Backendsource GitHub
/intel
/intelRécupérez des renseignements exploitables pour une cible.
// contenu du skill
name: intel
description: On-demand intelligence fetch for a target — CVEs, disclosed reports, new features. Wraps learn.py + hunt memory context. Usage: /intel target.com
/intel
Fetch actionable intelligence for a target.
What This Does
- Runs
learn.pyfor CVEs and advisories matching the target's tech stack - Fetches HackerOne Hacktivity for the target (via HackerOne MCP if available)
- Cross-references with hunt memory — flags untested CVEs and new endpoints
- Outputs prioritized intel with hunt recommendations
Usage
/intel target.comOutput
INTEL: target.com
═══════════════════════════════════════
ALERTS:
[CRITICAL] CVE-2026-XXXX — Next.js middleware bypass (CVSS 9.1)
target.com runs Next.js 14.2.3 (vulnerable). Patch: 14.2.4.
→ You haven't tested this endpoint yet. Hunt candidate.
[HIGH] New feature detected: /api/v3/billing/invoices
Not in your tested_endpoints list. 3 new paths.
→ New = unreviewed. Priority hunt target.
[INFO] 2 new disclosed reports on HackerOne for target.com
→ Read for methodology insights before hunting.
MEMORY CONTEXT:
Last hunted: 2026-03-24 (2 days ago)
Tech stack: Next.js 14.2.3, GraphQL, PostgreSQL
Untested CVEs: 1 critical, 0 highData Sources
| Source | What | Auth required? |
|---|---|---|
learn.py — NVD | CVEs matching tech stack | No |
learn.py — GitHub Advisory | Security advisories | No |
learn.py — HackerOne Hacktivity | Disclosed reports | No |
| HackerOne MCP (if connected) | Program stats, policy | No (public) |
| Hunt memory | Previously tested endpoints | Local files |
// source originale publique
elementalsouls/Claude-BugHunter/commands/intel.md
Licence : Other. Consultez le dépôt avant toute réutilisation.
Projet indépendant, non affilié à Anthropic. Ce skill reste la propriété de son auteur original.