mukul975/Threatswarm

27 scope-enforced AI agents that run the full pentest kill-chain (recon → exploit → post-ex → DFIR → report) as a one-command Claude Code plugin. Backed by 754 MITRE-mapped skills.

77Stars on the repository
43Mods indexed here, across every type
4mo agoLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

ad-attacks

01

mukul975/Threatswarm

Skill Claude CodeCodex

Active Directory attack reference — BloodHound Cypher queries, Kerberos attack decision tree, ACE/ACL abuse, ADCS ESC1-8, and AD misconfig checklist.

not rated 77 +2 4mo ago A 39 tokens original MIT

exploit-db

02

mukul975/Threatswarm

Skill Claude CodeCodex

Exploit-DB and searchsploit reference — EDB→Metasploit module mappings, PoC reliability rubric, CVSS tier quick reference, and searchsploit usage patterns.

not rated 77 +2 4mo ago A 40 tokens original MIT

mitre-attack

03

mukul975/Threatswarm

Skill Claude CodeCodex

MITRE ATT&CK framework reference — tactics, techniques, and tool-to-TTP mappings for pentest documentation and detection rule writing.

not rated 77 +2 4mo ago A 31 tokens original MIT

report-templates

04

mukul975/Threatswarm

Skill Claude CodeCodex

CVSS 3.1 vector examples, executive summary template, full technical finding template, and remediation language bank for pentest reports.

not rated 77 +2 4mo ago B 30 tokens original MIT

wordlists

05

mukul975/Threatswarm

Skill Claude CodeCodex

SecLists path map, hashcat rules, CeWL usage, and custom wordlist generation for all attack categories.

not rated 77 +2 4mo ago A 25 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: