liuxinye23

57 mods across 1 repository, 0 stars between them.

stego-triage

49

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass skill for investigating hidden data in files used in capture-the-flag security puzzles. It checks images, audio, video, PDFs, archives, and containers for metadata, embedded files, appended data, and other unusual clues.

0 29d ago A 41 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security review guide for HTTPS, certificates, redirects, HSTS, and TLS settings across websites and APIs. TLS is the security layer that protects connections between clients and servers.

0 29d ago A 28 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security review skill for the life cycle of JWTs, API tokens, refresh tokens, and OAuth or OIDC credentials. It checks how credentials are issued, renewed, revoked, scoped, transmitted, and stored.

0 29d ago A 27 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security assessment guide covering how to identify, verify, classify, and rate weaknesses in networks, hosts, applications, configurations, and source code.

0 29d ago A 14 tokens original Apache-2.0

wasm-reverse-triage

53

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass workflow for CTF challenges involving WebAssembly, JavaScript, or browser-side checks. WebAssembly is a compact format that lets code run in a web browser, often alongside JavaScript.

0 29d ago A 35 tokens original Apache-2.0

web-auth-bundle

54

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Bundle skill for authorized web and API authentication assessment. Use when requests involve login flows, sessions, cookies, bearer tokens, refresh tokens, MFA, CSRF boundaries, or mixed browser/API auth and Codex should coordinate multiple auth-focused skills.

0 29d ago A 53 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for XPath injection, a vulnerability where untrusted input changes an XPath query used to search XML data.

0 29d ago A 16 tokens original Apache-2.0

xss-testing

56

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for cross-site scripting (XSS), an attack that makes a website run unwanted JavaScript in a visitor’s browser. It covers reflected, stored, and DOM-based XSS.

0 29d ago C 15 tokens original Apache-2.0

xxe-testing

57

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for XXE, a flaw where an XML parser is tricked into reading files or making network requests. It covers XML inputs such as APIs, uploads, SOAP services, office documents, SVGs, and PDFs.

0 29d ago A 19 tokens original Apache-2.0