Skip to content
KitploitKITPLOIT
HerramientasExploitsBlog
Log in
Enviar
HerramientasExploitsBlog
Enviar

¡Herramientas de Hacking, PenTest y Ciberseguridad para tu Arsenal de Seguridad!

Kitploit es un directorio de herramientas de hacking, ciberseguridad y pentesting. Descubre las últimas actualizaciones de proyectos para encontrar vulnerabilidades, analizar sistemas, automatizar pruebas y fortalecer tu seguridad.

FeedsContactoPrivacidad© 2026 Kitploit

Directorio de Herramientas

Categorías

Ver todas las categorías
Loading categories
Herramientas/GitHubGitHub/snailsploit/claude-red
Privilege EscalationExploitationWeb Application ExploitationPost-ExploitationWireless SecurityPenetration TestingLearning & EducationRed TeamingCurated ResourcesPayload DevelopmentAI Security
7.1k937134hace 16 díasRevisado por Kitploit

Más Populares

Ver todos →

Descubre las herramientas más usadas por nuestra comunidad.

Explora todas las herramientas

Explora nuestra colección de herramientas

Ver todas las herramientas →
Compartir
GitHub
snailsploit/claude-red

Claude-Red

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and exploit development.

Ver Repositorio
Contenido no disponible en el idioma solicitado. Mostrando versión en inglés.

claude-red banner

claude-red

Offensive security skills for Claude — drop-in SKILL.md files that turn Claude into a context-aware red team operator.

License: MIT Skills Categories Stars Forks

Overview • Quickstart • Categories • Skill Index • Roadmap • Contributing


Overview

claude-red is a curated library of offensive security skills for the Claude Skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQL injection to shellcode, EDR evasion to ADCS abuse.

Drop a skill into your Claude environment and it behaves like a domain specialist: it knows the techniques, the tooling, the edge cases, and the escalation paths. Skills load on demand based on conversational triggers — you don't pay context for skills you aren't using.

Use cases: authorized red team engagements, bug bounty triage, security research, CTF preparation, operator training, and methodical attack surface exploration.

for our actual research using skills -> https://snailsploit.com

Quickstart

Claude Skills System (Recommended)

git clone https://github.com/SnailSploit/claude-red ~/.claude/skills/claude-red

Claude auto-loads matching skills based on conversational triggers (e.g., mentioning SQL injection loads offensive-sqli).

To install a single category:

git clone --filter=blob:none --sparse https://github.com/SnailSploit/claude-red
cd claude-red && git sparse-checkout set Skills/web Skills/active-directory

Claude Code

cat Skills/web/offensive-sqli/SKILL.md | claude --system-file -

cat Skills/active-directory/**/SKILL.md | claude --system-file -

Claude.ai (Manual)

Paste the contents of a SKILL.md into a Project's system prompt or prepend it to your conversation.

Install Script

./install.sh                           # interactive
./install.sh --target ~/.claude/skills # explicit target
./install.sh --category web            # single category

Categories

CategorySkillsFocus
Web Application16OWASP Top 10, business logic, advanced web vulnerability classes
Auth & Identity2JWT exploitation, OAuth/OIDC abuse
Active Directory1On-prem AD attack methodology
Wireless14802.11, WPA2/3, EAP, WPS, evil-twin, BLE, Zigbee, Z-Wave, LoRa, sub-GHz
Cloud1AWS, Azure, GCP attack paths
Mobile1Android and iOS application testing
IoT & Embedded1Hardware, firmware, RTOS, ICS/OT
Infrastructure & Red Team7Initial access, EDR evasion, advanced red team operations, Windows internals
Exploit Development6Stack/heap corruption, ROP, mitigations, crash analysis, TOCTOU
Fuzzing & Vulnerability Research4libFuzzer, AFL++, coverage-guided fuzzing, vulnerability taxonomy
Reconnaissance2OSINT tooling and structured intelligence collection
API Security2REST/gRPC/WebSocket testing, business logic abuse
Container & Kubernetes2Container escape, Kubernetes cluster exploitation
CI/CD & Pipeline2Pipeline exploitation, secrets extraction
Cryptography2Cryptographic implementation attacks, TLS/SSL
Privilege Escalation2Linux and Windows privilege escalation
Post-Exploitation3Lateral movement, persistence mechanisms, data exfiltration
Forensics & C22Anti-forensics tradecraft, C2 framework operations
Supply Chain2Supply chain attacks, dependency confusion
Social Engineering2Phishing campaigns, physical/vishing/smishing
Network Attacks1Layer 2/3 attacks, MITM, protocol poisoning
AI Security1Prompt injection, jailbreaking, RAG poisoning
Utility2Fast triage checklists, professional reporting

Skill Index

Web Application

Skills/web/

Descargar herramienta