allsmog/blackbox-claude-plugin

Claude Code plugin for black-box and grey-box penetration testing on HackTheBox machines

5Stars on the repository
38Mods indexed here, across every type
6mo agoLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

bb-ad

01

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Active Directory enumeration and attack techniques. Includes LDAP enumeration, Kerberos attacks (Kerberoasting, AS-REP Roasting), SMB attacks, and domain privilege escalation. Use this when targeting Windows domain environments.

5 6mo ago A 44 tokens original MIT

bb-enum

04

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Service-specific enumeration based on discovered ports. Automatically selects appropriate enumeration techniques for each service. Use after /bb-recon to deeply enumerate discovered services.

5 6mo ago A 33 tokens original MIT

bb-privesc

05

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Privilege escalation enumeration and exploitation for Linux and Windows systems. Automatically detects OS and runs appropriate enumeration tools (linpeas/winpeas). Use this after obtaining initial shell access.

5 6mo ago E 39 tokens original MIT

bb-recon

06

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Automated network reconnaissance against a target. Runs comprehensive port scanning with nmap, identifies services, and discovers attack surface. Use this as the first step when attacking an HTB machine.

5 6mo ago B 41 tokens original MIT

bb-setup

07

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Verify penetration testing environment and tool installation. Use this before starting an HTB machine to ensure all required tools are available.

5 6mo ago A 28 tokens original MIT

bb-shell

08

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Manage reverse shell listeners using tmux sessions. Start listeners, receive shells, send commands, and persist across sessions. Essential for maintaining access during exploitation.

5 6mo ago C 33 tokens original MIT

bb-web

10

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Comprehensive web application testing for HTTP/HTTPS services. Includes directory fuzzing, vulnerability scanning, technology fingerprinting, and common exploit checks. Use this when a web service is discovered.

5 6mo ago B 40 tokens original MIT

blackbox

11

allsmog/blackbox-claude-plugin

Command

Part of blackbox-htb

Full automated black-box penetration testing methodology for HTB machines. Runs all phases: setup verification, reconnaissance, enumeration, vulnerability identification, and exploitation guidance. Use this command when starting a new HTB machine challenge.

5 6mo ago B 45 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: