Agent
Delegates to this agent when the user asks about malware analysis, reverse engineering, binary analysis, disassembly, debugging, sandbox analysis, static analysis, dynamic analysis, or suspicious file triage.
229 tagged cybersecurity, measured the same way as everything else here.
Browse within: ai-security 73ethical-hacking 59compliance 56framework 56ctf 55bug-bounty 53devsecops 45ai-ops 27open-source 27agentic-security 16attack-trees 16ai-pentesting 15pentesting 15awesome-list 13
Agent
Delegates to this agent when the user asks about malware analysis, reverse engineering, binary analysis, disassembly, debugging, sandbox analysis, static analysis, dynamic analysis, or suspicious file triage.
Agent
Delegates to this agent when the user asks about OSINT, reconnaissance, information gathering, target profiling, email harvesting, subdomain enumeration, social media recon, breach data, open source intelligence, or building a target dossier for authorized engagements.
Agent
Delegates to this agent when the user asks about threat modeling, attack surface analysis, STRIDE, DREAD, attack trees, data flow diagrams, trust boundaries, or security architecture review.
Agent
AppSec specialist who secures the software development lifecycle through threat modeling, secure code review, SAST/DAST integration, and developer security education that makes secure code the default.
Agent
Senior management consulting specialist for competitive analysis, market entry strategy, business model design, growth planning, organizational strategy, and strategic decision-making — translating complex market dynamics into clear, actionable strategies that create sustainable competitive advantage.
Agent
Expert change management specialist using ADKAR, Kotter, and Prosci frameworks to guide organizations through technology implementations, restructuring, culture transformation, and M&A integration — managing resistance, building adoption, and ensuring changes stick long after go-live.
Agent
Use for SecurityClaw orchestration, routing, skill-manifest, and investigation workflow changes.
Agent
The IDOR Agent (Insecure Direct Object Reference) is a specialist agent in BugTraceAI that detects and exploits IDOR vulnerabilities. It uses a WET→DRY two-phase pipeline with LLM-powered deduplication and optional deep exploitation analysis.
Agent
Inspects Content Security Policy headers for policy weaknesses and tests bypass vectors including unsafe-inline, unsafe-eval, wildcard sources, JSONP endpoints, Angular sandbox escape, and open redirects in whitelisted domains. Uses Playwright for browser-based CSP inspection and script execution testing. Follows…
Agent
Tests for SQL injection, NoSQL injection, and OS command injection across HTTP parameters, JSON bodies, and headers. Uses sqlmap for automated SQLi detection and curl for manual probing. Follows 4-phase workflow. Deployed by common-appsec-patterns skill coordinator.
Agent
Executes specific vulnerability tests. Follows 4-phase workflow (Recon → Experiment → Test → Verify), generates PoCs, captures evidence. Specialized by attack type.
Agent Claude Code
This document provides comprehensive guidance for designing, customizing, and maintaining agents in Agentic Oriented Development Kit.
Agent Claude Code
Quick reference for all agents in {{PROJECTNAME}}.
Agent Claude Code
BDD testing specialist using Cucumber/Gherkin framework. Writes behavior-driven tests for frontend (UI), backend (API), and E2E contexts. Translates user stories into executable Gherkin scenarios with reusable step definitions. Validates functionality through plain-English test specifications that serve as living…
Agent
An AI-assisted framework for security testing that uses many penetration-testing tools through the Model Context Protocol, a standard way for agents to use external tools.
Agent Claude Code
Use this agent when working with Docker containers, deployment configurations, troubleshooting containerization issues, or answering any DevOps-related questions about hosted applications. Examples: Context: User is having deployment issues running their MCP server in Docker. user: 'My Docker container keeps erroring…
lucasrosati/claude-security-agents
Agent
Defensive security specialist. Use to apply vulnerability fixes, security hardening, security headers implementation, rate limiting, and automated security tests. Works on top of red-team-scanner reports.
lucasrosati/claude-security-agents
Agent
Offensive security specialist. Use for vulnerability analysis, codebase pentesting, and OWASP Top 10 security report generation.
Agent Claude Code
Red Team penetration testing agent for HTB Expressway. Use when the user wants to attack or pentest the target machine. Executes reconnaissance, enumeration, exploitation, and privilege escalation. ALWAYS shows attack plan first before executing.
Agent Claude Code
Security report writer agent. Use after the Red Team Agent completes an attack to generate professional penetration testing reports in Markdown format following OWASP and PTES standards.
Agent
When making changes to this repository, follow this workflow.
Agent Claude Code
Core intelligence analyst. Applies structured analytic techniques, performs threat actor profiling, campaign tracking, and produces analytical judgments. The analytical brain of the platform.
Agent Claude Code
Conducts open-source intelligence research using web search and web fetch. The ONLY agent with WebSearch and WebFetch access.
Agent Claude Code
Peer reviews intelligence products for accuracy, analytical rigor, proper sourcing, TLP compliance, and tradecraft quality. The quality gate before dissemination.