# Pentest Tools

> 渗透工具速查 — 编码解码、反向Shell、红队工具、漏洞利用、密码攻击、内网工具、凭据窃取、提权、隧道代理、系统命令、信息收集、域渗透、Web工具、Windows工具

- **Type:** Skill
- **Install:** `agentstack add skill-netw0rknoob-vulnclaw-pentest-tools`
- **Verified:** Yes — security-reviewed for prompt injection and unsafe behavior
- **Seller:** [Netw0rkNoob](https://agentstack.voostack.com/s/netw0rknoob)
- **Installs:** 0
- **Category:** [Security](https://agentstack.voostack.com/c/security)
- **Latest version:** 0.1.0
- **License:** MIT
- **Upstream author:** [Netw0rkNoob](https://github.com/Netw0rkNoob)
- **Source:** https://github.com/Netw0rkNoob/VulnClaw/tree/main/vulnclaw/skills/specialized/pentest-tools
- **Website:** https://unclecheng-li.github.io/vulnclaw.com

## Install

```sh
agentstack add skill-netw0rknoob-vulnclaw-pentest-tools
```

Requires the [AgentStack CLI](https://agentstack.voostack.com/docs/cli). Works with Claude Code, Cursor, and any MCP-compatible agent.

## About

# 渗透工具速查 Skill

当已知测试方向，需要选型工具或回忆命令时使用本 Skill。是操作支撑层，不是方法论替代。

**使用场景**：
- 已确认漏洞类型，需要对应工具和命令
- 记不住某个工具的具体参数
- 需要快速筛选同一任务下的候选工具

**边界**：本 Skill 帮助选型和回忆工具，不替代方法论。工具选择应跟随当前工作流阶段，而不是反过来。

## 工具分类速查

| 分类 | 覆盖范围 |
|-----|---------|
| 编码解码 | Base64/URL/Hex/Unicode/HTML 编解码 |
| 反向 Shell | Bash/Python/PowerShell/Netcat/Socat |
| 红队工具 | Cobalt Strike/Metasploit/Covenant |
| 漏洞利用 | Exploit-DB/Searchsploit/自动化框架 |
| 密码攻击 | Hashcat/John/Hydra/Cewl |
| 内网渗透 | Impacket/CrackMapExec/BloodHound |
| 凭据窃取 | Mimikatz/LaZagne/Secretsdump |
| 提权 | LinPEAS/WinPEAS/PowerUp/BeRoot |
| 隧道代理 | Chisel/Ligolo/FRP/Socat/SSH |
| 系统命令 | Linux/Windows 常用命令集 |
| 信息收集 | Nmap/Masscan/Amass/Subfinder |
| 域渗透 | BloodHound/Certipy/Rubeus/Kekeo |
| Web 工具 | SQLmap/Nuclei/FFUF/Burp |
| Windows 渗透 | PowerShell/WMI/WMIC/PowerView |

## 参考文档

- `references/tools-reference-01~14-*.md` — 各工具分类详细参考（14 个）
- `references/pentest-tools-reference-skill.md` — 工具参考入口
- `references/tools-reference-index.md` — 工具参考索引

## Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

- **Author:** [Netw0rkNoob](https://github.com/Netw0rkNoob)
- **Source:** [Netw0rkNoob/VulnClaw](https://github.com/Netw0rkNoob/VulnClaw)
- **License:** MIT
- **Homepage:** https://unclecheng-li.github.io/vulnclaw.com

Install and usage instructions live in the source repository linked above.

## Pricing

- **Free** — Free

## Security capabilities

Automated source analysis of v0.1.0 — what this tool can access:

- **Network access:** no
- **Filesystem access:** no
- **Shell / process execution:** no
- **Environment & secrets:** no
- **Dynamic code execution:** no

*"Yes" means the capability is present in the source — more access means more to trust, not that it is unsafe.*


## Versions

- **0.1.0** — security scan: passed — Imported from the upstream source.

## Links

- Listing page: https://agentstack.voostack.com/l/skill-netw0rknoob-vulnclaw-pentest-tools
- Seller: https://agentstack.voostack.com/s/netw0rknoob
- Browse the marketplace: https://agentstack.voostack.com/browse

---
Listed on AgentStack — the marketplace for AI agent skills and MCP servers. Every listing is security-reviewed. Creators keep 70%.
