MingyiSecLab

60 mods across 1 repository, 11 stars between them.

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Implement tasks from an OpenSpec change. Use when the user wants to start implementing, continue implementation, or work through tasks.

11 2mo ago A 31 tokens copy · 86% Apache-2.0

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Archive a completed change in the experimental workflow. Use when the user wants to finalize and archive a change after implementation is complete.

11 2mo ago A 31 tokens copy · 88% Apache-2.0

openspec-explore

03

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Enter explore mode - a thinking partner for exploring ideas, investigating problems, and clarifying requirements. Use when the user wants to think through something before or during a change.

11 2mo ago A 39 tokens copy · 92% Apache-2.0

openspec-propose

04

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Propose a new change with all artifacts generated in one step. Use when the user wants to quickly describe what they want to build and get a complete proposal with design, specs, and tasks ready for implementation.

11 2mo ago A 47 tokens copy · 100% Apache-2.0

MingyiSecLab/Mingyi-Atlas

Instructions file CodexOpenCode

Instructions for MingyiSecLab/Mingyi-Atlas, covering repository guidelines, project structure & module organization, build, test, and development commands, coding style & naming conventions and testing guidelines.

11 2mo ago A 3,930 tokens original Apache-2.0

MingyiSecLab/Mingyi-Atlas

Instructions file

Instructions for MingyiSecLab/Mingyi-Atlas, covering claude.md, project overview, common commands, architecture and modes and prompts.

11 2mo ago A 2,060 tokens original Apache-2.0

benchmark

07

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Benchmark mode marker — engagement objective is flag capture. Generic engagement rules apply unchanged.

11 2mo ago A 18 tokens original Apache-2.0

playwright-cli

08

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Automate browser interactions, test web pages and work with Playwright tests.

11 2mo ago A 19 tokens original Apache-2.0

nuclei

09

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Nuclei CLI parameter reference and usage patterns - YAML-template vulnerability scanning, target input modes, template filters, output formats, rate limits, ProjectDiscovery dashboard upload, and common scan commands.

11 2mo ago A 42 tokens original Apache-2.0

ad

10

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Active Directory attack lane — BloodHound ingestion, Kerberoasting, ADCS ESC scanning, DCSync, LAPS extraction.

11 2mo ago A 29 tokens copy · 89% Apache-2.0

adcs-esc1

11

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Exploit Active Directory Certificate Services ESC1 — vulnerable template allows arbitrary SAN, enabling user impersonation up to domain admin.

11 2mo ago A 30 tokens copy · 94% Apache-2.0

asrep-roasting

12

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Request AS-REP for accounts with DONTREQPREAUTH set and crack offline — like kerberoast but no auth required.

11 2mo ago A 31 tokens copy · 94% Apache-2.0

bloodhound-query

13

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

BloodHound ingestion + canonical Cypher queries for AD attack-path enumeration. Run after collector dumps zip; promotes findings into the knowledge graph.

11 2mo ago A 32 tokens copy · 94% Apache-2.0

certipy-esc-chain

14

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

ADCS abuse via Certipy — find vulnerable templates (ESC1-ESC15), request a certificate, authenticate as the target, dump the krbtgt. Full chain in 4 commands. Covers ESC1 (any SAN), ESC2 (any-purpose EKU), ESC3 (enrollment-agent), ESC4 (vulnerable ACL), ESC8 (NTLM relay to CA), ESC9/10/11/13.

11 2mo ago B 93 tokens copy · 97% Apache-2.0

coercer

15

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Authentication coercion against Windows / AD — PetitPotam (MS-EFSR), PrinterBug (MS-RPRN), DFSCoerce (MS-DFSNM), ShadowCoerce (MS-FSRVP), Coercer.py meta-tool. Force a Windows machine to NTLM-authenticate to attacker, then relay or crack offline.

11 2mo ago B 71 tokens original Apache-2.0

dcsync

16

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Abuse replication rights (DS-Replication-Get-Changes + GetChangesAll) to dump krbtgt and arbitrary user NT hashes from a DC.

11 2mo ago A 35 tokens original Apache-2.0

kerberoasting

17

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Request Kerberos TGS tickets for SPN-bound service accounts and crack offline with hashcat — classic AD priv-esc primitive.

11 2mo ago A 30 tokens original Apache-2.0

laps

18

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Extract LAPS-managed local administrator passwords from AD computer objects (ms-Mcs-AdmPwd / msLAPS-Password).

11 2mo ago A 27 tokens original Apache-2.0

netexec

19

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

NetExec (CrackMapExec successor) — unified SMB/LDAP/MSSQL/WinRM/RDP/SSH/FTP/VNC protocol auth + post-auth modules. 200+ modules incl. BloodHound auto-ingest, ESC1-15 scanning, PrintNightmare, LDAP relay.

11 2mo ago A 64 tokens original Apache-2.0

ntlm-relay

20

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

NTLM relay deep-dive — ntlmrelayx configuration matrix (SMB, LDAP, LDAPS, HTTP, RPC, IMAP, MSSQL), SMB-signing bypass, target selection (DC for DCSync, ADCS for cert, LAPS reader for cleartext), session relay vs cracking trade-off, multi-relay (forward auth from one victim to many).

11 2mo ago B 84 tokens original Apache-2.0

analyst

21

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Root pointer for the analyst's vulnerability research playbooks. Load this first at iteration start to see the full catalog of vuln-class and chain-building skills.

11 2mo ago A 33 tokens original Apache-2.0

auth-bypass

22

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Hunt authentication/authorization bypass in route guards, role checks, tenant boundaries, and state-machine transitions.

11 2mo ago A 25 tokens original Apache-2.0

bounty-hunting

23

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Bug bounty white-box hunting methodology. Load when the target is an open-source project with a security advisory program, bug bounty, or responsible disclosure policy.

11 2mo ago A 35 tokens original Apache-2.0

cred-reuse

24

MingyiSecLab/Mingyi-Atlas

Skill Claude CodeCodex

Build chains where leaked or weak credentials pivot across services to privileged access.

11 2mo ago A 18 tokens original Apache-2.0