Skill Claude CodeCodex
Human-like mouse, keyboard and scroll behavior for behavioral bot bypass.
Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh
Recon Skills is a pack of security-testing skills covering reconnaissance, web applications, APIs, authentication, vulnerability validation, cloud infrastructure, and reporting. Security professionals use it for authorized assessments of systems they own or have written permission to test. The catalogue entries are individual skills from the pack.
This repository also configures its own agents. See what recon-skills tells them →
Skill Claude CodeCodex
Human-like mouse, keyboard and scroll behavior for behavioral bot bypass.
Skill Claude CodeCodex
Attack cameras via RTSP, ONVIF, Axis config when 554 open.
Skill Claude CodeCodex
Analyze JS bundles and source maps for hardcoded secrets, API keys, JWTs, and internal endpoints.
Skill Claude CodeCodex needs its repo
Decode, forge, brute JWTs when Bearer auth header is seen.
Skill Claude CodeCodex
Discover origin IPs behind CDN/WAF via favicon hash, DNS history, and SSL certs.
Skill Claude CodeCodex
Chain phpinfo to RCE via exec check when info.php exposed.
Skill Claude CodeCodex
Port scan /8-/24 with Masscan+RustScan and nmap banners.
Skill Claude CodeCodex
Nmap scan for MySQL, Redis, FTP, SSH, internal API services.
Skill Claude CodeCodex
Exploit public bucket Content-Type override for stored XSS on target origin.
Skill Claude CodeCodex
Enumerate Hikvision ISAPI endpoints on SCADA and IoT web interfaces.
Skill Claude CodeCodex
Mass scan for exposed env files, backups, and git configs.
Skill Claude CodeCodex
Hunt staging via crt.sh when production is WAF-hardened.
Skill Claude CodeCodex
Launch stealth Chromium with C++ fingerprint patches for anti-bot bypass.
Skill Claude CodeCodex
Map subdomains via crt.sh and subfinder at recon kickoff.
Skill Claude CodeCodex
Detect and verify subdomain takeover via dangling CNAME to unclaimed services.
Skill Claude CodeCodex
Spoof TLS ClientHello and JA4 fingerprints for browser impersonation.
Skill Claude CodeCodex
Exploit unauthenticated multi-step API flows without credentials.
Skill Claude CodeCodex needs its repo
Discover hidden virtual hosts via Host header fuzzing and SSL certificate parsing.
Skill Claude CodeCodex needs its repo
Screenshot all live hosts for rapid visual triage and technology fingerprinting.
Skill Claude CodeCodex
Sensitive file scanning, path traversal bypass, vHost enum, .env extract, log mining, Varnish detect.
Skill Claude CodeCodex
Hunt WP plugins via REST, exploit CVEs when version known.
Skill Claude CodeCodex
Batch WP recon: users, CORS, XMLRPC, leaks across domains.
Skill Claude CodeCodex
Scan WordPress REST API plugin endpoints for unauthenticated state-changing operations — discover write endpoints (POST/PUT/PATCH/DELETE) exposed without auth, enumerate all plugin routes, and test for unauthorized content publishing, settings modification, and data leakage.
Skill Claude CodeCodex
Exploit XMLRPC multicall, pingback for brute force and SSRF.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: