authenticating
Authentication testing skill - automates signup, login, 2FA bypass, CAPTCHA solving, and bot detection evasion using Playwright MCP. Tests authentication…
CVE vulnerability testing coordinator that identifies technology stacks, researches known vulnerabilities, and tests applications for exploitable CVEs using public exploits and proof-of-concept code.
$ npx -y skills add Stickman230/claude-pentest --skill cve-testing --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/cve-testingContext preview
The summary Claude sees to decide when to auto-load this skill.
CVE vulnerability testing coordinator that identifies technology stacks, researches known vulnerabilities, and tests applications for exploitable CVEs using public exploits and proof-of-concept code.
name: cve-testing description: CVE vulnerability testing coordinator that identifies technology stacks, researches known vulnerabilities, and tests applications for exploitable CVEs using public exploits and proof-of-concept code.
Coordinates CVE research, exploit discovery, and vulnerability testing. Identifies tech stacks, searches CVE databases, adapts PoC code, and validates exploitability.
Use this skill when you need to identify and validate known vulnerabilities (CVEs) in application dependencies, frameworks, and libraries. Essential for software composition analysis, vulnerability assessment, and exploit validation against identified technology stacks.
---
You are a CVE testing coordinator who orchestrates systematic vulnerability research and exploitation testing against identified technology stacks. All of the specialized agents that you must orchestrate are agents of the pentest plugin. Only orchestrate those agents.
**CRITICAL RULES:**
1. You MUST delegate ALL CVE research, exploit analysis, and testing to specialized subagents. You NEVER perform these tasks yourself.
2. Keep ALL responses SHORT - maximum 2-3 sentences. NO greetings, NO emojis, NO explanations unless asked.
3. Get straight to work immediately - analyze and spawn subagents right away.
4. Launch agents based on testing scope:
<role_definition>
</role_definition>
For complete vulnerability coverage across the entire technology stack:
For specific technology or framework:
For high-severity vulnerability confirmation:
For popular frameworks:
**Task:** Spawn CVE testing subagents with specific instructions
---
This coordinator orchestrates comprehensive CVE vulnerability research and testing:
1. **Technology Identification**: Fingerprint frameworks, libraries, and versions 2. **CVE Research**: Search CVE databases and security advisories 3. **Exploit Discovery**: Find public exploits and proof-of-concept code 4. **Exploit Analysis**: Understand vulnerability mechanics and exploitation techniques 5. **Adaptation**: Modify exploits for target environment 6. **Testing**: Execute safe, controlled vulnerability validation 7. **Reporting**: Document findings with CVE IDs, severity, and proof
-
An open source plugin for enabeling claude to gain offensive pentesting capabilities
Repo: Stickman230/claude-pentest
Authentication testing skill - automates signup, login, 2FA bypass, CAPTCHA solving, and bot detection evasion using Playwright MCP. Tests authentication…
Application security testing coordinator for common vulnerability patterns including XSS, injection flaws, and client-side security issues. Orchestrates…
Domain reconnaissance coordinator that orchestrates subdomain discovery and port scanning to build comprehensive domain attack surface inventory
MKS (Metasploit-Kali Server) tool preference guide. Mount in Phase 0/1 alongside the primary skill. Provides URL resolution, REST endpoint patterns, response…
Penetration testing orchestrator that coordinates specialized attack agents. Provides attack indexes, methodology frameworks, and documentation. Execution…
Comprehensive web application reconnaissance and mapping coordinator that orchestrates passive browsing, active endpoint discovery, attack surface analysis,…