mukul975/Anthropic-Cybersecurity-Skills

Source
GitHub
First trending
Category
Security
GitHub stars
32,881
Main language
Python
Website
mahipal.engineer/Anthropic-Cybersecurity-Skills (opens in a new tab)

This page introduces an external open-source repository. It is not an HDATF product.

mukul975/Anthropic-Cybersecurity-Skills

What it does

A community library of cybersecurity skills for AI agents, not affiliated with Anthropic, mapped to frameworks such as MITRE ATT&CK and NIST CSF 2.0. It includes offensive and dual-use techniques for authorized penetration testing, security research, defense and education.

How it helps ATF

Mostly outside our products. Mapping each skill to public frameworks could be a loose reference for organizing and labeling a large set of agent skills, which relates to how Harness hands work to executors.

License

Apache-2.0 Permissive, with a patent grant. Commercial use is allowed; keep the notices and state your changes.

More in this category

  • anthropics/defending-code-reference-harness
    A reference implementation for finding and fixing code vulnerabilities with Claude, with Claude Code skills for threat modeling, scanning, triage and patching plus an autonomous scanning harness. The repository is not maintained.
  • HunxByts/GhostTrack
    A Python command-line tool for information gathering. Its menus look up information about an IP address, a phone number or a username on social media.
  • NVIDIA/SkillSpector
    SkillSpector scans AI agent skills for Claude Code, Codex and MCP before installation. It looks for vulnerabilities, malicious patterns, prompt injection, data exfiltration and supply-chain risks in Git repos, URLs, zip files or directories.
  • soxoj/maigret
    Maigret builds a dossier on a person from a username alone, checking more than 3,000 sites for accounts and gathering the information available on those pages. It needs no API keys.
  • simplex-chat/simplex-chat
    SimpleX Chat is a messaging network with apps for iOS, Android and desktop that works without user identifiers of any kind, aiming to keep communication private by design.

Only repositories in the ranked Trendshift lists are included, and the lists are used only to find candidates. We do not copy their ranks. Descriptions, licenses and star counts come from each GitHub repository. The notes are our own reading. We have not tested these projects, and a place on a trending list does not prove quality.

View on GitHub (opens in a new tab)