liuxinye23/CyberStrikeAI

INNP - AI-native security testing platform with agent orchestration, C2 framework, MinerU knowledge base, and MCP integration

0Stars on the repository
57Mods indexed here, across every type
1mo agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security review for finding exposed secrets and sensitive settings in websites, front-end files, backups, history pages, and public resources. It distinguishes usable passwords, keys, and tokens from harmless public identifiers.

not rated 0 1mo ago A 32 tokens original Apache-2.0

secure-code-review

26

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A checklist and method for reviewing code for security weaknesses. It covers input checks, safe output, authentication, permissions, encryption, error handling, logging, and common vulnerability patterns.

not rated 0 1mo ago A 14 tokens original Apache-2.0

security-automation

27

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-automation guide for organising repeated vulnerability scans, security tests, incident responses, and compliance checks.

not rated 0 1mo ago A 13 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-awareness training guide for teaching people how to recognize and avoid common security risks. It covers passwords, accounts, phishing emails, social engineering, data handling, and physical security.

not rated 0 1mo ago A 13 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A checklist for reviewing HTTP response headers, browser rules sent by a website that control scripts, cross-site access, caching, and page isolation.

not rated 0 1mo ago A 29 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A method for checking web applications for SQL injection, a flaw where user input can change a database query.

not rated 0 1mo ago A 15 tokens original Apache-2.0

ssrf-testing

31

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A guide to testing SSRF, a flaw where a server can be tricked into requesting a URL chosen by a user. It covers URL previews, webhooks, proxies, imports, image processing, and PDF generation.

not rated 0 1mo ago C 19 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A review guide for server-side template injection, where user-controlled text is mistakenly treated as template code by a web application. It is aimed at capture-the-flag challenges and deliberately vulnerable practice targets.

not rated 0 1mo ago A 36 tokens original Apache-2.0

stego-triage

33

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass skill for investigating hidden data in files used in capture-the-flag security puzzles. It checks images, audio, video, PDFs, archives, and containers for metadata, embedded files, appended data, and other unusual clues.

not rated 0 1mo ago A 41 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security review guide for HTTPS, certificates, redirects, HSTS, and TLS settings across websites and APIs. TLS is the security layer that protects connections between clients and servers.

not rated 0 1mo ago A 28 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security review skill for the life cycle of JWTs, API tokens, refresh tokens, and OAuth or OIDC credentials. It checks how credentials are issued, renewed, revoked, scoped, transmitted, and stored.

not rated 0 1mo ago A 27 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security assessment guide covering how to identify, verify, classify, and rate weaknesses in networks, hosts, applications, configurations, and source code.

not rated 0 1mo ago A 14 tokens original Apache-2.0

wasm-reverse-triage

37

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A first-pass workflow for CTF challenges involving WebAssembly, JavaScript, or browser-side checks. WebAssembly is a compact format that lets code run in a web browser, often alongside JavaScript.

not rated 0 1mo ago A 35 tokens original Apache-2.0

web-auth-bundle

38

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

Bundle skill for authorized web and API authentication assessment. Use when requests involve login flows, sessions, cookies, bearer tokens, refresh tokens, MFA, CSRF boundaries, or mixed browser/API auth and Codex should coordinate multiple auth-focused skills.

not rated 0 1mo ago A 53 tokens original Apache-2.0

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for XPath injection, a vulnerability where untrusted input changes an XPath query used to search XML data.

not rated 0 1mo ago A 16 tokens original Apache-2.0

xss-testing

40

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for cross-site scripting (XSS), an attack that makes a website run unwanted JavaScript in a visitor’s browser. It covers reflected, stored, and DOM-based XSS.

not rated 0 1mo ago C 15 tokens original Apache-2.0

xxe-testing

41

liuxinye23/CyberStrikeAI

Skill Claude CodeCodex

A security-testing guide for XXE, a flaw where an XML parser is tricked into reading files or making network requests. It covers XML inputs such as APIs, uploads, SOAP services, office documents, SVGs, and PDFs.

not rated 0 1mo ago A 19 tokens original Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: