CuriousLearnerDev/Online_Tools-AI

一个面向 Web 版桌面 安全测试的 AI Agent 平台,集成侦察、分析、规划、工具调用与反馈学习,实现自主完成渗透测试工作流An AI Agent platform for web-based security testing, integrating reconnaissance, analysis, planning, tool orchestration, and feedback-driven learning to autonomously execute penetration testing workflows.

52Stars on the repository
59Mods indexed here, across every type
1mo agoLast push, which is what freshness is scored on
noneNo LICENSE: all rights reserved, so bodies are not copied

threat-modeling

49

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Threat model, security audit, find vulnerabilities, check security of my app, risk assessment, penetration test prep, analyze attack surface, what could an attacker exploit. Use this skill whenever a user wants holistic security analysis of a codebase, application, or project. MUST be invoked instead of analyzing…

not rated 52 +1 1mo ago A 178 tokens

binary-analysis

50

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Binary analysis and reverse engineering workflow using checksec, strings, binwalk, radare2, ropgadget, and gdb for CTF and vulnerability research.

not rated 52 +1 1mo ago A 35 tokens

cloud-audit

51

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Cloud and container security auditing workflow using prowler, trivy, kube-hunter, and docker-bench for AWS, GCP, Azure, Kubernetes, and container images.

not rated 52 +1 1mo ago A 38 tokens

exploitation

52

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Exploitation workflow using Metasploit, msfvenom payload generation, and Exploit-DB search — from vulnerability identification to shell.

not rated 52 +1 1mo ago A 30 tokens

nmap-recon

53

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Network reconnaissance workflow using nmap, masscan, and rustscan via HexStrike tools.

not rated 52 +1 1mo ago A 22 tokens

password-cracking

54

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Password hash identification, cracking, and credential brute-forcing using hashid, john, hashcat, hydra, medusa, and ophcrack.

not rated 52 +1 1mo ago A 34 tokens

smb-enum

55

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

SMB and Windows network enumeration workflow using nmap, smbmap, enum4linux, netexec, and nbtscan for share discovery, user enumeration, and lateral movement.

not rated 52 +1 1mo ago A 40 tokens

subdomain-enum

56

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Subdomain and DNS enumeration workflow using subfinder, amass, dnsenum, fierce, theharvester, gau, and waybackurls.

not rated 52 +1 1mo ago A 33 tokens

web-recon

57

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Web content discovery and technology fingerprinting using gobuster, ffuf, feroxbuster, katana, httpx, and wafw00f.

not rated 52 +1 1mo ago A 33 tokens

web-vuln

58

CuriousLearnerDev/Online_Tools-AI

Skill Claude CodeCodex

Web vulnerability scanning workflow covering SQLi, XSS, template injection, and generic CVE detection using nuclei, sqlmap, dalfox, nikto, and jaeles.

not rated 52 +1 1mo ago A 39 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: