apiscan
API security audit — REST, GraphQL, JWT analysis, parameter discovery
Network service enumeration — SMB, RPC, NetBIOS, LDAP
> /plugin marketplace add ogrodev/fsociety > /plugin install fsociety@ogrodev-fsociety
How it fires
How this command gets triggered: by you, by Claude, or both.
/enumerateContext preview
What this command does when you run it.
Network service enumeration — SMB, RPC, NetBIOS, LDAP
description: Network service enumeration — SMB, RPC, NetBIOS, LDAP allowed-tools: ToolSearch, Bash, Read, Write argument-hint: <target-ip>
> **Storage Policy**: ALL output files MUST be saved in the project directory. NEVER write to `/tmp/` or any system temporary directory.
Target: `$ARGUMENTS`
Enumerate network services on the target using Hexstrike MCP tools.
Use ToolSearch to load:
Run `nbtscan_netbios` to discover NetBIOS names, workgroups, and MAC addresses on the target or subnet.
Run `enum4linux_ng_advanced` for comprehensive enumeration:
Then run `smbmap_scan` to check:
Run `rpcclient_enumeration` for:
Run `netexec_scan` across protocols (SMB, SSH, WinRM, LDAP, MSSQL) to:
Save findings to `enumerate-{target}.md` in the project directory, organized by:
Multi-plugin marketplace for Claude Code offensive security plugins
Repo: ogrodev/fsociety
API security audit — REST, GraphQL, JWT analysis, parameter discovery
Archive or list previous engagement snapshots
Password brute force and hash cracking against target services
Resume or execute an attack campaign with progress tracking
Show running scans, system health, and engagement status