All authors

Claude Skills by NoorQureshi
github.com/NoorQureshi206 skills0 installs21 views
- Tools MetasploitDrive Metasploit (msfconsole/msfrpcd) for the exploitation phase without hanging the toolchain — one-shot -x invocations, RPC daemon mode for persistent sessions, batch auxiliary runs. Load when a confirmed vuln maps to a public MSF module, you need exploit/multi/handler for a reverse shell, or meterpreter sessions must survive across steps. Signals: msfconsole, msf, meterpreter, LHOST/LPORT, "module for this CVE", exploit/multi/handler, session opened.Votes: 0GitHub stars: 20
- Tools NmapOperate nmap and masscan for port/service scanning of in-scope hosts — scan-type selection (SYN/connect/UDP), version and OS detection, NSE vuln scripts, output formats, and the masscan-wide-then-nmap-deep pattern. Load when recon surfaces hosts/IPs and you need open ports, service versions, or OS fingerprints. Signals: nmap, masscan, -sV -sC -O, --script vuln, -p1-65535, --rate, "dnet: Failed to open device", top-ports, -oX.Votes: 0GitHub stars: 20
- Tools NucleiOperate nuclei for template-based vulnerability scanning at scale — severity/tag selection, bulk targets, rate limiting, proxying, JSON output, and safe custom templates. Load when you have live hosts from recon and need known-CVE/misconfig/exposure sweeps, or when scanner hits need validation. Signals: nuclei, -severity critical,high, nuclei-templates, -tags cve, "9000+ templates", httpx | nuclei pipelines.Votes: 0GitHub stars: 20
- Tools SqlmapOperate sqlmap to confirm and exploit SQL injection — target selection from Burp requests, level/risk tuning, tamper scripts for WAF evasion, DB enumeration, and safe dump discipline. Load after a manual SQLi probe shows promise, or when automating confirmation across parameters. Signals: sqlmap, --batch --dbs, --tamper, --os-shell, "parameter is vulnerable", time-based blind, SLEEP(5), sqlmap resume.Votes: 0GitHub stars: 20
- Tradecraft Attack ChainOrchestrate a full multi-stage kill chain — recon → initial access → privilege escalation → lateral movement → objective — with phase gates, per-phase playbooks, and operating discipline. Load on pentest tasks that span stages: "get from external to domain admin", "full internal pentest", "I have a webshell, route me to the objective", red-team exercise planning. Single-stage tasks go straight to their domain skill; bug bounty never uses this.Votes: 0GitHub stars: 20
- Web Extension ReverseReverse engineer browser extensions (Chrome/Edge MV2/MV3, Firefox) for an authorized review: unpack .crx/.xpi, assess the permission surface, trace background/service-worker and content-script logic, and recover credential, signing, or traffic-handling behavior. Load on "analyze this extension", extension supply-chain or malicious-extension investigation, or keys hidden in chrome.storage. Signals: .crx, .xpi, manifest.json, chrome-extension://, <all_urls>, webRequestBlocking, declarativeNetRe...Votes: 0GitHub stars: 20