- Type
- Agent Skill
- Open source
- Yes
- GitHub Stars
- ★ 1.2k
- Source
- skill-github
- Repository
- github.com/yaklang/hack-skills
Overview
hack-skills is a knowledge base for AI agents covering domains such as Web security, API security, authentication and authorization, OS privilege escalation (Linux/Windows/macOS), Active Directory attacks, mobile security, binary exploitation (Pwn), reverse engineering, cryptanalysis, blockchain and smart contract security, AI/ML and LLM security, network protocols and relay attacks, digital forensics. Designed for bug bounties, penetration testing, CTF competitions, and authorized security research. The knowledge base organizes practical, audit-friendly, and maintainable security knowledge in an installable, searchable, and composable format.
Capabilities
- ▪Web security skills
- ▪API security skills
- ▪Authentication and authorization skills
- ▪Operating system privilege escalation skills
- ▪Active Directory attack skills
- ▪Mobile security skills
Use cases
Setup
npx skills add yaklang/hack-skills
This information was compiled by AI from public sources and may contain inaccuracies — please refer to the source.
FAQ
How can I get started quickly?
Install with `npx skills add yaklang/hack-skills`.
Which security domains are supported?
Covers 14 security domains including Web security, API security, authentication and authorization, and more.
Related skills
mantis
Provides security review capabilities for AI coding agents, automatically discovering, reproducing, and fixing vulnerabilities.
sast-skills
Transform your AI coding assistant into a SAST scanner to automatically detect vulnerabilities in code.
Lightswind-UI-Library
AI-native CLI-first React component library with MCP Server support.
scientific-agent-skills
Transform any AI agent into a scientific assistant with 147 ready-to-use research skills.
susi_alexa_skill
A skill that enables question-and-answer interactions between Alexa and Susi AI.
claude-context
Provides code search capabilities for Claude Code, turning the entire codebase into context.