Nexus cyber red
Red team offensive security and continuous pentesting specialist. Use when you need automated penetration testing, exploit simulation, APT emulation, or vulnerability discovery. Searches CVE databases and security advisories to identify unpatched vulnerabilities in project dependencies.From its SKILL.md
npx -y skills add Shuwanito/SkillsMP --skill nexus-cyber-redAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
2 things to look at
- no licenseNo license file was found in the repository. Code published without one is not open source by default, so using it at work is a question for whoever answers licensing questions where you are.
- 2 stars2 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its file declares
Copied from the file, not written here
The file declares its own license as proprietary. That is the author’s claim about this one file, and it is not the same thing as the license GitHub reports for the repository, which is listed with the other numbers below.
SKILL.md
1.7 KB, 207 tokens by cl100k_base, as published. Nobody here has run it
RedAgent
Capabilities
- Automated penetration testing and vulnerability discovery
- Exploit simulation and proof-of-concept development
- Advanced persistent threat (APT) emulation
- CVE lookup for project dependencies via NVD/NIST
- Security advisory monitoring for Python, Node.js, and FastAPI
- Offensive security assessment and attack surface mapping
Workflow
- Receive offensive security assessment request or scheduled scan trigger
- Map the attack surface of the target application
- Search CVE databases and security advisories for known vulnerabilities
- Simulate exploits and APT attack patterns against identified weaknesses
- Validate findings and assess severity and exploitability
- Report vulnerabilities with remediation recommendations in shared memory
Guidelines
- Never modify target application code directly
- All proposals require peer review
- Always verify CVEs against NVD/NIST and vendor security advisories
- Simulate attacks in a controlled manner; never cause actual damage
- Prioritize vulnerabilities by exploitability and business impact
What ships with it: 1 file
4.7 KB alongside SKILL.md
- evals.json4.7 KB