Skills.

Give your AI a better way to work.

A skill is a set of written instructions that teaches an AI how to do one job the way it should be done: review a pull request, plan a migration, write the release notes.

Install one here and it travels with your account into Claude, Claude Code, Cursor and every other client you sign in with.

Category: Security

1,833 results · page 47 of 62

  • re-malwareSkillSecurity

    恶意软件分析网关。编排:默认沙箱 → 静态初勘 → 行为分析 → C2/协议 → IOC/报告。 子技能:[[re-sandbox]] [[re-behavior]] [[re-ioc]] [[re-ransomware]] [[re-loader]] [[re-fileless]]、[[re-doc-malware]]、[[re-sample-acquire]]。 触发词:恶意软件、样本行为、回连、C2、IOC、malware analysis。

    Ready to connect★ 57

    github.com/dslsdzc/rev-skills57 stars

    View details
  • re-sample-acquireSkillSecurity

    样本现场采集(从现象到可用样本):目标没有独立进程、样本不落盘时,以「异常执行内存 + 到达该内存的执行上下文」为核心定位载体并运行时提取。 覆盖四种观测模型:Windows(VAD/线程/ETW)、Linux(VMA/BPF LSM)、macOS(Mach VM/Endpoint Security)、seL4(capability provenance)。 触发词:样本获取、现场采集、没有样本、只有现象、不落盘、无文件、注入、内存马、运行时捕获、内存提取样本。 English triggers: sample acquisition, live acquisition, no sample,

    Ready to connect★ 57

    github.com/dslsdzc/rev-skills57 stars

    View details
  • re-vulnSkillSecurity

    漏洞挖掘网关。编排:目标与输入面识别 → 覆盖率引导 fuzzing → 崩溃分析 → 逆向定位 → 报告。 子技能:[[re-fuzzing]] [[re-crash-triage]] [[re-exploit]]。 触发词:漏洞挖掘、挖洞、fuzz、模糊测试、AFL、libFuzzer、崩溃分析、 crash、vulnerability hunting、fuzzing。

    Ready to connect★ 57

    github.com/dslsdzc/rev-skills57 stars

    View details
  • safe-skillSkillSecurity

    Catch dangerous AI agent skills before they catch you. Zero-dependency security scanner for Agent Skills, SKILL.md and MCP configs.

    Ready to connect

    github.com/berserk-hub150/skillhawk57 stars

    View details
  • unsafe-skillSkillSecurity

    Catch dangerous AI agent skills before they catch you. Zero-dependency security scanner for Agent Skills, SKILL.md and MCP configs.

    Ready to connect

    github.com/berserk-hub150/skillhawk57 stars

    View details
  • ai-llm-security-reviewSkillSecurity

    Use for AI/LLM security assessments, prompt injection, RAG security, agent/tool permissioning, model supply chain, LLM red teaming, AI governance, eval design, data leakage, jailbreak testing, and secure AI application review.

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-android-malware-with-apktoolSkillSecurity

    Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-apt-group-with-mitre-navigatorSkillSecurity

    Analyze advanced persistent threat (APT) group techniques using MITRE

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-command-and-control-communicationSkillSecurity

    'Analyzes malware command-and-control (C2) communication protocols to

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-ethereum-smart-contract-vulnerabilitiesSkillSecurity

    Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy,

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-ios-app-security-with-objectionSkillSecurity

    'Performs runtime mobile security exploration of iOS applications using Objection, a Frida-powered toolkit that

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-linux-elf-malwareSkillSecurity

    'Analyzes malicious Linux ELF (Executable and Linkable Format) binaries

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-malware-behavior-with-cuckoo-sandboxSkillSecurity

    'Executes malware samples in Cuckoo Sandbox to observe runtime behavior

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-malware-family-relationships-with-malpediaSkillSecurity

    Use the Malpedia platform and API to research malware family relationships,

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-malware-persistence-with-autorunsSkillSecurity

    Use Sysinternals Autoruns to systematically identify and analyze malware

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-malware-sandbox-evasion-techniquesSkillSecurity

    Detect sandbox evasion techniques in malware samples by analyzing timing

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-network-covert-channels-in-malwareSkillSecurity

    Detect and analyze covert communication channels used by malware including

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-network-traffic-of-malwareSkillSecurity

    'Analyzes network traffic generated by malware during sandbox execution

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-packed-malware-with-upx-unpackerSkillSecurity

    'Identifies and unpacks UPX-packed and other packed malware samples to

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-threat-actor-ttps-with-mitre-navigatorSkillSecurity

    'Map advanced persistent threat (APT) group tactics, techniques, and

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-threat-intelligence-feedsSkillSecurity

    'Analyzes structured and unstructured threat intelligence feeds to extract

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-threat-landscape-with-mispSkillSecurity

    Analyze the threat landscape using MISP (Malware Information Sharing

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • analyzing-typosquatting-domains-with-dnstwistSkillSecurity

    Detect typosquatting, homograph phishing, and brand impersonation domains

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • auditing-cloud-with-cis-benchmarksSkillSecurity

    'This skill details how to conduct cloud security audits using Center

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • authorization-gateSkillSecurity

    Use as the pre-flight authorization check before any offensive, intrusive, or simulation activity — pentest, red team, exploitation, phishing simulation, wireless attacks, social engineering, C2, scanning a target you don't own. Confirms written authorization, scope boundaries, lawful basis, and tar

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • building-automated-malware-submission-pipelineSkillSecurity

    'Builds an automated malware submission and analysis pipeline that collects

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • building-detection-rules-with-sigmaSkillSecurity

    'Builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • building-ioc-enrichment-pipeline-with-openctiSkillSecurity

    OpenCTI is an open-source platform for managing cyber threat intelligence

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • building-threat-actor-profile-from-osintSkillSecurity

    Build comprehensive threat actor profiles using open-source intelligence

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details
  • building-threat-intelligence-feed-integrationSkillSecurity

    'Builds automated threat intelligence feed integration pipelines connecting

    Ready to connect★ 56

    github.com/26zl/cybersec-toolkit56 stars

    View details

What is a skill?

A skill is plain text, usually a SKILL.md file and the scripts it refers to, written for an AI rather than for a person. It carries the steps, the house rules and the examples a good answer needs, so you stop pasting the same briefing into every new chat.

55,111 of the 55,543 skills listed here can be served through ahel today, and they come from public repositories. Each one has its own page with the instructions themselves on it, so you can read what a skill will tell your AI to do before you install it.

Install one and every AI you use gets it

Installing a skill adds it to your gateway and turns it on in the same step. Claude Code surfaces it as a slash command; any client can read the full instructions with the skill_read tool.

Nothing is copied into a project folder. The instructions are served from your account, so the same skill is there in every AI you connect, and turning it off removes it from all of them at once.

See how to connect your AI