Results for “cve-2025-0921”

51 skills
More results
mukul975
Performing Cve Prioritization With Kev Catalog
Integrate the CISA Known Exploited Vulnerabilities catalog with EPSS and CVSS to prioritize CVE remediation based on real-world exploitation evidence.
24.6k · bundle
brycewang-stanford
Iccv Workflow
Use when project-managing an ICCV campaign across the odd-year cycle, covering the autumn fork between CVPR and ICCV, the early-March registration and single submission deadline, May rebuttal week, late-June decisions, the October conference with international travel and visa lead times, and the ECCV/CVPR fallback ladder if the paper misses.
1k
shulkwisec
Request Cves
Generates CVE request packages from pentest findings. Reads cve-candidates.json (auto-generated at pentest completion) or findings.json directly, then produces for each qualifying vulnerability: MITRE CVE form data, GitHub Security Advisory draft, full disclosure report, and vendor notification email. Invoke manually after a pentest engagement when you have true-positive findings that warrant CVE IDs.
21
brycewang-stanford
Cav Workflow
Use when planning a CAV (Computer Aided Verification) project timeline from venue and category selection through submission, the two-stage review with early reject and rebuttal, artifact evaluation by the AEC, and the LNCS open-access camera-ready, with backward-planning offsets for a verification-tool paper and honest handling of the single-annual-deadline cycle.
1k
brycewang-stanford
Vis Submission
Use when auditing an IEEE VIS full-paper submission for PCS readiness, covering the abstract-then-paper two-deadline structure under the VGTC society, the IEEE VGTC/TVCG 9+2 page budget, author-optional double-blind anonymization, the supplemental-material one-week window, and desk-reject triage before the AoE cutoff for a paper that will publish in IEEE TVCG.
1k
mukul975
Exploiting Zerologon Vulnerability Cve 2020 1472
Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon Remote Protocol to achieve domain controller compromise by resetting the machine account password to empty.
24.6k · bundle
mukul975
Scanning Containers With Trivy In Cicd
Integrate Trivy vulnerability scanning into CI/CD pipelines to detect container image CVEs, Dockerfile misconfigurations, and enforce severity-based quality gates.
24.6k · bundle
gabrielmoreira
Bioqc MCP
Automates sequencing quality control by running FastQC and MultiQC, extracting quality metrics, and generating publication-ready visualizations via a CLI or MCP stdio server.
17 · bundle
casemark
Demand Letter
Drafts litigation-ready U.S. pre-suit demand letters that function as settlement instruments and defensible future exhibits. Enforces element-driven narratives, verified authority, damages methodology, and ethics guardrails. Use this skill when the user mentions demand letter, pre-suit demand, breach and cure notice, settlement demand, insurance policy-limits demand, Stowers demand, FDCPA collection letter, notice of intent to file, cease and desist demand for payment, or pre-litigation correspondence. Also trigger when the user asks about FRE 408 framing, contractual notice compliance, statutory pre-suit prerequisites, evidence preservation notices, or quantifying damages for a demand package. Skill includes 14 verified real-letter exemplars referenced from `references/ARCHETYPE-INDEX.md`.
34 · bundle
brycewang-stanford
C1
VS-Enhanced Quantitative Design Consultant with Materials & Sampling Enhanced VS 3-Phase process: Avoids obvious experimental designs, proposes context-optimal quantitative strategies Absorbed C4 (Experimental Materials Developer) and D1 (Sampling Strategy Advisor) capabilities Use when: selecting quantitative research design, planning experimental/survey methodology, power analysis, developing materials, sampling Triggers: RCT, quasi-experimental, experimental design, survey design, power analysis, sample size, factorial design, materials, stimuli, sampling strategy
1k
martc03
Gov Cybersecurity
Queries real-time vulnerability intelligence from NIST NVD, CISA KEV, EPSS, and MITRE ATT&CK via a remote MCP server, offering seven tools for CVE lookup, search, and trending analysis.
5
chimeranext
Container Security
Implements container security with image scanning, runtime protection, image signing, and security policies using tools like Falco, Trivy, and Notary.
4 · bundle
github
Geofeed Tuner
Create, validate, and improve IP geolocation feeds in CSV format with RFC 8805 compliance and opinionated best practices for network operators.
36.2k · bundle
nvidia
Nv Generate Vae Finetune
Finetune the NV-Generate-CTMR MAISI VAE/autoencoder on user-supplied CT or MRI NIfTI volumes using a staged config and datalist workflow.
2.2k · bundle
brycewang-stanford
Cost Benefit
Cost-benefit analysis. Produces economic NPV and financial NPV side by side, with BCR, optimism bias (with mitigation), Marginal Excess Tax Burden, real-terms rebasing, WELLBY / QALY / VPF wellbeing valuation, sensitivity, switching values, EANC for unequal-life options, validation gate, and a one-line headline verdict (socially worthwhile vs financially self-sustaining). Backed by the greenbook R package (HM Treasury Green Book primitives) when available, with graceful fallback. Supports HMT Green Book, EU Better Regulation, World Bank, ADB, and Victorian HVHR. Reads a longlist markdown file directly via --from.
1k · bundle
dvcrn
Veo
Generates video clips from text prompts using Google's Veo API, supporting configurable duration, aspect ratio, and model selection.
32 · bundle
lucian55
Fanwei Skill
范伟(演员 / 喜剧)认知与表达框架(压缩蒸馏):木讷外壳下的精算与善良、慢节奏包袱 触发:马大帅、耳朵大有福 等。角色与本人区分
9 · bundle
casemark
Phase I Esa
Drafts ASTM E1527-21 environmental site assessment reports under 40 CFR Part 312. Classifies RECs, CRECs, and HRECs to establish all appropriate inquiries for CERCLA liability protection. Trigger when the user requests a Phase I ESA, environmental site assessment, recognized environmental conditions analysis, ASTM E1527 compliance, or environmental due diligence for property transactions or lending.
34 · bundle
smith6jt-cop
Selection Data Caching
SUPERSEDED by persistent-cache-gap-filling (v2.8.0). Cache data during symbol selection for instant repeat runs.
3
brycewang-stanford
Cvpr Workflow
Use when planning a CVPR submission campaign end to end, covering the November abstract/paper/supplement deadline chain, coauthor reviewer-duty scheduling, the January rebuttal sprint, February decisions, camera-ready and June conference logistics, and the resubmission ladder across ICCV, ECCV, and the next CVPR.
1k
nagarenegishi
Owasp Guard
Enforces OWASP Top 10:2025 compliance on code touching security-relevant domains, using cached cheat sheets and verifying fixes against OSV.dev.
0 · bundle
antfu
Slidev
Create and present web-based slide decks using Slidev with Markdown, Vue components, code highlighting, animations, and interactive features. Ideal for technical presentations, conference talks, code walkthroughs, teaching materials, or developer decks.
5.5k · bundle
x3allamerican
Roadside Inspection Levels
Use this skill when the user asks about CMV roadside inspection levels (Level I through Level VIII), what each level inspects, average inspection times, CVSA decal eligibility, what triggers a level upgrade, and how to coach drivers through a roadside inspection. Reference CVSA North American Standard Inspection Program.
1
qhjqhj00
Slidev
Create and present web-based slidedecks for developers using Slidev with Markdown, Vue components, code highlighting, animations, and interactive features.
3 · bundle
prime-skills
Video Extend
Extend or continue an existing video clip on RunComfy via the `runcomfy` CLI. Routes to Google Veo 3-1's `extend-video` and `fast/extend-video` endpoints — pick the source video plus a prompt describing what should happen next, and the model produces a clip that continues the original with consistent motion, lighting, and subject identity. Use when the user has a short Veo clip and wants it longer, or wants a chained narrative built shot-by-shot from a single seed clip. Triggers on "extend video", "continue video", "longer video", "video extend", "make this clip longer", "Veo extend", "chain video shots", "video continuation", or any explicit ask to take an existing video and add more frames after it.
33
mukul975
Performing Ot Vulnerability Assessment With Claroty
Correlates OT asset inventory with ICS-CERT advisories and CVE data to identify, prioritize, and track vulnerabilities in operational technology environments using Claroty xDome.
24.6k · bundle
shulkwisec
Analyze Cve
CVE Vulnerability Analysis Workflow
21
jiachen-t-wang
Imagenet 21k Pretraining For The Masses Arxiv 2104 10972v4
ImageNet-21K Pretraining for the Masses
6
bobmatnyc
Vb Core
Core VB.NET patterns, type safety, modern language features
71 · bundle
sbroggioadv
Irdr Iac
Instaura/atua em IRDR — Incidente de Resolucao de Demandas Repetitivas (CPC 976, requisitos simultaneos: I efetiva repeticao sobre questao unicamente de direito + II risco a isonomia/seguranca; legitimados 977; admissibilidade 981; suspensao no Estado/regiao 982 I; tese aplicada a todos e aos casos futuros 985; revisao 986; REsp/RE 987) ou IAC — Incidente de Assuncao de Competencia (CPC 947, questao relevante de grande repercussao social SEM repeticao; acordao vinculante §3), com efeito vinculante da tese (CPC 927 III). Use quando o operador disser IRDR, incidente de resolucao de demandas repetitivas, IAC, assuncao de competencia, tese vinculante regional, muitos processos iguais, suspensao por IRDR.
6
yanacuti1121
Qdrant
Qdrant vector database — collections, upsert, search, filtering, payloads, sparse vectors, BM25
2
aibot88
Cso
Chief Security Officer mode. Infrastructure-first security audit: secrets archaeology, dependency supply chain, CI/CD pipeline security, LLM/AI security, skill supply chain scanning, plus OWASP Top 10, STRIDE threat modeling, and active verification. Two modes: daily (zero-noise, 8/10 confidence gate) and comprehensive (monthly deep scan, 2/10 bar). Trend tracking across audit runs. Use when: "security audit", "threat model", "pentest review", "OWASP", "CSO review". (gstack) Voice triggers (speech-to-text aliases): "see-so", "see so", "security review", "security check", "vulnerability scan", "run security".
3 · bundle
brycewang-stanford
Chinese Ppt2
Upgrade of chinese-ppt for Chinese Beamer decks (xelatex + ctex + fandol, CUFE template). Same 7-section outline and X→M→Y framework, but adds (a) mandatory 1.3 line-spacing + 3pt paragraph spacing, (b) overflow-prevention line budget + balanced split-frame rules, (c) prose rewrites that strip AI-ish "关键比较/理论映射" labels and redundant 章节括号注释, (d) stricter CJK-space + middle-dot rules, (e) retrofit workflow for existing chinese-ppt decks, (f) mandatory local linespread reset inside TikZ / table / fixed-geometry frames. Use for "做中文学术PPT 2 版"、"中文 Beamer 改进版"、"答辩 PPT chinese-ppt2"、"防越界 PPT"等请求。用户在 Overleaf 编译,只产出 .tex + figures/,不要附加 compile 脚本。
1k · bundle
bdm-15
Oci Sweeper
Federal Organizational Conflict of Interest (OCI) sweeper backed by FAR Subpart 9.5 (9.501-9.508) and the active Theseus workspace knowledge graph. USE WHEN the user asks about OCI risk on a bid, organizational conflicts, incumbent conflicts, biased ground rules, unequal access to information, impaired objectivity, or any pre-bid OCI due diligence. Pulls `company`, `incumbent`, `subcontractor`, `customer`, `program_office`, and prior-contract relationships from the workspace KG, classifies each potential conflict into one of the three FAR 9.505 classes (biased ground rules, unequal access, impaired objectivity), and emits a structured findings envelope with mitigation recommendations (firewall, NDA, recusal, novation). DO NOT USE FOR FAR clause coverage audit (use `compliance-auditor`), proposal prose (use `proposal-generator`), competitor research (use `competitive-intel`), or pricing (use `price-to-win`).
0 · bundle
baofeng-tech
Web Search Plugin
Requires python3, and AISA_API_KEY. Uses the supplied AISA_API_KEY to send requests to https://api.aisa.one. Native-first ClawHub plugin for `web-search`. Ships the packaged AIsa skill with an `openclaw.plugin.json` manifest and a Claude-compatible bundle fallback. Search the web using AIsa Scholar Web endpoint. Returns structured web results with titles, URLs, and snippets. Use when: the user needs web search, research, source discovery, or content extraction.
1 · bundle