liuxinye23/CyberStrikeAI

INNP - AI-native security testing platform with agent orchestration, C2 framework, MinerU knowledge base, and MCP integration

0Stars on the repository
57Mods indexed here, across every type
1mo agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

find-skills

01

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Helps users discover and install agent skills when they ask questions like "how do I do X", "find a skill for X", "is there a skill that can...", or express interest in extending capabilities. This skill should be used when the user is looking for functionality that might exist as an installable skill.

not rated 0 1mo ago A 67 tokens copy · 81% Apache-2.0

api-contract-bundle

02

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Bundle skill for authorized API contract and trust-boundary review. Use when requests involve OpenAPI or Swagger specs, JSON APIs, schema drift, auth declarations, token handling, TLS assumptions, or dependency-driven API risk and Codex should coordinate the relevant review skills.

not rated 0 1mo ago A 57 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing skill for application programming interfaces, the endpoints software uses to exchange data and actions.

not rated 0 1mo ago A 13 tokens original Apache-2.0

auth-session-review

04

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide for reviewing login, logout, password recovery, multi-factor authentication, cookies, tokens, permissions, and cross-site request protections.

not rated 0 1mo ago A 31 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for business-logic flaws, which are mistakes in how an application’s rules and process steps are designed.

not rated 0 1mo ago B 16 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A cloud-security audit guide for checking the safety of AWS, Azure, and Google Cloud environments. It covers access rights, networks, data protection, compliance, and audit logs.

not rated 0 1mo ago A 15 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A container-security testing guide for Docker and Kubernetes, technologies used to package and run applications. It covers image contents, running-container settings, and Kubernetes permissions and network rules.

not rated 0 1mo ago A 14 tokens original Apache-2.0

csrf-testing

08

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for CSRF, or cross-site request forgery, where a malicious site tricks a logged-in browser into sending unwanted actions to another site.

not rated 0 1mo ago B 18 tokens original Apache-2.0

ctf-binary-bundle

09

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Bundle skill for CTF binary triage and solve routing. Use when the prompt mentions ELF, nc services, memory corruption, WASM reversing, native binaries, or uncertain binary challenge direction and Codex should coordinate the core CTF binary skills before deeper specialization.

not rated 0 1mo ago A 59 tokens original Apache-2.0

ctf-skills

10

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A general workflow for solving CTF challenges, which are security puzzles that award a hidden flag when solved. It first sorts a challenge into Web, Crypto, Pwn, Reverse, Forensics, or Misc categories.

not rated 0 1mo ago A 47 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

An example security-testing skill package with instructions, scripts, reference files, and assets, demonstrated through Eino and HTTP interfaces.

not rated 0 1mo ago A 48 tokens copy · 100% Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A code-review guide for checking package versions, lock files, container images, build scripts, and where software dependencies come from.

not rated 0 1mo ago A 27 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide to testing deserialization vulnerabilities, which can occur when software turns untrusted saved data back into objects.

not rated 0 1mo ago A 16 tokens original Apache-2.0

elf-pwn-triage

14

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass guide for analysing ELF programs, the executable format commonly used on Linux, in capture-the-flag exploitation challenges.

not rated 0 1mo ago A 39 tokens original Apache-2.0

file-upload-testing

15

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide for testing whether a website’s file-upload feature safely checks file names, contents, types, sizes, and storage paths.

not rated 0 1mo ago B 14 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Bundle skill for digital forensics and artifact-first triage. Use when requests involve PCAPs, stego, suspicious images, metadata, extracted files, or mixed forensic artifacts and Codex should coordinate the initial triage skills before deeper analysis.

not rated 0 1mo ago A 57 tokens original Apache-2.0

idor-testing

17

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide to testing IDOR, a web security flaw where changing a user-supplied identifier can expose someone else’s file or record. It covers checks for horizontal access between users and vertical access to administrator resources.

not rated 0 1mo ago A 18 tokens original Apache-2.0

incident-response

18

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A structured process for handling security incidents, from detecting a problem through containment, cleanup, recovery, and lessons learned.

not rated 0 1mo ago A 12 tokens original Apache-2.0

jwt-ctf-review

19

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A workflow for reviewing JWTs and other login or session tokens in CTF challenges. JWTs are signed text tokens that can carry information such as a user role or expiration time.

not rated 0 1mo ago A 37 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for LDAP injection, where unescaped user input changes a directory search or login query. LDAP is a system commonly used to store and look up users and permissions.

not rated 0 1mo ago A 16 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A methodology for testing the security of Android and iOS mobile applications. It covers the app itself, stored and transmitted data, authentication, permissions, sessions and network communications.

not rated 0 1mo ago A 15 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide for testing whether web APIs—the endpoints software uses to exchange data—handle identity, permissions, input, business rules, and errors safely.

not rated 0 1mo ago A 17 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A review process for OpenAPI or Swagger documents, which describe how JSON-based web APIs work. It checks authentication, permissions, input fields, errors and high-impact operations against the documented contract.

not rated 0 1mo ago A 35 tokens original Apache-2.0

pcap-triage

24

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass guide for examining PCAP files, which are recorded network conversations, and network logs from capture-the-flag challenges.

not rated 0 1mo ago A 42 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: