← all publishers

AeonDave

@aeondave source repo

336 published skills · page 4 of 4

  1. Ssrfmap · aeondave bundle
    Auth/lab ref: automated SSRF (Server-Side Request Forgery) exploitation tool using Burp-style request files.
    0
    installs
  2. Sstimap · aeondave bundle
    Auth/lab ref: actively maintained SSTI detection and exploitation tool with interactive and predetermined modes across Jinja2, Twig, Smarty, Freemarker, Velocity, ERB, Pug, Nunjucks, and more.
    0
    installs
  3. Testssl · aeondave bundle
    Auth/lab ref: testssl.sh: broad TLS/SSL testing script checking protocol support, cipher suites, vulnerabilities (BEAST, POODLE, Heartbleed, ROBOT, DROWN, etc.), and certificate issues.
    0
    installs
  4. Sparrow Wifi · aeondave bundle
    Auth/lab ref: Linux Wi-Fi and Bluetooth analyzer with GPS, remote agent, JSON API, and SDR integrations including HackRF One and Ubertooth.
    0
    installs
  5. Heap Exploitation Dev · aeondave bundle
    Auth/lab dev: heap exploitability research; glibc/musl/Windows allocators, UAF/double-free/overflow models, heap shaping, mitigations.
    0
    installs
  6. Windows Internals Dev · aeondave bundle
    Auth/lab dev: Windows internals; PEB/TEB, PE/COFF, syscalls, unwinding, memory/heap, tokens, kernel objects, ETW/AMSI telemetry.
    0
    installs
  7. Offensive Reverse Role · aeondave
    Scoped routing: Reverse Engineer. Static and dynamic analysis of binaries, malware, and unknown protocols.
    0
    installs
  8. Offensive Windows Role · aeondave
    Scoped routing: Windows Operator. Handles AD enumeration, Kerberos exploitation, and Windows local privilege escalation.
    0
    installs
  9. Fuzzing Technique · aeondave bundle
    Auth/lab: fuzzing methodology; target model, oracle, harness quality, corpus, campaign triage for parsers, binaries, protocols, APIs.
    0
    installs
  10. Network Technique · aeondave bundle
    Auth/IR: network investigation; service exposure, traffic, PCAP/protocol logs, pivots, scan evidence, incident reconstruction.
    0
    installs
  11. Cyberchef · aeondave bundle
    Auth/lab ref: Web-based data transformation and crypto analysis workbench. For rapidly decoding layered encodings, transforming binary/text formats, prototyping crypto/decode pipelines, or sharing reproducible recipes.
    0
    installs
  12. Vuln Research · aeondave bundle
    Auth/lab ref: Exploit research workflow: a target software version or CVE: triage CVSS severity, find public PoCs on NVD/sploitus/PoC-in-GitHub/ExploitDB, assess exploitability, and locate Metasploit modules.
    0
    installs
  13. Gitleaks · aeondave bundle
    Auth/lab ref: Gitleaks secret scanning; repo/directory/stdin checks, regex+entropy rules, pre-commit/CI evidence, remediation workflow.
    0
    installs
  14. Nosqlmap · aeondave bundle
    Auth/lab ref: automated NoSQL injection detection and exploitation tool targeting MongoDB, CouchDB, and other NoSQL databases.
    0
    installs
  15. Design Before Implementation · aeondave bundle
    Use before creative or multi-file implementation work: new features, behavior changes, refactors, new skills, offensive tooling workflows, exploit chains, research pipelines, or architecture decisions. Clarifies intent, scope, alternatives, constraints, success criteria, and non-goals before coding or executing.
    0
    installs
  16. Asm Offensive Patterns · aeondave bundle
    Auth/lab ASM patterns; x86-64/ARM64, syscalls, SSN resolution, stack traces, PEB/IAT-free lookup, PIC data access, ETW/AMSI telemetry, BOF/loader review.
    0
    installs
  17. Stack Exploitation Dev · aeondave bundle
    Auth/lab dev: stack exploitability research; frame layout, canaries, ret2libc/ROP/SROP/JOP paths, mitigations, data-only outcomes.
    0
    installs
  18. Offensive Forensic Role · aeondave
    Scoped routing: Forensic Operator. Extracting credentials and timelines from memory dumps, disk images, and PCAP.
    0
    installs
  19. Offensive Hardware Role · aeondave
    Scoped routing: Hardware Operator. Physical device compromise via UART, JTAG, SPI, and embedded interfaces.
    0
    installs
  20. Cracking Technique · aeondave bundle
    Auth/lab: password/hash recovery methodology; hash triage, candidate design, rules/masks, campaign evidence, audit-safe reporting.
    0
    installs
  21. Forensic Technique · aeondave bundle
    Incident forensics: preservation, triage, timelines, artifact correlation, reporting across disk (E01/DD/RAW), memory, PCAP.
    0
    installs
  22. Hardware Technique · aeondave bundle
    Auth assessment: hardware/embedded methodology; UART/JTAG/SWD/SPI/I2C, firmware extraction, boot/debug paths, embedded OS evidence.
    0
    installs
  23. Phishing Technique · aeondave bundle
    Authorized simulation: email/social campaign infrastructure; domain hygiene, SPF/DKIM/DMARC, GoPhish/Evilginx planning, metrics.
    0
    installs
  24. Wireless Technique · aeondave bundle
    Auth assessment: wireless methodology; Wi-Fi/BLE survey, WPA/WPA3 handshake/PMKID labs, WPS, rogue-AP simulation, auth-material handoff.
    0
    installs
  25. Name That Hash · aeondave
    Auth/lab ref: hash-identification helper for narrowing candidate algorithms before cracking.
    0
    installs
  26. Rsactftool · aeondave bundle
    Auth/lab ref: RSA testing automation tool for weak public keys. For targeting RSA key recovery or plaintext recovery from public data (n, e, ciphertext, partial leaks).
    0
    installs
  27. Linux Persistence · aeondave
    Auth/lab ref: Linux durability-risk audit; cron/systemd/SSH/PAM/LD_PRELOAD indicators, validation, cleanup and remediation notes.
    0
    installs
  28. Burpsuite · aeondave bundle
    Auth/lab ref: Burp Suite: integrated web application security testing platform with proxy, scanner, intruder, and repeater.
    0
    installs
  29. Container Technique · aeondave bundle
    Container methodology: Identifying containerization limits, Docker/K8s misconfigurations, and executing escapes to the host node.
    0
    installs
  30. Emulation Technique · aeondave bundle
    Auth/lab: generic emulation methodology for binaries, firmware, kernels, and MCU/board targets; static-to-dynamic routing, tool choice, validation signals.
    0
    installs
  31. Reversing Technique · aeondave bundle
    Auth/lab: reverse engineering methodology; malware triage, patch diffing, firmware/protocol RE, protections, exploitability handoff evidence.
    0
    installs
  32. Trufflehog · aeondave bundle
    Auth/lab ref: TruffleHog secret scanning; verified secret types, git/cloud/CI sources, validation evidence, remediation workflow.
    0
    installs
  33. Verification Before Completion · aeondave bundle
    Use when about to claim work is done, fixed, passing, validated, merged, report-ready, or safe to proceed. Requires fresh verification evidence before success claims, commits, pull requests, task completion, operator reports, cleanup claims, or moving to the next step.
    0
    installs
  34. Offensive Supervisor Role · aeondave bundle
    High-level orchestration role for authorized red-team, lab, and CTF engagements. Use to decompose objectives into strict delegable tasks, package cold-start context per dispatch, journal routing decisions, preserve multi-level worker failures, and gate the whole engagement on evidence before handoff.
    0
    installs
  35. Vibe Audit Technique · aeondave bundle
    White-box auditing methodology for AI-generated ('vibe-coded') applications from Lovable, Bolt.new, v0, Cursor, Replit Agent, and Claude Code. Focuses on modern stack misconfigurations (Supabase, Firebase, Next.js, Vercel, Expo).
    0
    installs
  36. Mosquitto Clients · aeondave
    Auth/lab ref: Mosquitto client tools, primarily `mosquitto_pub` and `mosquitto_sub`, for interacting with MQTT brokers.
    0
    installs