Skill Claude CodeCodex
Attack SAML SSO via XSW, signature strip, metadata extract.
Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh
Recon Skills is a pack of security-testing skills covering reconnaissance, web applications, APIs, authentication, vulnerability validation, cloud infrastructure, and reporting. Security professionals use it for authorized assessments of systems they own or have written permission to test. The catalogue entries are individual skills from the pack.
Skill Claude CodeCodex
Attack SAML SSO via XSW, signature strip, metadata extract.
Skill Claude CodeCodex
Use when two or more verified findings may combine into a higher-impact authorized attack path.
Skill Claude CodeCodex
Use when verified WordPress findings may combine into an authorized path to administrative or server control.
Skill Claude CodeCodex
Escape Docker containers to host root via 5 techniques.
Skill Claude CodeCodex
Use when classifying a verified web or WordPress behavior and selecting a related validation skill.
Skill Claude CodeCodex
Compare recon waves to find NEW, REGRESSED, PERSISTENT findings.
Skill Claude CodeCodex
High-precision Google dorks for exposed configs, secrets, and credentials -- real-world validated.
Skill Claude CodeCodex
7-phase pentest pipeline from passive recon to exploitation.
Skill Claude CodeCodex
Use when starting or restructuring an authorized external web and API assessment.
Skill Claude CodeCodex
Pick sectors, compile targets, batch recon for campaigns.
Skill Claude CodeCodex
Use when an API may expose data or privileged operations without authentication.
Skill Claude CodeCodex
Map organization IP infrastructure via ASN, CIDR, TLD expansion, and reverse DNS.
Skill Claude CodeCodex
Poison CDN cache or deceive when X-Cache header is detected.
Skill Claude CodeCodex
Identify CMS, frameworks, and server technology stacks on live hosts.
Skill Claude CodeCodex
Exploit WP CORS credential reflection for data theft.
Skill Claude CodeCodex
Deep pentest WP: SSRF, plugin CVE, JS mine, port scan chain.
Skill Claude CodeCodex
DMARC/SPF/DKIM check, email spoofing, SMTP test, and security header analysis.
Skill Claude CodeCodex
Mine errorlog for creds, paths, SQL when leak hunt finds.
Skill Claude CodeCodex
Exchange/OWA NTLM AD leak, spray attack when mail subdomain.
Skill Claude CodeCodex
Exploit Firebase/Supabase for data via JS config leak probe.
Skill Claude CodeCodex
Exploit Flask/Werkzeug debugger exposure for traceback and SECRET leaks.
Skill Claude CodeCodex
Find leaked API keys, tokens, and credentials in public GitHub repositories.
Skill Claude CodeCodex
Mine GitLab for secrets, CI tokens when subdomain found.
Skill Claude CodeCodex
Detect hardcoded passwords in HTML forms, JavaScript, and API responses.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: