Security AI Skills

1,735 open-source Security AI skills that teach any AI model a new workflow.

Search and filter AI skills

Showing 1,327-1,377 of 1,735 AI skills

AI skills directory results

affaan-m logo

Agent Architecture Audit

affaan-m
CommunityPopular

エージェントおよび LLM アプリケーション向けのフルスタック診断。12 層のエージェントスタックにおけるラッパーリグレッション、メモリ汚染、ツール規律の失敗、隠れた修復ループ、レンダリング破損を監査します。重要度順の発見事項とコードファーストの修正を生成します。エージェントアプリケーション、自律ループ、または LLM を活用した機能を構築する開発者に必須です。

39.1K
261.1K
Instructions
View
zhaoxuya520 logo

Competition Windows Pivot

zhaoxuya520
CommunityPopular

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Kerberos, WinRM, SMB, RDP, Windows credential material, replayable tickets, delegation edges, and host-to-host pivot…

5K
36.3K
2 files
View
mukul975 logo

Analyzing Malware Sandbox Evasion Techniques

mukul975
CommunityPopular

Detect sandbox and VM evasion techniques in malware samples by analyzing timing checks, VM/hypervisor artifact queries, user-interaction checks, and sleep-inflation patterns from Cuckoo or AnyRun…

4K
32.9K
2 files
View
wanshuiyin logo

Overleaf Sync

wanshuiyin
CommunityPopular

Two-way sync between a local paper directory and an Overleaf project, so ARIS audit/edit workflows stay on the local copy while collaborators edit in the Overleaf web UI. Use when user says "同步…

1.4K
16.3K
Instructions
View
trailofbits logo

Rust Review

trailofbits
OrganizationPopular

Performs comprehensive Rust security review for safe/unsafe boundary issues, memory safety in unsafe blocks, concurrency hazards, panic-induced DoS, FFI safety, and async runtime mistakes. Use when…

611
7.1K
Instructions
View
aws logo

Aws Secrets Manager

aws
OrganizationPopular

Secret safety for AWS Secrets Manager, secret management, credentials, API keys, tokens, and passwords. Prevents AI agents from directly fetching secret values and teaches runtime dynamic references…

311
2.7K
1 files
View
wgpsec logo

Java File Audit

wgpsec
OrganizationPopular

Java 源码文件操作类漏洞审计。当在 Java 白盒审计中需要检测文件相关漏洞时触发。 覆盖 5 类文件风险: 任意文件上传(MultipartFile/Servlet Part/类型绕过)、任意文件读取(NIO/IO流/路径穿越)、 任意文件写入(覆盖配置/WebShell落地)、归档提取漏洞(ZipInputStream/Zip Slip)、文件删除/重命名竞争。 需要…

242
1.7K
1 files
View
rmyndharis logo

Code Reviewer

rmyndharis
CommunityPopular

Elite code review expert specializing in modern AI-powered code analysis, security vulnerabilities, performance optimization, and production reliability. Masters static analysis tools, security…

264
1.6K
Instructions
View
microsoft logo

Azure Compliance

microsoft
OrganizationPopular

Run Azure compliance and security audits with azqr plus Key Vault expiration checks. Covers best-practice assessment, resource review, policy/compliance validation, and security posture checks. WHEN:…

246
1.5K
15 files
View
rshankras logo

Ci Cd Setup

rshankras
Community

Generate CI/CD configuration for automated builds, tests, and distribution of iOS/macOS apps. Use when setting up GitHub Actions, Xcode Cloud, or fastlane for continuous integration, TestFlight, or…

70
744
11 files
View
blacklanternsecurity logo

Windows Token Impersonation

blacklanternsecurity
Organization

Exploit Windows token privileges for local privilege escalation to SYSTEM.

39
276
Instructions
View
jwynia logo

Positional Revelation

jwynia
Community

Generate stories where ordinary people become crucial through their structural position in systems. Use when you want protagonists who aren't chosen ones but accidental pivots, when mundane jobs…

20
159
Instructions
View
bitwarden logo

Reviewing Security Architecture

bitwarden
Organization

This skill should be used when the user asks to "review the security architecture", "check authentication patterns", "evaluate trust boundaries", "review encryption implementation", "assess…

19
149
2 files
View
trilwu logo

Hardening Cloud Posture

trilwu
Community

Proactively harden a cloud account or organization before an incident — prioritizing IAM and identity risk over checkbox findings, closing the exposures that become attack paths (public storage,…

15
144
Instructions
View
Hmbown logo

Hold Person

Hmbown
Community

Hold Person = hard freeze. Nothing moves. In-flight operations stop. Requires authority. Used for security incidents, fraud, compliance holds, misbehaving systems. Sleep = graceful suspension. State…

10
106
Instructions
View
aAAaqwq logo

Security Audit

aAAaqwq
Community

Audit codebases, infrastructure, AND agentic AI systems for security issues. Covers traditional security (dependencies, secrets, OWASP web top 10, SSL/TLS, file permissions) PLUS agentic security…

23
98
1 files
View
dykyi-roman logo

Check Cors Security

dykyi-roman
Community

Audits CORS configuration security. Detects wildcard origins, credentials with wildcards, dynamic origin reflection, missing preflight handling, and overly permissive policies.

25
98
Instructions
View
mturac logo

Defi Amm Security

mturac
Community

DeFi自動マーケットメーカー(AMM)スマートコントラクトセキュリティ監査パターン。フラッシュローン、スリッページ、サンドイッチング攻撃、価格操作、再入攻撃、不正確な整数演算をカバー。

2
91
Instructions
View
simota logo

Magi

simota
Community

Deliberating decisions and founder priorities through multi-perspective, named-expert, and YC-style advisory lenses. Use for verdicts, office hours, or expert critique; not implementation.

14
80
35 files
View
serac-labs logo

Instance Security

serac-labs
Organization

Harden a ServiceNow instance — password complexity, session timeout, MFA enforcement, input sanitization for XSS/injection, security properties, syslog events, and security health checks.

26
78
Instructions
View
seaworld008 logo

Database Schema Designer

seaworld008
Community

Design relational database schemas from requirements and generate migrations, TypeScript/Python types, seed data, RLS policies, and indexes. Handles multi-tenancy, soft deletes, audit trails,…

11
70
1 files
View
github logo

Aws Well Architected Review

github
OrganizationPopular

Perform an AWS Well-Architected Framework review of the current workload IaC and architecture, generating findings and GitHub issues for improvements.

5K
39.1K
Instructions
View
mukul975 logo

Analyzing Memory Dumps With Volatility

mukul975
CommunityPopular

Analyzes RAM memory dumps from compromised systems using the Volatility framework to identify malicious processes, injected code, network connections, loaded modules, and extracted credentials.…

4K
32.9K
2 files
View
steipete logo

Ssh Doctor

steipete
CommunityPopular

SSH triage: Remote Login, launchd sshd, pre-auth closes, stale sessions.

547
6.6K
Instructions
View
rlaope logo

Omh Github Issue Intake

rlaope
CommunityPopular

[omh] GitHub issue intake workflow: turn a public chat report into a confirmed, verified issue package. Use when the user says: github-issue-intake, github issue intake, issue intake, file this as an…

194
2.7K
Instructions
View
aws logo

Aws Security

aws
OrganizationPopular

Covers AWS security services and workflows — Security Hub V2 (OCSF) findings, connectors, aggregators, automation rules, and security posture summaries; Security Hub CSPM (V1/ASFF) controls and…

311
2.7K
23 files
View
yaklang logo

Hack

yaklang
OrganizationPopular

Entry P0 primary router and operating doctrine for HackSkills. Use when the task involves web application testing, API security assessment, recon, vulnerability triage, exploit path planning,…

292
2.2K
6 files
View
wgpsec logo

Java Framework Audit

wgpsec
OrganizationPopular

Java 框架特定漏洞源码审计。当在 Java 白盒审计中需要检测框架层面的已知漏洞模式时触发。 覆盖 5 大框架/组件: Spring 全家桶(SpEL/Actuator/参数绑定/Spring Cloud Gateway)、 Struts2(OGNL/ActionMapping/Content-Type 解析)、Shiro(RememberMe 反序列化/URI 绕过)、…

242
1.7K
1 files
View
rmyndharis logo

Codebase Cleanup Deps Audit

rmyndharis
CommunityPopular

You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies for known vulnerabilities, licensing issues,…

264
1.6K
1 files
View
kostja94 logo

Top Banner Generator

kostja94
Community

When the user wants to add, optimize, or audit a top announcement bar or sticky banner. Also use when the user mentions "announcement bar," "top banner," "sticky bar," "promo banner," "discount…

137
979
Instructions
View
jamditis logo

Api Hardening

jamditis
Community

API hardening for Express, FastAPI, and serverless. Use for rate limiting, CORS, input validation, API keys, or OWASP API Top 10.

64
397
1 files
View
blacklanternsecurity logo

Windows Uac Bypass

blacklanternsecurity
Organization

Bypass Windows User Account Control to escalate from medium to high integrity.

39
276
Instructions
View
TerminalSkills logo

Amass

TerminalSkills
Organization

OWASP Amass for in-depth DNS enumeration, subdomain discovery, and network mapping with active and passive modes. Use when: comprehensive subdomain enumeration, ASN and IP range mapping, attack…

21
155
1 files
View
bobmatnyc logo

Dependency Audit

bobmatnyc
Community

Dependency audit and cleanup workflow for maintaining healthy project dependencies. Use for regular maintenance, security updates, and removing unused packages.

34
152
1 files
View
bitwarden logo

Threat Modeling

bitwarden
Organization

This skill should be used when the user asks to "create a threat model", "define security goals", "generate a data flow diagram", "write security definitions", "perform an initial security…

19
149
7 files
View
trilwu logo

Hunting Threats

trilwu
Community

Run hypothesis-driven threat hunts across endpoint, network, cloud, and identity telemetry using stack counting, outlier analysis, and ATT&CK-based hypotheses, with SIEM query patterns for Splunk,…

15
144
Instructions
View
dykyi-roman logo

Check Cqrs Alignment

dykyi-roman
Community

Audits CQRS and Event Sourcing alignment. Checks command/query separation, projection idempotency, event store consistency, and read/write model synchronization.

25
98
Instructions
View
fabricioctelles logo

Security Specialist

fabricioctelles
Community

Runs security audits on codebases — full scans, diff reviews, threat models, vulnerability triage, remediation guidance, and finding tracking. Activate when the user says "security scan", "audit this…

7
87
22 files
View
brucesongs logo

Data Loss Prevention Bypass

brucesongs
Community

DLP bypass techniques covering steganography (LSB, audio, video), DNS tunneling, ICMP tunneling, cloud sync abuse (Dropbox, OneDrive), WebSocket/HTTP3 exfil, AI-augmented exfil (semantic chunking),…

18
70
9 files
View
mukul975 logo

Analyzing Memory Forensics With Lime And Volatility

mukul975
CommunityPopular

Performs Linux memory acquisition using LiME (Linux Memory Extractor) kernel module and analysis with Volatility 3 framework. Extracts process lists, network connections, bash history, loaded kernel…

4K
32.9K
2 files
View
samber logo

Golang Swagger

samber
CommunityPopular

Golang OpenAPI/Swagger documentation with swaggo/swag — annotation comments (@Summary, @Param, @Success, @Router, @Security), swag init code generation, framework integrations (gin, echo, fiber, chi,…

213
3.3K
2 files
View
wgpsec logo

Java Frontend Audit

wgpsec
OrganizationPopular

Java 源码前端安全类漏洞审计。当在 Java 白盒审计中需要检测前端安全漏洞时触发。 覆盖 5 类风险: XSS(JSP/Thymeleaf/FreeMarker 输出转义)、CSRF(Spring Security/自定义 Token)、 开放重定向(sendRedirect/forward)、CRLF 注入(Header/Cookie)、Session 管理(固定/超时/并发)。 需要…

242
1.7K
1 files
View
microsoft logo

Azure Cost

microsoft
OrganizationPopular

Azure cost management: query costs, forecast spending, optimize to reduce waste. WHEN: "Azure costs", "Azure bill", "cost breakdown", "how much am I spending", "forecast spending", "optimize costs",…

246
1.5K
22 files
View
jamditis logo

Secure Auth

jamditis
Community

Secure authentication patterns (OWASP, NIST). Use for login, registration, password reset, sessions, JWT, OAuth, MFA, passkeys.

64
397
1 files
View
blacklanternsecurity logo

Unknown Vector Analysis

blacklanternsecurity
Organization

Analyze custom applications, scripts, and binaries that standard technique skills could not exploit. Performs source code review, attack surface mapping, CVE research, and PoC adaptation. Route here…

39
276
Instructions
View
secondsky logo

Api Authentication

secondsky
Community

Secure API authentication with JWT, OAuth 2.0, API keys. Use for authentication systems, third-party integrations, service-to-service communication, or encountering token management, security headers,…

31
219
1 files
View
Kilo-Org logo

Cortex Code

Kilo-Org
Organization

Routes Snowflake-related operations to Cortex Code CLI for specialized Snowflake expertise. Use when user asks about Snowflake databases, data warehouses, SQL queries on Snowflake, Cortex AI features,…

168
179
17 files
View
omer-metin logo

Blockchain Privacy

omer-metin
Community

Expert in on-chain privacy technologies - ZK-SNARKs, ZK-STARKs, mixers, stealth addresses, ring signatures, and confidential transactions for building privacy-preserving blockchain applicationsUse…

22
152
3 files
View
bitwarden logo

Triaging Security Findings

bitwarden
Organization

This skill should be used when the user asks to "triage security findings", "fix an Aikido finding", "review Aikido issues", "dismiss a false positive", "check SAST/IaC alerts", or needs to work with…

19
149
Instructions
View
trilwu logo

Investigating Aws Incidents

trilwu
Community

Investigate security incidents in Amazon Web Services -- reconstruct attacker activity from CloudTrail, VPC Flow Logs, and GuardDuty, anchor the investigation on the compromised principal (access key…

15
144
Instructions
View
TheBeardedBearSAS logo

Security Reactnative

TheBeardedBearSAS
Organization

Security - React Native Best Practices. Use when reviewing security, implementing auth, or hardening code.

9
105
Instructions
View

Set up your own AI workspace now

Get notified about new features and future giveaways by subscribing to our newsletter 👇