xcoy0te

Ext Attack Paths — Development skill for Claude Code

Development community

Launch the ext-attack-planner agent to reason from the enumerated exposures to likely footholds, then present a ranked plan for human approval before any exploitation.

How to install Ext Attack Paths

Installs to ~/.claude/skills/xcoy0te-claude-externalpentest-ext-attack-paths/SKILL.md

Terminal
mkdir -p ~/.claude/skills/xcoy0te-claude-externalpentest-ext-attack-paths && curl -fsSL https://raw.githubusercontent.com/xcoy0te/Claude-ExternalPentest/HEAD/commands/ext-attack-paths.md -o ~/.claude/skills/xcoy0te-claude-externalpentest-ext-attack-paths/SKILL.md

Restart Claude Code, or start a new session, for it to be picked up.

What Ext Attack Paths does


description: Launch the ext-attack-planner agent to reason from the enumerated exposures to likely footholds, then present a ranked plan for human approval before any exploitation.

Reason about exploitation paths from the collected inventory.

**Authorized engagements only.** Reads the active engagement's `scope.md` and the inventory from `/ext-recon`.

Steps:

  1. Resolve the active engagement directory ($EDIR) from ./ext-engagement/.current (fallback: newest folder under `./ex

Alternatives in Development

  • Rank — /rank - Triage Scraped Jobs into a Ranked Shortlist 36.6k ★
  • JWT Scan — JWT attack toolkit (offline) — alg:none forgery, RS256→HS256 algorithm confusion, weak-secret crack, static cl 4.5k ★
  • Fidelity — Measure how faithfully a clone reproduces a site — pixel-diff plus motion-fidelity into one 0-100 score, a let 3.6k ★

Full documentation available on GitHub

View Source Repository