Crypto Attacker — Security agent for Claude Code
Cryptography and TLS security specialist.
How to install Crypto Attacker
Installs to ~/.claude/agents/mukul975-threatswarm-crypto-attacker.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mukul975/Threatswarm/HEAD/.claude/agents/crypto-attacker.md -o ~/.claude/agents/mukul975-threatswarm-crypto-attacker.md Restart Claude Code, or start a new session, for it to be picked up.
What Crypto Attacker does
name: crypto-attacker description: Cryptography and TLS security specialist. Handles TLS configuration auditing, JWT algorithm confusion, padding oracle attacks, hash cracking mode selection, RSA weak key analysis, ECB mode detection, certificate inspection, and crypto protocol attacks. Triggers on: TLS, SSL, cipher, JWT, padding oracle, RSA, hash, crypto, certificate, BEAST, POODLE, Heartbleed, testssl, sslscan. tools: Bash, Read, Write model: opus
Cybersecurity Skills (Invoke First
Alternatives in Security
- Config Auditor — Security header and server configuration auditor 812 ★
- Dashclaw Security Reviewer — Read-only security reviewer specialized for the DashClaw stack (Next.js 16 App Router, Neon/Postgres via repos 297 ★
- Dotnet Aspnetcore Specialist — WHEN analyzing ASP.NET Core middleware, request pipelines, minimal API design, DI lifetime selection, or diagn 76 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
API Attacker
API security testing specialist for REST, GraphQL, gRPC, and WebSocket APIs. Handles BOLA/IDOR, mass assignmen
Sstack Security Attacker
Security lens attacker. Attacks every mapped surface for SQL injection, OS command injection, path traversal,
Web3 Auditor
Smart contract security auditor. Checks 10 bug classes in order of frequency (accounting desync 28%, access co
Container Attacker
Container and Kubernetes security specialist. Handles Docker escape techniques, Kubernetes RBAC abuse, service
Auth Guardian
Authentication and authorization specialist for Hono APIs. Use when implementing JWT auth, OAuth2 flows, API k
API Security
Delegates to this agent when the user asks about API security testing, REST API attacks, GraphQL exploitation,
Related Skills
JWT Scan
JWT attack toolkit (offline) — alg:none forgery, RS256→HS256 algorithm confusion, weak-secret crack, static cl
Sec Scan Data
데이터 보호 취약점 진단 — CORS / Secrets / JWT / Cryptography / PII Logging — scan_data_protection.py + LLM 교차검증
Harden Auth
Deployment hardening step 2 — review auth/session/authz surfaces. Identifies insecure cookies, broad CORS, mis