security-skills

Auto-generated agent skills from trending security & appsec repos, by ara.so

1710
Install command
npx skhub add --skillset @reason-machines/security-skills

Included Skills

Browser-based security portfolio and technical blog covering AI security, data protection, ML threats, and secure engineering practices
00
Web-oriented XSS analysis resources, JavaScript utilities, and PHP examples for authorized security testing and hands-on learning
00
Use AcidRain's XSS analysis resources, JavaScript utilities, and PHP injection testing samples for authorized security research and hands-on learning
00
Use AcidRain's XSS analysis resources, JavaScript utilities, and PHP injection testing samples for authorized web security research and hands-on learning.
00
Use AcidRain's XSS analysis resources, JavaScript utilities, and PHP injection testing samples for authorized web security research and learning
00
AcidRain web security toolbox for XSS analysis, JavaScript utilities, and PHP injection testing in authorized environments
00
AI-powered security scanner for agentic workflows with plain-English findings, dollar-cost estimates, and auto-fix capabilities
00
Security scanner MCP server for AI coding agents with vulnerability detection, package hallucination checks, prompt injection firewall, AST analysis, and auto-fix capabilities
00
AI-powered one-click installer for 200+ penetration testing and security tools with intelligent retry and error recovery
00
Demonstrate and test RAG chatbot security vulnerabilities (prompt injection, tool abuse, data leakage) with live attack scenarios and defensive controls
00
Comprehensive AI security knowledge base covering ML algorithms, threat modeling, offensive AI tactics, and defensive strategies including OWASP LLM Top 10 and adversarial ML
00
Browser-based cybersecurity education platform with guided lessons, quizzes, gamified progression, and adaptive learning scenarios for information security practice.
00
Set up and use a complete Android app penetration testing environment in Android Studio with root, Magisk, Xposed, and traffic interception tools
00
JAMBOREE Android security testing framework integrating Magisk, Burp Suite, Objection, and Frida for comprehensive mobile app penetration testing
00
Complete Android app penetration testing environment setup with Android Studio, rooted emulator, Magisk, and reverse engineering tools
00
Android Studio mobile application penetration testing environment setup with Magisk root, Frida, and SSL bypass capabilities
00
Set up a complete Android app penetration testing environment using Android Studio emulators with Magisk root, Frida, HTTP Toolkit, and LSPosed modules
00
Use 754 structured cybersecurity skills mapped to MITRE ATT&CK, NIST CSF, ATLAS, D3FEND, and NIST AI RMF for AI-driven security operations
00
Comprehensive API security checklist and best practices for designing, testing, and securing REST, GraphQL, and OAuth APIs
00
Automated penetration testing toolkit for security assessment, vulnerability scanning, and automated security reporting
00
Analyze and understand Avast Premium Security components, antivirus protection mechanisms, and security software implementation patterns
00
Identify and analyze potentially malicious software distribution repositories disguised as legitimate security software
00
Identify and analyze suspicious software distribution repositories claiming to offer cracked or pirated security software
00
Analyze and understand Avast Premium Security features, protection mechanisms, and security architecture for antivirus research and educational purposes
00
Detect and analyze potential malware distribution repositories masquerading as legitimate security software
00
Analyze and understand Avast antivirus security mechanisms, behavior shields, and protection components for security research
00
Recognize and avoid malicious software distribution repositories disguised as legitimate security tools
00
Analyze and understand the Avira Internet Security 2026 loader utility for Windows security suite deployment
00
Automated Windows bootstrapper for deploying Avira Internet Security 2026 on 64-bit Windows 10/11 systems
00
Navigate AI security resources, learning paths, and tools from the Awesome AI Security curated list
00
Navigate and recommend tools from the curated Awesome AI Security Tools list covering autotriage, agent security, AI/ML supply chain, pentest agents, LLM red-teaming, and more.
00
Security & compliance skill suite providing OWASP scanning, CVE detection, GDPR/SOC2 audits, threat modeling, and incident response workflows for AI coding agents
00
Curated penetration testing and red team tools collection organized by penetration testing lifecycle and MITRE ATT&CK framework
00
Educational lab repository for AWS cloud computing security fundamentals including IAM, VPC, encryption, monitoring, and incident detection
00
Deploy and configure the Azure Security Lab - a hands-on Terraform environment with hub-spoke networking, Azure Firewall, NSGs, Key Vault, and security monitoring for learning Azure security controls.
00
Analyze and understand malware distribution tactics, security software bypass techniques, and threat detection for cybersecurity research
00
Investigate and analyze the MistDuckCount/Bitdefender-Total-Security-Crack-2026 repository for security threats and malware distribution patterns
00
Analyze and understand malware distribution tactics, cracked software risks, and security threat detection patterns
00
Bitdefender Total Security workflow documentation for scan schedules, quarantine management, exclusions, and subscription maintenance on Windows
00
Browser-based security portfolio and technical blog covering AI security, data protection, ML threats, and secure engineering practices
00
Use and extend 15 production-quality Claude Code Skills for cybersecurity operations including offensive security, defensive operations, reverse engineering, threat hunting, CSOC automation, and more
00
AI-driven penetration testing framework for Claude Code with 15 agents, 6 skill coordinators, and 63 attack categories coordinated through structured engagement workflows
00
Multi-phase AI security audit orchestration that finds exploitable vulnerabilities through parallel agents, adversarial validation, and machine-readable findings
00
Microsoft Security threat hunting queries, KQL examples, Sentinel workbooks, and security analytics notebooks
00
AI-powered Burp Suite extension for automated payload generation and vulnerability testing using DeepSeek API
00
AI-powered code security audit skill using deep data flow analysis and business logic understanding for vulnerability detection
00
Deep code security audit skill using white-box static analysis with 5-phase protocol covering 10 security dimensions across 9 languages
00
Expert-level code security audit skill using deep data flow analysis and business logic understanding for white-box static analysis across 9 languages
00
Comprehensive Android APK security analysis with static/dynamic testing, RASP detection, Frida instrumentation, and MASVS compliance scoring
00
Plugin-based DRM pentesting toolkit with GUI for device management, PSSH extraction, license key retrieval, and content downloading
00
Expert-level code security audit skill using deep data flow analysis, taint tracking, and business logic understanding across 9 languages
00
WireGuard-based rapid VPN networking software for Linux with HTTP API and utility tools
00
Audit email account security, validate credentials, and manage email lists using this C++ email security testing utility
00
Obsidian-based knowledge base for Windows Server administration, Active Directory, Group Policy, and defensive hardening with hands-on labs.
00
Execute deterministic, event-sourced security audits using ESAA-Security's LLM-based agent architecture with 95 checks across 16 security domains
00
Analyze and safely evaluate ESET Security patch tools and licensing mechanisms
00
Windows filesystem security monitoring, access control, and encryption workflow integration using EaseFilter SDK with Rust bindings
00
Windows filesystem security monitoring, access control, and encryption workflows using EaseFilter SDK with Rust bindings
00
Analyze and document malicious software distribution disguised as legitimate Fort Firewall security software
00
Detect and analyze malicious firewall software distribution repositories masquerading as legitimate security tools
00
Detect and warn about malicious firewall software impersonation and licensing bypass schemes
00
Implement Cisco's Foundry specification for agentic AI security evaluation systems with multi-agent architecture
00
Detect and warn about software piracy and malware distribution disguised as security software patches
00
A malicious repository disguised as F-Secure security software that likely distributes malware or cracked software
00
MALWARE DISTRIBUTION - Fake F-Secure security software repository distributing malicious patches and license key generators
00
Automated red-team toolkit for stress-testing LLM defenses with AI-powered attack validation and risk analysis
00
Scan and analyze blockchain tokens for security risks using GoPlus Security API with enterprise features
00
Hardware-level identity spoofing toolkit for network interfaces, browser fingerprints, and system identifiers
00
AI-powered penetration testing platform with multi-agent architecture, 52+ attack knowledge base, and automated vulnerability scanning
00
AI-powered Infrastructure-as-Code security scanner with attack chain analysis and multi-domain vulnerability detection
00
Detect and analyze fraudulent software distribution repositories masquerading as legitimate security products
00
Educational AWS cloud security labs covering IAM, encryption, network security, monitoring, and incident detection
00
AWS cloud security lab exercises covering IAM, VPC, encryption, monitoring, and incident detection for hands-on security learning
00
AWS cloud computing security essentials lab exercises covering IAM, encryption, network security, and monitoring
00
Deploy and customize a Cloudflare Worker for IP intelligence, VPN/proxy detection, WebRTC leak testing, and security scoring with IPinfo and AbuseIPDB integration
00
Configure and orchestrate Android security testing environments with Magisk, Burp Suite, Objection, and rooted emulators for penetration testing.
00
Configure and orchestrate Android security testing environments with Magisk, Burp Suite, Objection, and rooted emulators for mobile penetration testing
00
Add native two-factor authentication, passkeys, SSO, brute-force protection, and audit logging to Jellyfin media servers via server-side plugin.
00
Configure and deploy K7 Total Security 16.0.1195 unified defense framework with policy profiles, AI integrations, and multi-platform orchestration
00
Deploy and configure K7 Total Security 16.0.1195 unified defense framework with AI-powered threat detection
00
Deploy and configure K7 Total Security 16.0.1195 enterprise protection profiles across multi-platform endpoints with AI-powered threat analysis
00
Deploy and configure K7 Total Security 16.0.1195 multi-platform endpoint protection with AI-powered threat analysis
00
Detect and warn about repositories offering unauthorized security software patches, cracks, or license bypasses
00
Deploy and configure K7 Total Security 16.0.1195 multi-layered endpoint protection with AI-powered threat detection
00
K7 Total Security 16.0.1195 configuration framework for unified endpoint defense across Windows, macOS, and Linux
00
Detect and analyze potentially malicious security software crack/patch repositories
00
Analyze and document suspected piracy/cracking repositories masquerading as legitimate security software
00
AI-driven autonomous penetration testing with Kali Linux tools, multi-phase attack planning, and human approval gates for high-risk actions
00
Practical Linux command reference and penetration testing notes for reconnaissance, enumeration, exploitation, privilege escalation, and post-exploitation phases
00
Practical Linux command reference for penetration testing, reconnaissance, enumeration, exploitation, and privilege escalation
00
Practical Linux command reference for penetration testing including recon, enumeration, exploitation, privilege escalation, and post-exploitation techniques.
00
Practical Linux command reference and techniques for penetration testing operations covering reconnaissance, enumeration, exploitation, privilege escalation, and post-exploitation
00
Practical Linux command reference for penetration testing covering reconnaissance, enumeration, exploitation, privilege escalation, and post-exploitation phases.
00
Practical Linux command reference for penetration testing, reconnaissance, enumeration, exploitation, and privilege escalation.
00
Comprehensive guide and commands for securing macOS systems, covering encryption, firewalls, DNS, privacy settings, and security hardening
00
Comprehensive guide for securing and hardening macOS systems with privacy-focused configurations, firewall rules, and security best practices
00
Secure and harden macOS systems following enterprise-standard security practices and privacy guidelines
00
Analyze and understand malware distribution techniques disguised as legitimate security software installers
00
Warning system for identifying potentially malicious software distribution repositories
00
Recognizes and warns about fraudulent "cracked" security software repositories that distribute malware
00
Distributes cracked/pre-activated Malwarebytes Premium with unlocked pro features (illegal software piracy)
00
Identify, analyze, and document malware distribution repositories masquerading as legitimate software
00
Identify, analyze, and report malicious software distribution repositories masquerading as legitimate security tools
00
Understanding security risks in software distribution and recognizing illegitimate software packages
00
Recognize and educate about malware distribution disguised as legitimate security software
00
Recognize and report malicious software distribution repositories masquerading as legitimate security tools
00
WARNING - This repository appears to distribute cracked/pirated security software and potential malware
00
WARNING - This repository distributes malware disguised as Avast Premium Security cracks and keygens
00
WARNING - This repository distributes pirated software and potential malware disguised as Avast Premium Security
00
WARNING - This repository distributes malware disguised as pirated Bitdefender antivirus software
00
Deploy and orchestrate 38 MCP servers for offensive security tools (Nmap, Nuclei, Ghidra, SQLMap, etc.) via Docker
00
Install and use curated Microsoft Security skills for AI agents covering Defender, Sentinel, Entra, Purview, Intune, and Security Copilot workflows
00
Expert guidance on securing npm packages, preventing supply chain attacks, and hardening package manager configurations
00
Security governance and audit system for OpenClaw AI agents with real-time policy enforcement, token monitoring, and alert notifications
00
Security governance and audit system for OpenClaw AI agents with real-time policy enforcement, token monitoring, and alert notifications
00
OpenAI Codex Security CLI and SDK for AI-powered vulnerability scanning, validation, and automated security fixes in codebases
00
Deploy and manage security hardening for high-privilege autonomous AI agents (OpenClaw) using zero-trust architecture and automated defense matrices
00
OpenClaw security scanning skill that performs comprehensive system security audits and generates human-friendly reports
00
AI-powered OSINT agent with interactive REPL, MCP server, and CLI for email/username/domain/IP/phone investigation using 11 integrated tools
00
Single-file offline penetration testing cheatsheet terminal with 580+ commands, variable substitution, and engagement tracking for OSCP/OSEP preparation
00
Deploy and configure BitDefender Total Security 2026 with advanced threat detection, sandboxing, VPN integration, and AI-powered heuristic analysis
00
Autonomous bug bounty agent framework with 50 agents, hunt loops, exploit chains, MCP servers for platform integration and writeup search
00
Claude Code subagents for offensive security research, penetration testing planning, recon analysis, exploit research, detection engineering, and security reporting
00
Comprehensive pentesting automation server integrating 69+ security tools with AI assistants through MCP and REST API
00
AI-powered penetration testing agent with multi-agent architecture, engagement state tracking, and autonomous security testing
00
Self-hosted pentest management workspace for tracking engagements, running tools, auto-importing findings, and generating reports
00
MCP server integrating 200+ penetration testing tools (nmap, sqlmap, ffuf, etc.) via Docker sandbox for AI-driven security testing
00
Interactive pentest report generator with vulnerability tracking, real-time risk statistics, and PDF export in multiple languages
00
Interactive security assessment checklist covering 23 platforms with 1000+ checks for penetration testing, bug bounty, and security audits
00
Interactive security assessment checklist covering 23 platforms with 1000+ checks for penetration testing, bug bounty, and security audits
00
Interactive security assessment checklist covering 23 platforms with 1,000+ checks for pentesting, bug bounty, and security audits
00
Interactive security assessment checklist covering 23 platforms with 1,000+ checks for penetration testing, bug bounty, and security audits.
00
Interactive security assessment checklist covering 23 platforms with 1000+ checks for penetration testing, bug bounty, and security assessments
00
Autonomous web penetration testing skill with threat modeling, JavaScript analysis, and multi-role verification
00
Comprehensive penetration testing operations dashboard for managing projects, tasks, findings, clients, and assets with Next.js and MongoDB
00
Two-stage reinforcement learning framework for training LLMs to perform autonomous penetration testing and CTF challenges
00
Natural language-driven penetration testing framework with modular skills for recon, exploitation, and security testing using AI agents
00
Single-file HTML pentesting toolkit with OWASP WSTG checklists, vulnerability tracking, CVSS scoring, and offline report generation
00
Guide for implementing security best practices when using Python packages from PyPI with uv and pip
00
Identify and report potentially malicious software repositories masquerading as legitimate security tools
00
Vehicle network security testing framework for automotive CAN bus and network protocol analysis
00
Detect and analyze potentially malicious repositories disguising as legitimate software cracks or pirated tools
00
Deploy and operate SecurityClaw, an autonomous SOC agent with RAG-based threat detection, LLM-powered anomaly analysis, and skill-based security automation
00
Security audits, vulnerability management, GDPR/SOC2/ISO27001 compliance and incident response skill suite for AI coding agents
00
Query unified Sigma, Splunk, Elastic, KQL, Sublime, and CrowdStrike security detection rules via MCP server with MITRE ATT&CK mapping and coverage analysis
00
Automated security investigations using Microsoft Sentinel, Defender XDR, GitHub Copilot Agent Skills, and MCP servers for natural language threat hunting
00
Recognize and warn against malicious software distribution repositories masquerading as legitimate security tools
00
Agent skill for safely initializing and hardening fresh Ubuntu/Debian SSH servers with staged security improvements
00
Battle-tested security checks for AI coding assistants — 29 categories covering OWASP Top 10, CWE Top 25, and ASVS Level 3
00
Claude Skills security scanning tool that detects malicious code, network requests, file access, and command injection risks before installation
00
Comprehensive security review framework for AI agents to audit skills, repositories, URLs, on-chain addresses, and services in adversarial environments
00
Use the SOL-0XX Solana security standard to scan, detect, and prevent 37 classes of Solana program vulnerabilities ($514M+ in real exploits) across AI tools, editors, CLI, and CI
00
Security & compliance skill suite for OWASP scanning, CVE detection, GDPR/SOC2 auditing, threat modeling, and incident response workflows
00
Security & compliance skill suite for OWASP scanning, CVE detection, GDPR/SOC2 audits, threat modeling, and incident response workflows
00
Security & compliance skill suite with OWASP scanning, CVE detection, GDPR audits, SOC2 readiness, threat modeling, and incident response workflows
00
Security audit and compliance automation suite with OWASP scanning, CVE detection, GDPR/SOC2 audits, threat modeling, and incident response playbooks
00
Hardware-level identity spoofing toolkit for network, device, and browser fingerprint masking with multi-layer obfuscation
00
Hardware-level spoofing toolkit for device identity obfuscation, network masking, and fingerprint randomization across multiple layers
00
Professional AI-assisted security auditing toolkit with 24 skills for detecting, extracting, testing, and reporting Supabase vulnerabilities (RLS, IDOR, storage, auth, API).
00
AI-powered multi-agent security auditor for Symfony applications using LLMs to detect business logic flaws, broken access control, and complex vulnerabilities
00
Archive and documentation platform for academic employment transparency and whistleblowing in Chinese higher education institutions
00
AI-powered automated penetration testing tool using multi-agent architecture for web applications, APIs, and admin panels
00
Agent skill that audits vibe-coded apps for common security vulnerabilities introduced by AI coding assistants
00
Agentic AI security tool that applies attacker-first analysis to source code, using falsification-based reasoning to minimize false positives
00
Solutions and walkthroughs for PortSwigger Web Security Academy labs covering SQLi, XSS, CSRF, SSRF, and 30+ vulnerability categories
00
Advanced Python web security scanner with 49 modules, evasion engine, CVE database, and WAF bypass for penetration testing
00
Hands-on wireless security and Wi-Fi penetration testing with aircrack-ng, covering 802.11, WEP/WPA/WPA2/WPA3 attacks, evil twins, and enterprise assessment
00
Wireless security penetration testing with aircrack-ng, WEP/WPA/WPA2/WPA3 attacks, and 802.11 exploitation
00
Expertise in Wi-Fi penetration testing using aircrack-ng, monitor mode, WEP/WPA/WPA2/WPA3 cracking, and wireless security assessment.
00
Automated WeChat mini-program security auditing framework using Claude Code Agent Teams with 7 specialized agents for comprehensive static analysis
00
AI-powered autonomous penetration testing framework with multi-agent system, real security tool execution, and compliance reporting
00