cti commands

45 tagged cti, measured the same way as everything else here.

Browse within: ai-security 37bug-bounty 37bugcrowd 37claude-ai 37claude-code-skill 8cyber-threat-intelligence 8digital-forensics 8investigation 8

bypass-403

01

Awarexone/Agentic-Bug-Hunter

Command

Probe a 403/401 endpoint with the most-paid bypass tricks (header injection, path encoding, method swap, WAF fingerprint, vendor-specific). Wraps byp4xx when installed; otherwise runs a built-in matrix of 38+ techniques. Usage: /bypass-403 | /bypass-403 -l.

4.7k +30 today A 0 tokens original MIT

spray

02

Awarexone/Agentic-Bug-Hunter

Command

Password spray with hard guards — typed-hostname confirmation, lockout warning, audit log. Modes: http-form (custom login page), oauth (password grant), o365 + okta (via TREVORspray). Default delay 30min/round + 60s jitter. Usage /spray --mode --users --passes.

4.7k +30 today A 0 tokens original MIT

web3-audit

03

Awarexone/Agentic-Bug-Hunter

Command

Smart contract security audit — runs through 10 bug class checklist (accounting desync, access control, incomplete path, off-by-one, oracle errors, ERC4626, reentrancy, flash loan, signature replay, proxy/upgrade). Applies pre-dive kill signals first. Generates Foundry PoC template for confirmed findings. Usage…

4.7k +30 today A 0 tokens original MIT

cti-case

04

7onez/cti-expert

Command

Run the full deterministic pipeline on one or more seeds: collect, ingest, prior-overlap, risk, cluster, ICD-203 assessment. Usage: /cti-case [seed...].

584 4d ago A 48 tokens

cti-check

05

7onez/cti-expert

Command

False-positive control — is this indicator a real operator link or shared noise? Run BEFORE clustering on anything. Usage: /cti-check.

584 4d ago A 34 tokens

cti

06

7onez/cti-expert

Command

THE ENTRY POINT for cti-expert. Investigate any target — domain, IP, email, username, phone, wallet, hash or APK. Routes to the right chain automatically. Usage: /cti [--deep|--quick|--passive].

584 4d ago A 59 tokens