BUGGY
buggy.hunt("https://target.com")→ [sqli] signal detectedclaude.triage(finding="blind-sqli")→ [7-gate] passed (7/7)recon.subdomains("target.com")→ [142] active assetsauth.audit_jwt(token="ey...")→ [none-alg] bypass foundbuggy.generate_report(cvss=9.8)→ [hackerone] markdown readyapi.probe_graphql("api.target.com/v1")→ [introspection] enabledm365.enum_users("target.com")→ [pw-spray] safe modemobile.decompile_apk("app.apk")→ [hardcoded-key] leakedbuggy.hunt("https://target.com")→ [sqli] signal detectedclaude.triage(finding="blind-sqli")→ [7-gate] passed (7/7)recon.subdomains("target.com")→ [142] active assetsauth.audit_jwt(token="ey...")→ [none-alg] bypass foundbuggy.generate_report(cvss=9.8)→ [hackerone] markdown readyapi.probe_graphql("api.target.com/v1")→ [introspection] enabledm365.enum_users("target.com")→ [pw-spray] safe modemobile.decompile_apk("app.apk")→ [hardcoded-key] leakedbuggy.hunt("https://target.com")→ [sqli] signal detectedclaude.triage(finding="blind-sqli")→ [7-gate] passed (7/7)recon.subdomains("target.com")→ [142] active assetsauth.audit_jwt(token="ey...")→ [none-alg] bypass foundbuggy.generate_report(cvss=9.8)→ [hackerone] markdown readyapi.probe_graphql("api.target.com/v1")→ [introspection] enabledm365.enum_users("target.com")→ [pw-spray] safe modemobile.decompile_apk("app.apk")→ [hardcoded-key] leaked
Enterprise Platforms SECURITY DOMAIN
Attack chains for M365/Entra, Okta, VMware vCenter, SharePoint, IAM privilege escalation, and enterprise VPN lateral movement.
/cloud-iam-deep
Enterprise PlatformsCloud IAM DeepCloud IAM attack chains across AWS, Azure, GCP — STS/AssumeRole chaining, Managed Identity abuse via SSRF...
claude "/cloud-iam-deep https://target.com"
→ trigger: auto-loaded
/m365-entra-attack
Enterprise PlatformsM365/Entra AttackMicrosoft 365 and Entra ID attack surface — OAuth app consent phishing, token exfiltration via device flo...
claude "/m365-entra-attack https://target.com"
→ trigger: auto-loaded
/okta-attack
Enterprise PlatformsOkta AttackOkta attack patterns — password spray against admin portal, impersonation API abuse, factor bypass via AP...
claude "/okta-attack https://target.com"
→ trigger: auto-loaded
/hunt-sharepoint
Enterprise PlatformsSharePoint HunterSharePoint and OneDrive attack surface — anonymous file access, OOTB webpart XSS, SPFx extension injectio...
claude "/hunt-sharepoint https://target.com"
→ trigger: auto-loaded
/enterprise-vpn-attack
Enterprise PlatformsEnterprise VPN AttackEnterprise VPN attack surface — Pulse Secure, Fortinet, Cisco AnyConnect pre-auth RCE, credential spray, ...
claude "/enterprise-vpn-attack https://target.com"
→ trigger: auto-loaded
/vmware-vcenter-attack
Enterprise PlatformsVMware vCenter AttackVMware vCenter attack chain — CVE-2021-21985, CVE-2021-22005 pre-auth RCE, credential extraction from vCe...
claude "/vmware-vcenter-attack https://target.com"
→ trigger: auto-loaded