Search: "vulnerability"

Showing 23 of 23 results

Development ClawHub

Alibabacloud Sas Overview

Skill

Alibaba Cloud Security Center (SAS) Overview Data Query Skill. Retrieves security score, asset status, risk governance, asset risk trends, and billing info....

Development ClawHub

Alibabacloud Sas Install Agent

Agent

Alibaba Cloud Security Center (SAS) agent onboarding and management assistant. Use this skill when the user wants to onboard servers to Security Center, inst...

Development ClawHub

Alibabacloud Sas Openclaw Security

Skill

Perform security operations on OpenClaw environments by calling Alibaba Cloud Security Center (SAS) and ECS APIs via the aliyun CLI. Supports asset queries,...

Development ClawHub

Alibabacloud Sas Multiaccount Manage

Skill

Manage multiple Alibaba Cloud accounts and batch-export Security Center (SAS) baseline and vulnerability reports via the aliyun CLI and Python scripts. Suppo...

Development ClawHub

Go漏洞扫描基础版

Skill

使用 govulncheck 识别 Go 模块安全漏洞的基础能力,覆盖漏洞 扫描、风险评级与基础修复建议. 核心能力: - 基于 govulncheck 的漏洞扫描 - 漏洞风险评级(高/中/低) - 基础修复建议(依赖升级路径) 适用场景: - 安全检测、合规审计、漏洞扫描 - 独立开发者与小型团队的 Go 项...

Development ClawHub

漏洞扫描器(免费版)

Skill

基于OWASP 2025的免费静态分析工具,支持供应链安全、密钥检测、高危代码模式识别及风险优先级排序。

Development ClawHub

Vulnerability Scanner

Skill

Automated vulnerability scanning with OpenVAS + BlackArch tools, enriched with CVE-MCP data. Full network, web app, and container scans with prioritized reme...

Development ClawHub

Vulnerability Analysis Hub

Skill

聚合漏洞分析技能中心。整合 IDA Pro 逆向、CVE 查询、静态代码分析(CodeQL/Semgrep)、故障根因分析、二进制漏洞利用工具链。当用户需要分析已知 CVE、挖掘未知漏洞、逆向二进制、构建 PoC、分析漏洞链、生成完整漏洞报告时使用此技能。

Development ClawHub

Security Vulnerability Scanner

Skill

扫描代码中常见安全漏洞如SQL注入、XSS、硬编码密码,提供检测结果和安全评分建议。

Development ClawHub

cairo-vulnerability-scanner

Skill

# Cairo/StarkNet Vulnerability Scanner ## 1. Purpose Systematically scan Cairo smart contracts on StarkNet for platform-specific security vulnerabilities related to arithmetic, cross-layer messaging, and cryptographic operations. This skill encodes 6 critical vulnerability patterns unique to Cairo/StarkNet ecosystem. ## 2. When to Use This Skill - Auditing StarkNet smart contracts (Cairo) - Reviewing L1-L2 bridge implementations - Pre-launch security assessment of StarkNet applications - Validating cross-la

Development ClawHub

substrate-vulnerability-scanner

Skill

# Substrate Vulnerability Scanner ## 1. Purpose Systematically scan Substrate runtime modules (pallets) for platform-specific security vulnerabilities that can cause node crashes, DoS attacks, or unauthorized access. This skill encodes 7 critical vulnerability patterns unique to Substrate/FRAME-based chains. ## 2. When to Use This Skill - Auditing custom Substrate pallets - Reviewing FRAME runtime code - Pre-launch security assessment of Substrate chains (Polkadot parachains, standalone chains) - Validating

Development ClawHub

ton-vulnerability-scanner

Skill

# TON Vulnerability Scanner ## 1. Purpose Systematically scan TON blockchain smart contracts written in FunC for platform-specific security vulnerabilities related to boolean logic, Jetton token handling, and gas management. This skill encodes 3 critical vulnerability patterns unique to TON's architecture. ## 2. When to Use This Skill - Auditing TON smart contracts (FunC language) - Reviewing Jetton token implementations - Validating token transfer notification handlers - Pre-launch security assessment of T

Development ClawHub

algorand-vulnerability-scanner

Skill

# Algorand Vulnerability Scanner ## 1. Purpose Systematically scan Algorand smart contracts (TEAL and PyTeal) for platform-specific security vulnerabilities documented in Trail of Bits' "Not So Smart Contracts" database. This skill encodes 11 critical vulnerability patterns unique to Algorand's transaction model. ## 2. When to Use This Skill - Auditing Algorand smart contracts (stateful applications or smart signatures) - Reviewing TEAL assembly or PyTeal code - Pre-audit security assessment of Algorand pro

Development ClawHub

cosmos-vulnerability-scanner

Agent

# Cosmos Vulnerability Scanner ## Purpose Scan Cosmos SDK modules and CosmWasm contracts for vulnerabilities that cause chain halts, consensus failures, or fund loss. Spawns parallel scanning agents — each specializing in a vulnerability category — that return findings to the main skill, which then writes them as individual markdown files to an output directory. **Output directory**: defaults to `.bughunt_cosmos/`. If the user specifies a different directory in their prompt, use that instead. ## When to Use

Development ClawHub

solana-vulnerability-scanner

Skill

# Solana Vulnerability Scanner ## 1. Purpose Systematically scan Solana programs (native and Anchor framework) for platform-specific security vulnerabilities related to cross-program invocations, account validation, and program-derived addresses. This skill encodes 6 critical vulnerability patterns unique to Solana's account model. ## 2. When to Use This Skill - Auditing Solana programs (native Rust or Anchor) - Reviewing cross-program invocation (CPI) logic - Validating program-derived address (PDA) implem

Development ClawHub

agent-bom vulnerability intel

Agent

Use agent-bom to check package, SBOM, inventory, and agent dependency exposure against OSV, GitHub Security Advisories, NVD, EPSS, and CISA KEV with explicit data-boundary choices. Use when a user asks for CVE lookup, advisory intelligence, exploitability context, fix versions, GHSA/OSV/NVD enrichment, or package vulnerability triage.

Development ClawHub

Go安全缺陷检测

Skill

使用govulncheck工具识别、评估并修复Go模块中的安全漏洞,支持直接依赖更新、传递依赖替换和完整修复验证。

Development ClawHub

geoskill-drought-vulnerability-index

Skill

暴露敏感性与适应能力三分量归一化干旱脆弱性评估

Development ClawHub

Kernel Vulnerability Discovery

Skill

Linux 内核漏洞主动发现技能。当用户需要以下操作时使用此技能:(1) 对 Linux 内核特定子系统(io_uring、Netfilter、SMB、OverlayFS 等)进行漏洞挖掘;(2) 使用 fuzzer(syzkaller/trinity)对内核进行模糊测试;(3) 对内核代码进行静态审计和代码审查...

Development ClawHub

Snyk Vulnerability Scanner

Skill

Automates Snyk security vulnerability scanning, GitHub issue reporting, and auto-fix PR creation for repositories. Use when scanning repositories for securit...

Development ClawHub

AI Vulnerability Tracker

Skill

AI 漏洞追踪器 - 在 GitHub 和微信公众号搜索近一个月的 AI 相关漏洞(提示词注入、提示词越狱等),并推送到飞书表格。支持去重和翻译。 搜索关键字: prompt injection, prompt jailbreak, LLM vulnerability, AI security, adversar...

Development ClawHub

Web Vulnerability Assessment

Skill

Generate comprehensive web application vulnerability assessments with OWASP-aligned checklists, remediation guides, and testing scripts. Use when assessing w...

Development ClawHub

OpenClaw Vulnerability Checker

Skill

OpenClaw 安全漏洞检查与配置审计工具。用于检测当前 OpenClaw 版本存在的已知安全漏洞、公网访问安全风险,对比当前版本与最新版本的差异,获取漏洞详情、风险评估、配置审计和升级建议。使用场景:(1) 用户询问"检查一下我的 OpenClaw 版本有什么安全漏洞",(2) 用户说"检查 OpenClaw...