resume

GitHub

恢复安全狩猎任务,展示历史、未测试端点及建议。优先处理链式待办和已验证发现,提供基于脑库的模式匹配建议与行动选项,按价值而非时间排序。

.claude/skills/resume/SKILL.md H-mmer/pentest-agents

Trigger Scenarios

用户输入 /resume 命令 需要继续之前的安全测试会话

Install

npx skills add H-mmer/pentest-agents --skill resume -g -y
More Options

Non-standard path

npx skills add https://github.com/H-mmer/pentest-agents/tree/main/.claude/skills/resume -g -y

Use without installing

npx skills use H-mmer/pentest-agents@resume

指定 Agent (Claude Code)

npx skills add H-mmer/pentest-agents --skill resume -a claude-code -g -y

安装 repo 全部 skill

npx skills add H-mmer/pentest-agents --all -g -y

预览 repo 内 skill

npx skills add H-mmer/pentest-agents --list

SKILL.md

Frontmatter
{
    "name": "resume",
    "description": "Resume a previous hunt. Shows hunt history, untested endpoints, memory-informed suggestions. Usage: \/resume target.com",
    "disable-model-invocation": false
}

Resume hunt on: $ARGUMENTS

What This Does

  1. Read brain for target: uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py brief $ARGUMENTS
  2. Read brain exhausted: uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py exhausted $ARGUMENTS
  3. Read chain-pending advisory: cat .claude/agent-memory-local/chain-pending.md 2>/dev/null — feeder findings from prior session waiting for chain dispatch. SURFACE THESE FIRST — they have proven dollar value if chained, vs untested surface which is speculative.
  4. Generate / refresh chain plan: uv run python3 $CLAUDE_PROJECT_DIR/tools/chain_plan.py $ARGUMENTS — writes evidence/<target>/CHAIN_PLAN.md with 3-5 candidate next-links per pending feeder finding plus the agent to dispatch for each. Read this BEFORE picking the next vuln class — proven feeders trump speculative untested surface.
  5. Read recon data from recon/ directory
  6. Show what's been tested vs what remains
  7. Suggest next techniques based on brain patterns

Output

RESUME: target.com
═══════════════════

Brain Status:
  Confirmed findings: N
  Exhausted techniques: N
  Effective techniques: N

Untested Surface:
  1. /api/v2/users/{id}/export — not tested
  2. /api/v2/users/{id}/share — not tested
  ...

Suggestions:
  - Tech stack [X] matches pattern where IDOR was found before
  - Sibling endpoints of confirmed finding not yet tested

Actions:
  [h] /hunt target.com — resume hunting
  [s] /surface target.com — re-rank attack surface
  [r] /recon target.com — re-run recon (surface may have changed)
  [m] /monitor check — check for target changes since last session

Top-Tier Resume Logic

Resume by value, not chronology.

Priority order:

  1. chain-pending confirmed feeders with clear next link
  2. validated partials needing one proof artifact
  3. changed assets from /monitor
  4. untested P1 crown-jewel endpoints
  5. high-confidence class hypotheses from prior wins
  6. stale recon refresh

Show what not to redo. If an area is exhausted, include the exact blocker and matrix coverage. A resumed hunt should start with a single best command, not a menu of every possible command.

Version History

  • 41d49b6 Current 2026-07-24 11:57

Same Skill Collection

.claude/skills/analyze/SKILL.md
.claude/skills/autopilot/SKILL.md
.claude/skills/brain/SKILL.md
.claude/skills/chain/SKILL.md
.claude/skills/correlate/SKILL.md
.claude/skills/dupcheck/SKILL.md
.claude/skills/fullscan/SKILL.md
.claude/skills/hunt/SKILL.md
.claude/skills/learn/SKILL.md
.claude/skills/mindmap/SKILL.md
.claude/skills/monitor/SKILL.md
.claude/skills/new/SKILL.md
.claude/skills/pipeline/SKILL.md
.claude/skills/quality/SKILL.md
.claude/skills/quickscan/SKILL.md
.claude/skills/remember/SKILL.md
.claude/skills/report/SKILL.md
.claude/skills/sast/SKILL.md
.claude/skills/status/SKILL.md
.claude/skills/submit/SKILL.md
.claude/skills/surface/SKILL.md
.claude/skills/sync/SKILL.md
.claude/skills/triage/SKILL.md
.claude/skills/validate/SKILL.md
providers/codex/.agents/skills/analyze/SKILL.md
providers/codex/.agents/skills/autopilot/SKILL.md
providers/codex/.agents/skills/brain/SKILL.md
providers/codex/.agents/skills/chain/SKILL.md
providers/codex/.agents/skills/correlate/SKILL.md
providers/codex/.agents/skills/dupcheck/SKILL.md
providers/codex/.agents/skills/fullscan/SKILL.md
providers/codex/.agents/skills/hunt/SKILL.md
providers/codex/.agents/skills/learn/SKILL.md
providers/codex/.agents/skills/mindmap/SKILL.md
providers/codex/.agents/skills/monitor/SKILL.md
providers/codex/.agents/skills/new/SKILL.md
providers/codex/.agents/skills/pipeline/SKILL.md
providers/codex/.agents/skills/quality/SKILL.md
providers/codex/.agents/skills/quickscan/SKILL.md
providers/codex/.agents/skills/remember/SKILL.md
providers/codex/.agents/skills/report/SKILL.md
providers/codex/.agents/skills/resume/SKILL.md
providers/codex/.agents/skills/sast/SKILL.md
providers/codex/.agents/skills/status/SKILL.md
providers/codex/.agents/skills/submit/SKILL.md
providers/codex/.agents/skills/surface/SKILL.md
providers/codex/.agents/skills/sync/SKILL.md
providers/codex/.agents/skills/triage/SKILL.md
providers/codex/.agents/skills/validate/SKILL.md

Metadata

Files
0
Version
41d49b6
Hash
bc580225
Indexed
2026-07-24 11:57

- 위키
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-08-06 17:29
浙ICP备14020137号-1 $방문자$