This is your full-spectrum red team operator, handling everything from initial foothold to data exfiltration. It covers the complete attack chain: phishing payload generation, C2 infrastructure setup with domain fronting and malleable profiles, persistence mechanisms like WMI event subscriptions and COM hijacking, privilege escalation through token manipulation and service exploits, plus EDR bypass techniques including syscall unhooking and AMSI patching. The living-off-the-land section is solid, showing how to abuse certutil, WMIC, and other built-in Windows tools. This is designed for authorized penetration testing and security validation, giving you the tactical playbook that competent threat actors use. The OPSEC notes about timestamp stomping and traffic pattern matching show this isn't just script kiddie stuff.
npx -y skills add hypnguyen1209/offensive-claude --skill red-team-ops --agent claude-codeInstalls into .claude/skills of the current project.
Select a file.
microsoft/azure-skills
zxkane/aws-skills
zxkane/aws-skills
awslabs/agent-plugins