academic-paper-reviewe…
Simulates academic peer review, evaluating papers across Originality, Methodology, Results, and Writing to provide Major/Minor Revision recommendations with…
This skill should be used when the user asks to "search for exposed devices on the internet," "perform Shodan reconnaissance," "find vulnerable services using Shodan," "scan IP ranges with Shodan," or "discover IoT devices and open ports." It provides comprehensive guidance for
$ npx -y skills add zebbern/claude-code-guide --skill shodan-reconnaissance --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/shodan-reconnaissanceContext preview
The summary Claude sees to decide when to auto-load this skill.
This skill should be used when the user asks to "search for exposed devices on the internet," "perform Shodan reconnaissance," "find vulnerable services using Shodan," "scan IP ranges with Shodan," or "discover IoT devices and open ports." It provides comprehensive guidance for
name: shodan-reconnaissance description: This skill should be used when the user asks to "search for exposed devices on the internet," "perform Shodan reconnaissance," "find vulnerable services using Shodan," "scan IP ranges with Shodan," or "discover IoT devices and open ports." It provides comprehensive guidance for using Shodan's search engine, CLI, and API for penetration testing reconnaissance. metadata: author: zebbern version: "1.1"
Provide systematic methodologies for leveraging Shodan as a reconnaissance tool during penetration testing engagements. This skill covers the Shodan web interface, command-line interface (CLI), REST API, search filters, on-demand scanning, and network monitoring capabilities for discovering exposed services, vulnerable systems, and IoT devices.
# Using pip pip install shodan # Or easy_install easy_install shodan # On BlackArch/Arch Linux sudo pacman -S python-shodan
# Set your API key shodan init YOUR_API_KEY # Verify setup shodan info # Output: Query credits available: 100 # Scan credits available: 100
# View credits and plan info shodan info # Check your external IP shodan myip # Check CLI version shodan version
# Get all information about an IP shodan host 1.1.1.1 # Example output: # 1.1.1.1 # Hostnames: one.one.one.one # Country: Australia # Organization: Mountain View Communications # Number of open ports: 3 # Ports: # 53/udp # 80/tcp # 443/tcp
# Get honeypot probability score shodan honeyscore 192.168.1.100 # Output: Not a honeypot # Score: 0.3
# Simple keyword search (no credits consumed) shodan search apache # Specify output fields shodan search --fields ip_str,port,os smb
# Product-specific search shodan search product:mongodb # Search with multiple filters shodan search product:nginx country:US city:"New York"
# Get result count without consuming credits shodan count openssh # Output: 23128 shodan count openssh 7 # Output: 219
# Download 1000 results (default) shodan download results.json.gz "apache country:US" # Download specific number of results shodan download --limit 5000 results.json.gz "nginx" # Download all available results shodan download --limit -1 all_results.json.gz "query"
# Extract specific fields from downloaded data shodan parse --fields ip_str,port,hostnames results.json.gz # Filter by specific criteria shodan parse --fields location.country_code3,ip_str -f port:22 results.json.gz # Export to CSV format shodan parse --fields ip_str,port,org --separator , results.json.gz > results.csv
ip:1.2.3.4 # Specific IP address net:192.168.0.0/24 # Network range (CIDR) hostname:example.com # Hostname contains port:22 # Specific port asn:AS15169 # Autonomous System Number
country:US # Two-letter country code country:"United States" # Full country name city:"San Francisco" # City name state:CA # State/region postal:94102 # Postal/ZIP code geo:37.7,-122.4 # Lat/long coordinates
org:"Google" # Organization name isp:"Comcast" # ISP name
product:nginx # Software product version:1.14.0 # Software version os:"Windows Server 2019" # Operating system http.title:"Dashboard" # HTTP page title http.html:"login" # HTML content http.status:200 # HTTP status code ssl.cert.subject.cn:*.example.com # SSL certificate ssl:true # Has SSL enabled
vuln:CVE-2019-0708 # Specific CVE has_vuln:true # Has any vulnerability
has_screenshot:true # Has screenshot available screenshot.label:webcam # Screenshot type
# Scan single IP (1 credit per IP) shodan scan submit 192.168.1.100 # Scan with verbose output (shows scan ID) shodan scan submit --verbose 192.168.1.100 # Scan and save results shodan scan submit --filename scan_results.json.gz 192.168.1.100
# List recent scans shodan scan list # Check specific scan status shodan scan status SCAN_ID # Download scan results later shodan download --limit -1 results.json.gz scan:SCAN_ID
# List available protocols/modules shodan scan protocols
# Defa
Claude Code Guide - Setup, Commands, workflows, agents, skills & tips-n-tricks from beginner to power user!
Repo: zebbern/claude-code-guide
Simulates academic peer review, evaluating papers across Originality, Methodology, Results, and Writing to provide Major/Minor Revision recommendations with…
This skill should be used when the user asks to "attack Active Directory", "exploit AD", "Kerberoasting", "DCSync", "pass-the-hash", "BloodHound enumeration",…
This skill should be used when the user asks to "test API security", "fuzz APIs", "find IDOR vulnerabilities", "test REST API", "test GraphQL", "API…
Generate multiple radically different interface designs for a module using parallel sub-agents. Use when user wants to design an API, explore interface…
Interactive system flow tracing across CODE, API, AUTH, DATA, NETWORK layers with SQLite persistence and Mermaid export. Use for security audits, compliance…
Authentication patterns: session vs JWT vs OAuth comparison, provider selection (NextAuth, Clerk, Supabase Auth), security checklist, and common mistakes. Use…