Skip to content
KitploitKITPLOIT
أدواتعمليات الاستغلالالمدونة
Log in
إرسال
أدواتعمليات الاستغلالالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

الخلاصاتاتصالالخصوصية© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
Claude-Red — Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and exploit development. | Kitploit
أدوات/GitHubGitHub/snailsploit/claude-red
Privilege EscalationExploitationWeb Application ExploitationPost-ExploitationWireless SecurityPenetration TestingLearning & EducationRed TeamingCurated ResourcesPayload DevelopmentAI Security
GitHubsnailsploit/claude-red

Claude-Red

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and exploit development.

عرض المستودع
7.1k937134منذ 16 أيامتمت المراجعة من قبل Kitploit

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة
المحتوى غير متوفر باللغة المطلوبة. عرض النسخة الإنجليزية.

claude-red banner

claude-red

Offensive security skills for Claude — drop-in SKILL.md files that turn Claude into a context-aware red team operator.

License: MIT Skills Categories Stars Forks

Overview • Quickstart • Categories • Skill Index • Roadmap • Contributing


Overview

claude-red is a curated library of offensive security skills for the Claude Skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQL injection to shellcode, EDR evasion to ADCS abuse.

Drop a skill into your Claude environment and it behaves like a domain specialist: it knows the techniques, the tooling, the edge cases, and the escalation paths. Skills load on demand based on conversational triggers — you don't pay context for skills you aren't using.

Use cases: authorized red team engagements, bug bounty triage, security research, CTF preparation, operator training, and methodical attack surface exploration.

for our actual research using skills -> https://snailsploit.com

Quickstart

Claude Skills System (Recommended)

git clone https://github.com/SnailSploit/claude-red ~/.claude/skills/claude-red

Claude auto-loads matching skills based on conversational triggers (e.g., mentioning SQL injection loads offensive-sqli).

To install a single category:

git clone --filter=blob:none --sparse https://github.com/SnailSploit/claude-red
cd claude-red && git sparse-checkout set Skills/web Skills/active-directory

Claude Code

cat Skills/web/offensive-sqli/SKILL.md | claude --system-file -

cat Skills/active-directory/**/SKILL.md | claude --system-file -

Claude.ai (Manual)

Paste the contents of a SKILL.md into a Project's system prompt or prepend it to your conversation.

Install Script

./install.sh                           # interactive
./install.sh --target ~/.claude/skills # explicit target
./install.sh --category web            # single category

Categories

CategorySkillsFocus
Web Application16OWASP Top 10, business logic, advanced web vulnerability classes
Auth & Identity2JWT exploitation, OAuth/OIDC abuse
Active Directory1On-prem AD attack methodology
Wireless14802.11, WPA2/3, EAP, WPS, evil-twin, BLE, Zigbee, Z-Wave, LoRa, sub-GHz
Cloud1AWS, Azure, GCP attack paths
Mobile1Android and iOS application testing
IoT & Embedded1Hardware, firmware, RTOS, ICS/OT
Infrastructure & Red Team7Initial access, EDR evasion, advanced red team operations, Windows internals
Exploit Development6Stack/heap corruption, ROP, mitigations, crash analysis, TOCTOU
Fuzzing & Vulnerability Research4libFuzzer, AFL++, coverage-guided fuzzing, vulnerability taxonomy
Reconnaissance2OSINT tooling and structured intelligence collection
API Security2REST/gRPC/WebSocket testing, business logic abuse
Container & Kubernetes2Container escape, Kubernetes cluster exploitation
CI/CD & Pipeline2Pipeline exploitation, secrets extraction
Cryptography2Cryptographic implementation attacks, TLS/SSL
Privilege Escalation2Linux and Windows privilege escalation
Post-Exploitation3Lateral movement, persistence mechanisms, data exfiltration
Forensics & C22Anti-forensics tradecraft, C2 framework operations
Supply Chain2Supply chain attacks, dependency confusion
Social Engineering2Phishing campaigns, physical/vishing/smishing
Network Attacks1Layer 2/3 attacks, MITM, protocol poisoning
AI Security1Prompt injection, jailbreaking, RAG poisoning
Utility2Fast triage checklists, professional reporting

Skill Index

Web Application

Skills/web/

تنزيل الأداة