DorianGallo/hack-skills-local

[cyber security] Helping AI Agent become an awesome practical hacker!

5Stars on the repository
102Mods indexed here, across every type
3mo agoLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

DorianGallo/hack-skills-local

Skill Claude CodeCodex

401/403 bypass playbook. Use when encountering access-denied responses on admin panels, API endpoints, or restricted paths. Covers path manipulation, HTTP method tampering, header injection, protocol downgrade, and automated bypass tools.

not rated 5 3mo ago A 53 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Active Directory ACL abuse playbook. Use when exploiting misconfigured AD permissions including GenericAll, WriteDACL, DCSync rights, shadow credentials, LAPS reading, GPO abuse, and BloodHound-guided attack paths.

not rated 5 3mo ago A 54 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

AD Certificate Services attack playbook. Use when targeting misconfigured AD CS for privilege escalation via ESC1-ESC13 template abuse, NTLM relay to enrollment, CA officer abuse, and certificate-based persistence.

not rated 5 3mo ago A 47 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Kerberos attack playbook for Active Directory. Use when targeting AD authentication via AS-REP roasting, Kerberoasting, golden/silver/diamond tickets, delegation abuse, or pass-the-ticket attacks.

not rated 5 3mo ago A 48 tokens copy · 100% MIT

ai-ml-security

05

DorianGallo/hack-skills-local

Skill Claude CodeCodex

AI/ML security playbook. Use when assessing model supply chain attacks (pickle RCE, poisoned weights), adversarial examples, model poisoning, model stealing, data privacy attacks (membership inference, model inversion), and autonomous agent security risks.

not rated 5 3mo ago B 53 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Android pentesting playbook. Use when testing Android applications for SSL pinning bypass, exported component abuse, WebView vulnerabilities, intent redirection, root detection bypass, tapjacking, and backup extraction during authorized mobile security assessments.

not rated 5 3mo ago A 53 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Anti-debugging detection and bypass playbook. Use when reversing protected binaries that detect debuggers via ptrace, PEB flags, timing checks, or signal/exception handlers on Linux and Windows.

not rated 5 3mo ago A 46 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

API authentication and JWT abuse playbook. Use when testing bearer tokens, API keys, claim trust, header spoofing, rate limits, and API auth boundary weaknesses.

not rated 5 3mo ago A 41 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

API authorization and BOLA testing playbook. Use when APIs expose object identifiers, nested resources, hidden writable fields, or weak function-level authorization.

not rated 5 3mo ago A 36 tokens copy · 100% MIT

api-recon-and-docs

10

DorianGallo/hack-skills-local

Skill Claude CodeCodex

API reconnaissance and documentation review playbook. Use when discovering endpoints, schemas, versions, OpenAPI specs, hidden docs, and surface area for API testing.

not rated 5 3mo ago A 38 tokens copy · 100% MIT

api-sec

11

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Entry P1 category router for API security. Use when choosing between API recon, authorization, token abuse, and hidden-parameter workflows before any deeper API topic skill.

not rated 5 3mo ago A 36 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Arbitrary write to RCE playbook. Use when you have an arbitrary write primitive (from heap exploitation, format string, or OOB write) and need to convert it into code execution by targeting GOT, hooks, IOFILE vtable, exitfuncs, TLSdtorlist, modprobepath, .finiarray, or C++ vtables.

not rated 5 3mo ago B 80 tokens copy · 100% MIT

auth-sec

13

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Entry P1 category router for authentication and authorization. Use when testing login flows, sessions, object authorization, JWT, OAuth, CORS, CSRF, and enterprise SSO weaknesses before any deeper auth topic skill.

not rated 5 3mo ago A 46 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Authentication bypass testing playbook. Use when assessing login flows, password reset logic, account recovery, MFA bypass, token predictability, brute-force resistance, and session boundary flaws.

not rated 5 3mo ago A 43 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Binary protection bypass playbook. Use when identifying and bypassing ASLR, PIE, NX/DEP, stack canary, RELRO, FORTIFYSOURCE, CET, and MTE protections in ELF binaries to enable exploitation.

not rated 5 3mo ago A 52 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Browser and V8 exploitation playbook. Use when exploiting JavaScript engine vulnerabilities including JIT type confusion, incorrect bounds elimination, and V8 sandbox bypass to achieve renderer RCE and sandbox escape in Chrome/Chromium.

not rated 5 3mo ago A 50 tokens copy · 100% MIT

business-logic-vuln

17

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Entry P1 category router for business logic testing. Use when workflow abuse, race conditions, pricing flaws, or multi-step state attacks matter more than parser-level input injection.

not rated 5 3mo ago A 41 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Business logic vulnerability playbook. Use when reasoning about workflows, race conditions, price manipulation, coupon abuse, state machines, and multi-step authorization gaps.

not rated 5 3mo ago A 37 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Classical cipher analysis playbook. Use when encountering substitution ciphers, Vigenere, transposition, XOR, or encoded text in CTF challenges that requires frequency analysis, Kasiski examination, or known-plaintext cryptanalysis.

not rated 5 3mo ago A 53 tokens copy · 100% MIT

clickjacking

20

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Clickjacking playbook. Use when testing whether target pages can be framed, whether X-Frame-Options or CSP frame-ancestors are properly configured, and whether UI redress attacks can trigger sensitive actions.

not rated 5 3mo ago A 47 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Command injection playbook. Use when user input may reach shell commands, process execution, converters, import pipelines, or blind out-of-band command sinks.

not rated 5 3mo ago B 36 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Code obfuscation analysis and deobfuscation playbook. Use when reversing binaries protected by junk code, opaque predicates, self-modifying code, control flow flattening, VM protection, or string encryption.

not rated 5 3mo ago A 51 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

Container escape playbook. Use when operating inside a Docker container, LXC, or Kubernetes pod and need to escape to the host via privileged mode, capabilities, Docker socket, cgroup abuse, namespace tricks, or runtime vulnerabilities.

not rated 5 3mo ago C 52 tokens copy · 100% MIT

DorianGallo/hack-skills-local

Skill Claude CodeCodex

CORS misconfiguration testing playbook. Use when analyzing cross-origin trust, credentialed browser reads, origin reflection, preflight policy bugs, and browser-based access to authenticated APIs.

not rated 5 3mo ago A 43 tokens copy · 100% MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: