LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

Skills tagged: penetration-testing

Browse skills that share this tag.

  • conducting-social-engineering-penetration-test - Conducting Social Engineering Penetration Test
    social-engineeringphishingvishingpretexting

    ★ 0 · Updated 2026-09-23

    Design and execute social engineering penetration tests to measure human security resilience and identify training gaps.

    ⚙ Gather employee OSINT intelligence⚙ Set up phishing infrastructure⚙ Execute phishing campaigns
  • pentesting-freeipa - FreeIPA domain enumeration and security assessment.
    penetration-testinglinuxfreeipakerberos

    ★ 3 · Updated 2026-09-22

    Enumerates FreeIPA domains via LDAP and Kerberos, analyzes HBAC and sudo rules, extracts hashes, and identifies delegation takeover paths.

    ⚙ Fingerprint FreeIPA environment⚙ Perform anonymous LDAP enumeration⚙ Enumerate authenticated LDAP objects
  • active-directory-attacks - Active Directory Attacks
    active-directorykerberoscredential-harvestingpenetration-testing

    ★ 1 · Updated 2026-09-22

    Provides techniques for reconnaissance, credential harvesting, Kerberos attacks, and lateral movement in Active Directory environments.

    ⚙ Synchronize Kerberos clock⚙ Enumerate Active Directory⚙ Perform password spraying
  • detecting-mobile-malware-behavior - Detect and analyze mobile application malware behaviors.
    mobile-securityandroidiosmalware-analysis

    ★ 0 · Updated 2026-09-20

    Detects and analyzes malicious behavior in mobile apps using static analysis, network monitoring, and dynamic instrumentation.

    ⚙ Analyze static indicators and permissions⚙ Scan samples with MobSF⚙ Monitor network traffic
  • analyzing-ios-app-security-with-objection - Analyze iOS App Security with Objection
    mobile-securityiosobjectionfrida

    ★ 17 · Updated 2026-09-18

    Performs runtime mobile security exploration of iOS apps using Objection to evaluate security posture and bypass client-side controls.

    ⚙ Prepare security testing environment⚙ Attach Objection to target process⚙ Dump iOS keychain items
  • WebAssessment - Web security assessment infrastructure
    web-securitypenetration-testingthreat-modelingvulnerability-assessment

    ★ 1 · Updated 2026-09-18

    Integrates reconnaissance, threat modeling, and vulnerability testing for web security assessments.

    ⚙ Understand application structure⚙ Create threat models⚙ Perform penetration testing
  • vuln-research - Vulnerability Research and Security Audit Methodology
    vulnerability-researchsecurity-auditcode-auditpenetration-testing

    ★ 186 · Updated 2026-09-16

    Provides a methodology framework derived from security docs for vulnerability research, code audit, and attack chain planning.

    ⚙ Analyze vulnerability attack paths⚙ Identify system attack surfaces⚙ Construct hypotheses and exploit payloads
  • strix-pentest - Run AI penetration testing using Strix Claude Code
    penetration-testingsecurity-scanningvulnerability-assessmentstrix

    ★ 40 · Updated 2026-09-15

    Runs AI-powered penetration testing and security assessments against web applications, APIs, domains, IPs, or repositories using Strix Claude Code.

    ⚙ Run security assessments⚙ Perform automated penetration testing⚙ Scan web applications and APIs
  • claude-pentest-skills - Structured Web Application Penetration Testing
    penetration-testingweb-securityowaspvulnerability-assessment

    ★ 40 · Updated 2026-09-14

    Provides structured web application penetration testing using OWASP methodology, curated payload references, 6-gate validation, and report generation.

    ⚙ Define testing scope and authorization⚙ Map target attack surface⚙ Test target vulnerability classes
  • helloctf-skill - Hello CTF knowledge base and skill tree
    ctfcybersecurityknowledge-basepenetration-testing

    ★ 4,196 · Updated 2026-09-11

    A CTF cybersecurity knowledge base for locating knowledge points, querying exploit techniques, and planning learning routes.

    ⚙ Locate CTF knowledge points⚙ Query vulnerability exploit techniques⚙ Plan CTF learning routes
  • redteam-opsec - Covert Operation and OPSEC Guidelines
    penetration-testingred-teamopsecanti-forensics

    ★ 115 · Updated 2026-09-11

    Provides guidelines for IP ban bypass, rate control, traffic obfuscation, minimal footprint, anti-forensics, and progressive exposure in red-team ops.

    ⚙ Bypass IP blacklists⚙ Control scanning rate and timing⚙ Obfuscate network traffic
  • exploiting-cross-site-script-inclusion-xssi - Exploiting Cross-Site Script Inclusion (XSSI)
    penetration-testingxssijsonpowasp

    ★ 487 · Updated 2026-06-30

    Identify and exploit Cross-Site Script Inclusion vulnerabilities to read sensitive data from static scripts, dynamic JS, JSONP responses, and non-JS files cross-origin.

    ⚙ find script and JSONP endpoints⚙ detect dynamic JavaScript via cookie diffing⚙ read global variables from included scripts
  • moving-laterally-with-netexec - Lateral Movement with NetExec for Penetration Testing
    netexeclateral-movementsmbpassword-spraying

    ★ 70 · Updated 2026-06-30

    Use NetExec to enumerate SMB, WinRM, LDAP, and MSSQL services, spray passwords, execute commands, and dump credentials on authorized targets.

    ⚙ validate credentials across hosts⚙ enumerate SMB shares and users⚙ enumerate password policy via LDAP
  • moving-laterally-with-netexec - NetExec Network Penetration Testing
    netexecpenetration-testinglateral-movementsmb

    ★ 3,613 · Updated 2026-06-30

    NetExec tool for SMB, WinRM, LDAP, MSSQL enumeration and remote execution

    ⚙ enumerate SMB shares⚙ enumerate domain users⚙ enumerate password policy
  • pentesting-freeipa - FreeIPA Penetration Testing Tool
    freeipaldapkerberospenetration-testing

    ★ 487 · Updated 2026-06-30

    Enumerates and attacks FreeIPA domains with LDAP enumeration, Kerberos ticket abuse, and delegation analysis

    ⚙ enumerate LDAP anonymously⚙ enumerate LDAP with GSSAPI⚙ obtain Kerberos tickets
  • performing-kubernetes-penetration-testing - Kubernetes penetration testing
    containerskubernetessecuritypenetration-testing

    ★ 11 · Updated 2026-03-25

    Evaluates Kubernetes cluster security through simulated attacks against components

    ⚙ scan cluster⚙ check API server⚙ test kubelet
  • conducting-full-scope-red-team-engagement - Execute MITRE ATT&CK Red Team Engagement
    red-teamadversary-emulationmitre-attackpenetration-testing

    ★ 3,613 · Updated 2026-03-24

    Execute red team engagement from reconnaissance to post-exploitation using MITRE ATT&CK-aligned tactics

    ⚙ execute red team engagement⚙ perform reconnaissance⚙ gain initial access
  • owasp-zap - OWASP ZAP Web Application Security Scanner
    securityvulnerability-scanningpenetration-testingci-cd

    ★ 155 · Updated 2026-03-09

    Discovers vulnerabilities in web applications through spidering, passive analysis, and active attack testing

    ⚙ run spidering on web applications⚙ perform passive analysis scanning⚙ execute active attack testing
  • security-skills-guide - Guide for security-related Agent Skills
    securityguidecybersecuritypenetration-testing

    ★ 18 · Updated 2026-02-13

    Guide for security-related Agent Skills including penetration testing, code auditing, threat hunting, and forensics skills

    ⚙ find security-related skills⚙ add security skills⚙ understand cybersecurity categories