暂未收录效果图
查看技能说明AutoCVE
larlarua
Agent-driven automated CVE discovery platform for source code auditing, vulnerability verification, and report generation.
OPENAGENTSKILL / DIRECTORY
为下一项任务找到合适的技能。探索适用于 Codex、Claude Code、Cursor 等 Agent 的工具。
52 Skills
搜索结果: 52
暂未收录效果图
查看技能说明larlarua
Agent-driven automated CVE discovery platform for source code auditing, vulnerability verification, and report generation.
暂未收录效果图
查看技能说明transilienceai
CVE research, standalone PoC script and report generation. Given a CVE ID, researches NVD and advisories, generates a safe Python PoC, and writes a detailed vulnerabilit…
暂未收录效果图
查看技能说明sandbaseai
Look up Common Vulnerabilities and Exposures (CVEs) with severity scores, affected software, exploitability status, and remediation guidance. Essential for security rese…
暂未收录效果图
查看技能说明Dependency auditing, CVE detection, configuration security review, CVSS scoring, and prioritized vulnerability reporting
暂未收录效果图
查看技能说明mergebase
A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is…
暂未收录效果图
查看技能说明hackersatyamrastogi
React2Shell Ultimate - The most comprehensive CVE-2025-66478 Scanner for Next.js RSC RCE vulnerability. Multi-mode detection, WAF bypass, local scanning.
暂未收录效果图
查看技能说明elementalsouls
Hunting skill for csrf vulnerabilities. Built from 15 public bug bounty reports including modern variants — SameSite=Lax sibling-subdomain bypass (Argo CD CVE-2024-22424…
暂未收录效果图
查看技能说明elementalsouls
Hunt client-side DOM vulnerabilities — DOM Clobbering (overwrite JS globals via HTML injection), PostMessage hijacking (missing origin check), Service Worker abuse (inte…
暂未收录效果图
查看技能说明elementalsouls
External SSL VPN / remote-access appliance attack matrix — Cisco ASA/AnyConnect, Fortinet FortiGate/FortiOS, Citrix NetScaler/ADC, Palo Alto GlobalProtect, Pulse Secure…
暂未收录效果图
查看技能说明elementalsouls
Hunting skill for auth bypass vulnerabilities. Built from 12 public bug bounty reports across SAML XSW / parser-differential (GitHub Enterprise CVE-2025-25291/25292), SA…
暂未收录效果图
查看技能说明elementalsouls
Hunt CI/CD pipeline vulnerabilities — GitHub Actions workflow injection (pull_request_target Pwnrequest + ${{ }}-into-shell), self-hosted runner poisoning, OIDC trust-po…
暂未收录效果图
查看技能说明ghostsecurity
Ghost Security - Software Composition Analysis (SCA) scanner. Scans dependency lockfiles for known vulnerabilities, identifies CVEs, and generates findings with severity…
暂未收录效果图
查看技能说明dinosn
Autonomous, looping, multi-altitude security vulnerability hunting for source code using RAPTOR's inventory-first generate-judge-verify methodology. Use by defa
暂未收录效果图
查看技能说明maddhruv
Vulnerability and security scan (defensive, your own repo): dependency CVEs plus risky code patterns (secrets, injection, weak authz), severity x reachability triaged an…
暂未收录效果图
查看技能说明jMerta
Use when the user asks to update, bump, or migrate Java, Kotlin, Gradle, Maven, Node, or TypeScript dependencies; audit direct or transitive dependencies for CVEs or sec…
暂未收录效果图
查看技能说明harness
Create Harness STO security exemptions (waivers) for vulnerabilities found by SAST, SCA, DAST, secret, container, or IaC scanners. Works from both entry points