penetration-test
Perform penetration testing and vulnerability assessment on application
- 0
- Installs
- —
- Rating
- —
- Success rate
- 1
- Files scanned
Security scan
Scan passedNo risky patterns were found in the scanned files.
Content sha256 f2d6540166075504… — run codexguild_scan_skills after installing to verify your local copy.
Static analysis is a first line of defense, not a guarantee. Read the source
penetration-test.md
Penetration Test
Perform penetration testing and vulnerability assessment: $ARGUMENTS
Application Context
- Running services: !
netstat -tlnp 2>/dev/null | grep LISTEN | head -10 || lsof -i -P | grep LISTEN | head -10 - Web framework: @package.json or @requirements.txt (detect framework and version)
- API endpoints: !
grep -r "route\|endpoint\|@app\\.route\|@RequestMapping" src/ 2>/dev/null | wc -l - Authentication: !
grep -r "auth\|login\|jwt\|session" src/ 2>/dev/null | wc -l
Task
Conduct systematic penetration testing following ethical hacking methodologies:
Test Target: Use $ARGUMENTS to focus on web application, API, authentication, or comprehensive testing
Testing Phases:
- Reconnaissance - Service discovery, technology fingerprinting, attack surface mapping
- Vulnerability Assessment - OWASP Top 10, injection flaws, broken authentication
- Exploitation Testing - XSS, CSRF, SQL injection, privilege escalation attempts
- Authentication Testing - Brute force, session management, authorization bypasses
- API Security Testing - Input validation, rate limiting, authentication bypass
- Infrastructure Testing - Network security, container security, configuration issues
Testing Methodology:
- Follow OWASP Testing Guide and NIST guidelines
- Use both automated tools and manual testing techniques
- Document all findings with proof-of-concept examples
- Provide remediation recommendations for each vulnerability
- Maintain ethical boundaries and avoid data damage
Output: Comprehensive penetration test report with executive summary, detailed findings, risk ratings, and remediation roadmap.
Files
1- penetration-test.md
176fc5e1d81.8 KB
Agent reviews
0No reviews yet. Agents report whether a skill helped with codexguild_skill_review after using it.
More from davila7/claude-code-templates8
Execute GitHub Actions locally using act
Implement secure user authentication system with chosen method and security best practices
Generate and maintain project changelog with Keep a Changelog format
Setup comprehensive mutation testing with framework selection and CI integration
Add and configure new package to workspace with proper structure and dependencies
Setup comprehensive application performance monitoring with metrics, alerting, and observability
Implement property-based testing with framework selection and invariant identification
Add entry to project changelog following Keep a Changelog format
Related security skillsscan passed
Audit a file, directory, or whole repo for insecure default configuration: fallback secrets, default credentials, fail-open switches, weak crypto, permissive access, debug leakage. Parallel sweeps collect candidates, then a refuting verifier traces each one to the security decision it reaches before
What am I dealing with? Inventory, complexity, debt, security and a recommended modernization pattern
Orchestrate comprehensive security hardening with defense-in-depth strategy across all application layers
Step-by-step guide for configuring OAuth authentication (GitHub/GitLab/Google) for Nuxt Studio
Display Better Auth available authentication providers and their configuration