Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Claude-Red — Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and exploit development. | Kitploit
Tools/GitHubGitHub/snailsploit/claude-red
Privilege EscalationExploitationWeb Application ExploitationPost-ExploitationWireless SecurityPenetration TestingLearning & EducationRed TeamingCurated ResourcesPayload DevelopmentAI Security
7.1k93713416 days agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
GitHub
snailsploit/claude-red

Claude-Red

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and exploit development.

View Repository

claude-red banner

claude-red

Offensive security skills for Claude — drop-in SKILL.md files that turn Claude into a context-aware red team operator.

License: MIT Skills Categories Stars Forks

Overview • Quickstart • Categories • Skill Index • Roadmap • Contributing


Overview

claude-red is a curated library of offensive security skills for the Claude Skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQL injection to shellcode, EDR evasion to ADCS abuse.

Drop a skill into your Claude environment and it behaves like a domain specialist: it knows the techniques, the tooling, the edge cases, and the escalation paths. Skills load on demand based on conversational triggers — you don't pay context for skills you aren't using.

Use cases: authorized red team engagements, bug bounty triage, security research, CTF preparation, operator training, and methodical attack surface exploration.

for our actual research using skills -> https://snailsploit.com

Quickstart

Claude Skills System (Recommended)

git clone https://github.com/SnailSploit/claude-red ~/.claude/skills/claude-red

Claude auto-loads matching skills based on conversational triggers (e.g., mentioning SQL injection loads offensive-sqli).

To install a single category:

git clone --filter=blob:none --sparse https://github.com/SnailSploit/claude-red
cd claude-red && git sparse-checkout set Skills/web Skills/active-directory

Claude Code

cat Skills/web/offensive-sqli/SKILL.md | claude --system-file -

cat Skills/active-directory/**/SKILL.md | claude --system-file -

Claude.ai (Manual)

Paste the contents of a SKILL.md into a Project's system prompt or prepend it to your conversation.

Install Script

./install.sh                           # interactive
./install.sh --target ~/.claude/skills # explicit target
./install.sh --category web            # single category

Categories

CategorySkillsFocus
Web Application16OWASP Top 10, business logic, advanced web vulnerability classes
Auth & Identity2JWT exploitation, OAuth/OIDC abuse
Active Directory1On-prem AD attack methodology
Wireless14802.11, WPA2/3, EAP, WPS, evil-twin, BLE, Zigbee, Z-Wave, LoRa, sub-GHz
Cloud1AWS, Azure, GCP attack paths
Mobile1Android and iOS application testing
IoT & Embedded1Hardware, firmware, RTOS, ICS/OT
Infrastructure & Red Team7Initial access, EDR evasion, advanced red team operations, Windows internals
Exploit Development6Stack/heap corruption, ROP, mitigations, crash analysis, TOCTOU
Fuzzing & Vulnerability Research4libFuzzer, AFL++, coverage-guided fuzzing, vulnerability taxonomy
Reconnaissance2OSINT tooling and structured intelligence collection
API Security2REST/gRPC/WebSocket testing, business logic abuse
Container & Kubernetes2Container escape, Kubernetes cluster exploitation
CI/CD & Pipeline2Pipeline exploitation, secrets extraction
Cryptography2Cryptographic implementation attacks, TLS/SSL
Privilege Escalation2Linux and Windows privilege escalation
Post-Exploitation3Lateral movement, persistence mechanisms, data exfiltration
Forensics & C22Anti-forensics tradecraft, C2 framework operations
Supply Chain2Supply chain attacks, dependency confusion
Social Engineering2Phishing campaigns, physical/vishing/smishing
Network Attacks1Layer 2/3 attacks, MITM, protocol poisoning
AI Security1Prompt injection, jailbreaking, RAG poisoning
Utility2Fast triage checklists, professional reporting

Skill Index

Web Application

Skills/web/

Download Tool