulnerabilities arise from flawed access control mechanisms that fail to validate whether a user should have permission to access or modify a specific resource. The core implementation issues include:
IDORs manifest in various patterns:
Create Multiple Test Accounts:
Establish Baseline Behavior:
Request Capture Setup:
Request Parameter Analysis:
id, user_id, account_id, file, doc, document, record, item, order, number, profile,
edit, view, filename, object, num, key, userid, uuid, group, role
sub, org_id) or signed cookies; tamper if server fails to re‑authorize.Parameter Manipulation Techniques:
id=1 → id=2)user_id, account_id) to requests that don't initially have them (e.g., GET /api/messages → GET /api/messages?user_id=<victim_uuid>). Parameter names can often be inferred from other requests or discovered using tools like Arjun.{"items": [{"id": 123, "owner": "victim"}]} → {"items": [{"id": 456, "owner": "attacker"}]}
.json, .xml, .config). Ruby applications might respond differently to /resource/123 vs /resource/123.json.GET /api/users/*). Rare, but worth trying.{"id":19} → {"id":[19]}).{"id":111} → {"id":{"id":111}}).account_id=UUID → account_id=123).id=123&id=456, user_id=attacker_id&user_id=victim_id, user_id=attacker_id[]&user_id=victim_id[]). See HTTP Parameter Pollution under Bypass Techniques.If-None-Match probing to infer existence without full access.Endpoint Analysis Questions: For each endpoint receiving an object ID, ask:
Hidden Parameter Discovery:
Web Socket Discovery:
Testing Methodology:
mindmap
root((IDOR Testing))
::icon(fa fa-bug)
style root fill:#f96,stroke:#333,stroke-width:2px
id1(Blind Detection)
::icon(fa fa-eye-slash)
style id1 fill:#bbf,stroke:#33f,stroke-width:1px
id1.1[Comparative Response Analysis]
style id1.1 fill:#ddf,stroke:#33f
id1.2[Out-of-Band Detection]
style id1.2 fill:#ddf,stroke:#33f
id1.3[Side-Channel Analysis]
style id1.3 fill:#ddf,stroke:#33f
id2(Mass Testing)
::icon(fa fa-rocket)
style id2 fill:#fbf,stroke:#939,stroke-width:1px
id2.1[Automated Identifier Enumeration]
style id2.1 fill:#fdf,stroke:#939
id2.2[Parallel Testing with Burp]
style id2.2 fill:#fdf,stroke:#939
id2.3[Pattern Recognition]
style id2.3 fill:#fdf,stroke:#939
id3(Protection Bypass)
::icon(fa fa-shield)
style id3 fill:#bfb,stroke:#393,stroke-width:1px
id3.1[ID Obfuscation Bypass]
style id3.1 fill:#dfd,stroke:#393
id3.2[Access Control Bypass]
style id3.2 fill:#dfd,stroke:#393
id3.3[Reference Leakage Exploitation]
style id3.3 fill:#dfd,stroke:#393
Comparative Response Analysis:
Out-of-Band Detection:
Side-Channel Analysis:
import requests
session = requests.Session()
# Login code here...
# Test range of IDs
for id in range(1, 1000):
response = session.get(f"https://example.com/api/documents/{id}")
if response.status_code == 200:
print(f"Found accessible document: {id}")
# Log response for later analysis
Parallel Testing with Burp:
Pattern Recognition:
/api/document/MjQ2 (base64 of "246") → /api/document/MjQ3 (base64 of "247")
GET /api/users/123 → POST /api/users/123
Content-Type: application/json → Content-Type: application/xml
GET /api/document?id=attacker_id&id=victim_id
GET /api/users?user_id=attacker_id[]&user_id=victim_id[]
{ "user_id": "attacker_id", "user_id": "victim_id" }
GET /admin/profile → GET /ADMIN/profile
POST /users/delete/MY_ID/../VICTIM_ID
GET /v3/users/123 → 403 Forbidden
GET /v1/users/123 → 200 OK
HTTP Request Smuggling: Use CL.TE or TE.CL smuggling to inject victim IDs in backend requests
POST / HTTP/1.1
Content-Length: 4
Transfer-Encoding: chunked
1
Z
Q
Front-end strips user_id parameter but back-end processes it from smuggled request chunk
{ "name": "John", "role": "admin", "user_id": "victim_id", "is_admin": true }
userId vs user_id vs UserId vs USER_ID
{
"profile": {
"name": "John",
"owner_id": "attacker_id",
"target_id": "victim_id"
}
}
Harvesting IDs from HTML/JS Sources:
API Response Analysis:
graph LR
A[IDOR Patterns] --> B[API Endpoint Vulnerabilities]
A --> C[Function-Specific Vulnerabilities]
B --> D[RESTful API IDORs]
B --> E[GraphQL IDORs]
B --> F[JSON/XML Parameter IDORs]
C --> G[Account Management]
C --> H[Financial Operations]
C --> I[Content Management]
C --> J[Administrative Functions]
RESTful API IDORs: Direct manipulation of resource identifiers in REST APIs
GET /api/users/123/profile → GET /api/users/456/profile
GraphQL IDORs: Changing object identifiers in GraphQL queries
query {
user(id: "attacker_id") {
changePassword(newPassword: "pwned")
}
}
JSON/XML Parameter IDORs: Modifying nested parameters
{"user": {"id": 123, "action": "view"}} → {"user": {"id": 456, "action": "view"}}
Account Management IDORs:
Financial IDORs:
Content Management IDORs:
Administrative Function IDORs:
OAuth/OIDC IDORs:
state or code parameters in OAuth flows2FA/MFA IDORs:
/api/users/{user_id}/totp-secretNotification/Webhook IDORs:
/api/notifications/settings/{user_id}Real-time Feature IDORs:
__typename switches to reach sibling object types.id arguments and nested object IDs in mutations and batch queries; verify per‑object ownership checks..proto definitions; disable reflection in production when possible.Key=/object path, query params, or credentials (e.g., X-Amz-Security-Token) to replay others’ files; test cross‑tenant reuse./api/v2/traces or /v1/traces, harvest IDs, and replay them against protected APIs.POST /v1/data/authz/allow).Burp Suite Extensions:
Specialized Tools:
Framework-Specific Tools:
Reconnaissance Phase:
Identification Phase:
Testing Phase:
Exploitation Phase:
Reporting Phase:
/api/users/myinfo vs /api/admins/myinfo).When hunting for IDORs, prioritize these high-impact endpoints:
User Profile Settings:
Payment and Financial Endpoints:
Administrative Functions:
Authentication & MFA Endpoints:
Notification & Communication:
Real-Time & Collaboration:
IDOR vulnerabilities can often be chained with other issues or used to escalate privileges:
评论 (0)
暂无评论,成为第一个评论者吧!