active-directory-attac…
Use when attacking a Windows Active Directory domain — Kerberos roasting/delegation, coercion + NTLM/Kerberos relay (CVE-2025-33073), ADCS ESC1-16 (EKUwu),…
Use when creating or editing a skill in this offensive-claude repo — for the SKILL.md conventions (trigger descriptions, technique map, runnable scripts, OPSEC/detection, red-flags tables, flowchart rules)
$ npx -y skills add hypnguyen1209/offensive-claude --skill writing-offensive-skills --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/writing-offensive-skillsContext preview
The summary Claude sees to decide when to auto-load this skill.
Use when creating or editing a skill in this offensive-claude repo — for the SKILL.md conventions (trigger descriptions, technique map, runnable scripts, OPSEC/detection, red-flags tables, flowchart rules)
name: writing-offensive-skills description: Use when creating or editing a skill in this offensive-claude repo — for the SKILL.md conventions (trigger descriptions, technique map, runnable scripts, OPSEC/detection, red-flags tables, flowchart rules)
Conventions for authoring skills in this repo so the dispatcher can find them and operators can trust them. This adapts superpowers' skill conventions to offensive security.
**REQUIRED BACKGROUND:** superpowers:writing-skills (the general conventions) and superpowers:test-driven-development (skills are tested like code — baseline failure first).
The `description:` field decides whether the dispatcher loads the skill. Write **`Use when…`** triggering conditions and symptoms ONLY — never summarize the skill's workflow (a workflow summary makes Claude follow the description instead of reading the skill).
# BAD (summarizes workflow): description: Recon skill that enumerates subdomains then scans ports # GOOD (triggers only): description: Use when mapping a target's external attack surface — subdomains, hosts, exposed services
Third person, technology-specific only if the skill is. Verb-first / gerund names.
skills/<name>/ SKILL.md # thin router, <=180 lines references/ # per-technique deep-dives (theory + 2024-2026 + code + detection + OPSEC) scripts/ # runnable tooling (no placeholders)
**Domain (technique) skill** SKILL.md sections, in order: frontmatter → When to Activate → **Technique Map** (Technique | ATT&CK Txxxx | CWE | reference | script) → Quick Start → **OPSEC & Detection** table → Deep Dives (links into `references/`).
**Discipline skill** (a hard rule, e.g. finding/scope/opsec-discipline): Overview with the Iron Law → the rule → **Red Flags** (STOP signals) → **Rationalizations** table (excuse | reality). State "violating the letter is violating the spirit" and close loopholes explicitly.
2024-2026 currency (web-search-verified CVEs; no fabricated ids — mark unverified ones), runnable scripts, OPSEC + detection pairing, technique-level ATT&CK + CWE.
Only for non-obvious decision points / "where you might stop too early". Never for reference material (use tables), code (use blocks), or linear steps (use lists).
Name only, with explicit markers: `**REQUIRED:** scope-discipline`. Never `@`-link (force-loads, burns context). Frontmatter `references:`/`scripts:` list the files the skill ships.
A skill that enforces discipline must resist rationalization under pressure. Capture the excuses an agent makes without the skill, put each in the Rationalizations table, and re-check. Safety-relevant scripts get a `tests/` suite (run `pytest`) and an adversarial review before they're trusted.
A spec-driven offensive security framework for Claude Code — structured engagement workflows based on the Cyber Kill Chain, 31 kill-chain skills (multi-file progressive-disclosure) plus a discipline layer (a SessionStart dispatcher + 6 process/discipline
Repo: hypnguyen1209/offensive-claude
Use when attacking a Windows Active Directory domain — Kerberos roasting/delegation, coercion + NTLM/Kerberos relay (CVE-2025-33073), ADCS ESC1-16 (EKUwu),…
--- name: advanced-redteam-ops description: Use when designing C2 infrastructure or OPSEC for a long-haul red-team op — redirectors, malleable profiles,…
Use when red-teaming an agentic AI / LLM application — indirect & zero-click prompt injection, MCP tool poisoning, persistent memory poisoning,…
Use when attacking an AI/ML system or model — prompt injection & jailbreaks (Crescendo, Skeleton Key, Best-of-N), RAG/vector poisoning, agentic/MCP…
Use when building a client-side browser exploit — V8/JSC JIT type confusion to renderer R/W, V8 heap-sandbox escape, renderer-to-browser sandbox escape (Mojo…
Use when attacking or auditing a CI/CD pipeline or software supply chain — pwn requests, poisoned pipeline execution, compromised/mutable-tag actions,…