SnailSploit

61 mods across 2 repositories, 3.0k stars between them.

SnailSploit/Claude-Red

Skill Claude CodeCodex

Active Directory attack methodology for internal network red team engagements. Covers reconnaissance (BloodHound, PowerView, ADExplorer), credential abuse (Kerberoasting, ASREProasting, NTLM relay, LLMNR/NBT-NS poisoning), privilege escalation (ACL abuse, GPO abuse, unconstrained/constrained delegation), lateral…

3.0k 2d ago A 167 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

AI/LLM security offensive checklist: prompt injection, jailbreaking, model extraction, training data poisoning, adversarial inputs, LLM-assisted attack automation, and AI system reconnaissance. Use when assessing AI/ML systems, red-teaming LLMs, or researching AI attack vectors.

3.0k 2d ago C 0 tokens original MIT

offensive-api-abuse

03

SnailSploit/Claude-Red

Skill Claude CodeCodex

Advanced API exploitation methodology focused on business logic abuse and sophisticated attack patterns that bypass traditional security controls. Covers business logic bypass through API call chaining and workflow manipulation. Addresses GraphQL-specific attacks including batching for credential brute-force, query…

3.0k 2d ago B 184 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Comprehensive API security testing methodology covering REST, gRPC, and WebSocket attack surfaces. Addresses the full OWASP API Security Top 10 2023 including BOLA/IDOR, broken authentication, excessive data exposure, rate limiting bypass, BFLA, mass assignment, SSRF, and security misconfiguration. Includes…

3.0k 2d ago B 174 tokens original MIT

offensive-jwt

05

SnailSploit/Claude-Red

Skill Claude CodeCodex

JWT attack methodology for penetration testers. Covers algorithm confusion (alg:none, RS256→HS256), weak HMAC secret brute force, kid parameter injection (SQLi, path traversal), jku/x5u/jwk header injection, JWKS cache poisoning, JWS/JWE confusion, timing attacks, and mobile JWT storage extraction. Use when testing…

3.0k 2d ago A 97 tokens original MIT

offensive-oauth

06

SnailSploit/Claude-Red

Skill Claude CodeCodex

OAuth 2.0 attack checklist: authorization code interception, redirecturi bypass, CSRF on OAuth flow, state parameter abuse, open redirector chaining, token leakage via Referer, PKCE bypass, and scope escalation. Use when testing OAuth implementations in web apps or bug bounty.

3.0k 2d ago C 0 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Comprehensive CI/CD pipeline exploitation methodology covering GitHub Actions injection vectors (expression injection via PR titles and issue bodies, workflowrun event abuse, GITHUBTOKEN over-scoping, composite action supply chain compromise), Jenkins attack paths (Groovy sandbox escapes, script console remote code…

3.0k 2d ago D 206 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Comprehensive secrets extraction methodology targeting CI/CD environments across all major platforms. Covers environment variable extraction from build contexts, exploitation of vault and secrets-manager misconfigurations (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, GCP Secret Manager), runner and agent…

3.0k 2d ago F 188 tokens original MIT

offensive-cloud

09

SnailSploit/Claude-Red

Skill Claude CodeCodex

Cloud security attack methodology covering AWS, Azure, and GCP. Includes credential harvesting (IMDS, /.aws, env vars, leaked CI secrets, instance roles), enumeration with cloud-specific tools (pacu, ScoutSuite, Prowler, ROADtools, gcpenum), privilege escalation paths (IAM PassRole, AssumeRole chains, Lambda/Functions…

3.0k 2d ago B 238 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. Covers privileged container breakout via host filesystem mount and nsenter, Docker socket abuse through /var/run/docker.sock, Linux capability exploitation including CAPSYSADMIN, CAPSYSPTRACE, and CAPNETADMIN, cgroup v1…

3.0k 2d ago E 196 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Kubernetes cluster attack techniques covering the full attack lifecycle from initial foothold in a pod to cluster-wide compromise. Covers service account token theft and impersonation, RBAC misconfiguration exploitation including wildcard permissions and privilege escalation via role binding, direct etcd access for…

3.0k 2d ago F 232 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Systematic methodology for identifying and exploiting cryptographic implementation weaknesses in real-world applications. Covers padding oracle attacks against CBC-mode ciphers with PKCS7 padding (Vaudenay's original attack through modern padbuster automation), ECB mode exploitation including block cut-and-paste and…

3.0k 2d ago A 261 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Comprehensive methodology for auditing and exploiting TLS/SSL implementations and misconfigurations across network services and mobile applications. Covers protocol downgrade attacks including POODLE (CVE-2014-3566) against SSLv3 CBC padding, DROWN (CVE-2016-0800) cross-protocol attack leveraging SSLv2 export ciphers…

3.0k 2d ago A 332 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Full exploit development course roadmap and syllabus: weekly topics, recommended reading, lab setup, and learning path from vulnerability classes through advanced exploitation. Use to structure exploit dev training or onboard new researchers.

3.0k 2d ago B 0 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Exploit development operational guide: environment setup, debugging workflow, PoC development lifecycle, writing reliable exploits, using pwntools/pwndbg, heap exploitation techniques, and weaponization considerations. Use when actively developing exploits or setting up an exploit dev environment.

3.0k 2d ago A 0 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Security mitigation reference and bypass catalog: ASLR, DEP/NX, RELRO, stack canaries, CFI, sandboxing, seccomp. Covers both detection of enabled mitigations and known bypass techniques. Use when assessing target hardening or planning exploit mitigation bypasses.

3.0k 2d ago A 0 tokens original MIT

offensive-toctou

17

SnailSploit/Claude-Red

Skill Claude CodeCodex

Time-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and container layers. Covers symbolic-link races (open/access/stat split), file-descriptor races, fopen/realpath traversal races, /proc and procfs races, FUSE-backed slow-fs races to widen the window…

3.0k 2d ago C 202 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Anti-forensics and evidence destruction techniques for red team operators conducting authorized engagements. Covers log clearing on Windows (wevtutil, Clear-EventLog, ETW provider patching) and Linux (journal truncation, utmp/wtmp binary editing, syslog manipulation), timestamp manipulation via Timestomp and SetMACE…

3.0k 2d ago B 243 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Command and Control framework deployment, configuration, and operational tradecraft for red team engagements. Covers Cobalt Strike (malleable C2 profiles, Beacon types HTTP/HTTPS/DNS/SMB, Beacon Object Files for in-memory execution, sleep and jitter tuning, named pipe pivoting), Sliver (implant generation across…

3.0k 2d ago A 250 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Systematic bug identification methodology: source code review patterns, black-box testing strategies, taint analysis, dangerous function hunting, data flow tracing, and automated scanning setup. Use for code audits, bug bounty triage, or building vulnerability identification pipelines.

3.0k 2d ago C 0 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Week 2 of the exploit development curriculum. Covers fuzzing methodology: target selection, corpus generation, coverage-guided fuzzing with AFL++/libFuzzer, structured fuzzing, and triage/deduplication. Use when setting up fuzz campaigns, selecting harness strategies, or triaging fuzzer output.

3.0k 2d ago C 0 tokens original MIT

offensive-fuzzing

22

SnailSploit/Claude-Red

Skill Claude CodeCodex

Practical offensive fuzzing methodology covering target identification, fuzzer selection (AFL++, libFuzzer, Honggfuzz, Boofuzz, syzkaller), harness writing, corpus curation, mutation strategies, coverage measurement, and crash triage. Use when setting up or running fuzz campaigns against any target: file parsers…

3.0k 2d ago A 91 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Exploit development curriculum covering core vulnerability classes with real-world CVE case studies: stack/heap buffer overflows, use-after-free, integer overflows, format strings, type confusion, and race conditions. Use when learning or teaching vuln classes, researching specific CVE patterns, or building exploit…

3.0k 2d ago A 0 tokens original MIT

SnailSploit/Claude-Red

Skill Claude CodeCodex

Comprehensive red team operations methodology covering full engagement lifecycle from planning through reporting. Addresses engagement scoping and rules of engagement negotiation, multi-tier C2 infrastructure design with redirectors and domain fronting, malleable traffic profiles and beacon tradecraft, OPSEC…

3.0k 2d ago A 146 tokens original MIT