pentest-osint-recon
Open Source Intelligence gathering and attack surface management for external reconnaissance.
How do I install this agent skill?
npx skills add https://github.com/jd-opensource/joysafeter --skill pentest-osint-reconIs this agent skill safe to install?
- Gen Agent Trust Hubfail
This skill provides a comprehensive environment for automated penetration testing and intelligence gathering. It includes functions for generating exploits from CVE data, creating malicious payloads with evasion levels, and a generic command execution utility that allows the agent to run arbitrary shell commands, posing a high security risk.
- Socketwarn
1 alert: gptSecurity
- Snykwarn
Risk: MEDIUM · 1 issue
- Runlayerwarn
3/3 files flagged
- ZeroLeakspass
Score: 93/100 · 2 sections analyzed
What does this agent skill do?
Pentest OSINT Recon
Purpose
Gather publicly available information about a target organization to map its external attack surface, including subdomains, emails, and exposed assets.
Core Workflow
- Domain Enumeration: Discover subdomains and related assets using
amassandsubfinder. - Tech Profiling: Identify technologies used on discovered assets using
httpxandwhatweb. - Information Gathering: Search for emails, leaks, and social media presence using
theharvesterand search engines. - Asset Correlation: Correlate IP addresses, domains, and technologies to find weak spots.
- Vulnerability Intel: Check discovered software versions against CVE databases.
References
references/tools.mdreferences/workflows.md
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/jd-opensource/joysafeter/pentest-osint-recon">View pentest-osint-recon on skillZs</a>