Ext Exploit — Security skill for Claude Code
Execute ONE approved step from the external attack plan via the ext-exploit-operator agent, with human confirmation before anything intrusive.
How to install Ext Exploit
Installs to ~/.claude/skills/xcoy0te-claude-externalpentest-ext-exploit/SKILL.md
mkdir -p ~/.claude/skills/xcoy0te-claude-externalpentest-ext-exploit && curl -fsSL https://raw.githubusercontent.com/xcoy0te/Claude-ExternalPentest/HEAD/commands/ext-exploit.md -o ~/.claude/skills/xcoy0te-claude-externalpentest-ext-exploit/SKILL.md Restart Claude Code, or start a new session, for it to be picked up.
What Ext Exploit does
description: Execute ONE approved step from the external attack plan via the ext-exploit-operator agent, with human confirmation before anything intrusive. Reads the scope and attack plan; records exactly what ran for the report.
Execute one approved exploitation step.
**Authorized engagements only.** Reads the active engagement's `scope.md` and `attack-plan.md`. If either is missing, stop and point the operator to `/ext-scope` / `/ext-attack-paths`.
Steps:
- **Resolve the active enga
Alternatives in Security
- Engage.Exploit — Execute Phase 4 - Exploitation and Access Establishment 348 ★
- Security Health Check — Execute the security-health-inline skill for inline orchestration 172 ★
- Tool Approval Security Filter — You are a security filter for Claude Code tool execution 163 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Attack Surface
External attack-surface / recon audit of domains YOU OWN (your sites + subdomains, client sites under contract
Ext Report
Launch the ext-reporter agent to turn the external-pentest engagement artifacts (scope, inventory, attack plan
Cairn Review PR
Reviews an open PR/MR — code-review findings plus cairn's security checklist and fix-lane tags, drafted and ga
Exploit Confirm
Prove a SUSPECTED finding with one targeted, SOC-stealth, operator-supervised confirmation probe (confirm_ too
Cleanfiles
Sweep the repo's accumulating working files: audit first, apply only after operator confirmation, one reviewab
Finish Him
"Cold ass mother fcker." Sub-Zero. Audit the project, plan the path to win, then execute step by step with rea
Related Agents
Ext Exploit Operator
Executes ONE approved step from an external-pentest attack plan in an authorized engagement. Runs the specific
Ad Exploit Operator
Executes ONE exploitation step from an approved attack plan in an authorized Active Directory assessment, invo
Scope Exploit
Red team operator — context-driven permission discovery, escalation path identification with real-world resear