jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Static/dynamic malware analysis, YARA rules, sandbox evasion detection, behavioral profiling, unpacking, anti-analysis bypass.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Static/dynamic malware analysis, YARA rules, sandbox evasion detection, behavioral profiling, unpacking, anti-analysis bypass.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Mobile application penetration testing — Android/iOS static/dynamic analysis, Frida instrumentation, SSL pinning bypass, root/jailbreak detection bypass, deep-link abuse, exported components, insecure storage, biometric bypass.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
NetExec (nxc) is a network service exploitation tool for assessing large networks. It supports SMB, LDAP, WinRM, MSSQL, SSH, FTP, RDP, WMI, NFS, and VNC protocols.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Network penetration testing — lateral movement, pivoting, protocol attacks, traffic interception, Active Directory exploitation, wireless attacks.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Engagement orchestration — drives a comprehensive pentest as a decision loop (orient via kb/INDEX.md → load the phase runbook → load the domain skill → execute → validate → capture finding → re-assess next steps). Invoke at the start of any engagement/lab/HTB box, or whenever you want Claude to figure out the next…
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Linux privilege escalation and persistence — SUID/SGID abuse, kernel exploits, capabilities, sudo misconfig, cron jobs, writable paths, library hijacking, credential hunting, container escape, LXD/LXC, systemd timers, PAM skeleton key, polkit, MOTD, udev, git hooks, shell profile, NetworkManager, package manager…
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Windows privilege escalation — token abuse, service exploitation, UAC bypass, credential harvesting, AD escalation paths.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Comprehensive reconnaissance and OSINT — subdomain enumeration, CVE lookup, breach intelligence, DNS history, social profiling, attack surface mapping.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Full red team engagement — initial access, persistence, privilege escalation, defense evasion, C2 infrastructure, EDR bypass, living-off-the-land.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Binary analysis, disassembly, decompilation, firmware RE, protocol reverse engineering, anti-reversing bypass, malware unpacking.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Shellcode development — PIC techniques, PEB walking, API hashing, null-byte avoidance, encoders, loaders, PE-to-shellcode conversion, cross-platform shellcode.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Sliver C2 framework — server/client setup, implant generation (session & beacon), listener management (mTLS/HTTP/HTTPS/DNS/WireGuard), post-exploitation, armory extensions, OPSEC defaults, and pivot/port-forward chaining for authorized internal pentests.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
SOCKS proxying with proxychains is the standard technique for routing attacker tooling through a compromised pivot host into segmented internal networks. Covers SOCKS protocol fundamentals, proxychains configuration and modes, per-tool usage, multi-hop chaining, DNS resolution, performance tuning, troubleshooting, and…
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Proactive threat hunting, IOC extraction, MITRE ATT&CK mapping, behavioral anomaly detection, log analysis correlation.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Skill "vulnerability-analysis" from jessefmoore/offensive-claude-code, covering vulnerability analysis, when to activate, core methodology, rule categories by priority and audit protocol.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Full-spectrum web application penetration testing — OWASP Top 10, API security, authentication attacks, business logic, WAF bypass, race conditions.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Skill "windows-boundaries" from jessefmoore/offensive-claude-code, covering windows security boundaries, when to activate, security boundary taxonomy, kernel/user boundary and attack surface.
jessefmoore/offensive-claude-code
Skill Claude CodeCodex
Skill "windows-mitigations" from jessefmoore/offensive-claude-code, covering windows mitigations & bypass, when to activate, mitigation landscape, recon & fingerprinting and powershell enumeration.