Offensive Data Exfiltration
Offensive Data Exfiltration is an agent skill (a SKILL.md file) from SnailSploit/Claude-Red. Dense methodology covering DNS exfiltration (dnscat2, iodine, dns2tcp), HTTPS tunneling (domain fronting, CDN abuse, legitimate service channels), ICMP tunneling (icmpsh, ptunnel-ng), cloud storage. It works with Claude Code and has 7,321 GitHub stars across a repository of 4 listed skills.
- Multi-skill repo
- Data & analysis
- Actively maintained
Add this skill
Claude
Claude Code loads skills from ~/.claude/skills/ (all projects) or .claude/skills/ (one project):
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/post-exploitation/offensive-data-exfiltration ~/.claude/skills/offensive-data-exfiltration # personal, or .claude/skills in a projectIn the Claude apps, zip the offensive-data-exfiltration folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).
ChatGPT / Codex
Codex reads skills from .agents/skills/ in a repo or ~/.agents/skills/ for every project:
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/post-exploitation/offensive-data-exfiltration .agents/skills/offensive-data-exfiltration # repo; ~/.agents/skills for all projectsStandalone skills also load in the ChatGPT desktop app.
Cursor
Cursor loads skills from .cursor/skills/ (or ~/.cursor/skills/) and also reads .claude/skills/:
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/post-exploitation/offensive-data-exfiltration .cursor/skills/offensive-data-exfiltration # project; ~/.cursor/skills for all projectsSource (checked Oct 7, 2026): code.claude.com/docs/en/skills (opens in a new tab), support.claude.com/en/articles/12512180-using-skills-in-claude (opens in a new tab), learn.chatgpt.com/docs/build-skills (opens in a new tab), cursor.com/docs/context/skills (opens in a new tab)
What this skill does
Dense methodology covering DNS exfiltration (dnscat2, iodine, dns2tcp), HTTPS tunneling (domain fronting, CDN abuse, legitimate service channels), ICMP tunneling (icmpsh, ptunnel-ng), cloud storage dead drops (S3 presigned URLs, Azure Blob SAS tokens, GCS signed URLs), email-based exfil (SMTP, EWS, draft method), steganography (image, audio, document metadata), encoding/encryption (base64 chunking, XOR, AES), covert channels (custom protocol tunneling, HTTP header encoding, timing channels),…
More skills in SnailSploit/Claude-Red
4 skills are listed from this repository.
Similar skills
More data & analysis skills
Migration
JuliusBrussee/caveman
Implement reversible compatibility-safe transitions.
Data & analysisGoDating Web
nexu-io/open-design
A consumer-feeling dating / matchmaking dashboard — left rail navigation, ticker bar of community signals, headline KPIs, a 30-day mutual-matches bar chart, and a match-rate trend block.
Data & analysisTypeScriptDcf Valuation
nexu-io/open-design
Discounted cash flow valuation and intrinsic value analysis for public companies.
Data & analysisTypeScriptFlowai Live Dashboard Template
nexu-io/open-design
Team-management dashboard skill in the FlowAI aesthetic — three tabs (Team Members, Team Details, Activity Log), KPI stat row, member table, role distribution bar chart, online presence and activity…
Data & analysisTypeScriptHow It Works
thedotmack/claude-mem
Explain how claude-mem captures observations, when memory injection kicks in, and where data lives.
Data & analysisTypeScriptWeekly Digests
thedotmack/claude-mem
Generate a serial week-by-week narrative digest of a project's full claude-mem timeline.
Data & analysisTypeScript
What is the Offensive Data Exfiltration skill?
Offensive Data Exfiltration is an agent skill (a SKILL.md file) from SnailSploit/Claude-Red. Dense methodology covering DNS exfiltration (dnscat2, iodine, dns2tcp), HTTPS tunneling (domain fronting, CDN abuse, legitimate service channels), ICMP tunneling (icmpsh, ptunnel-ng), cloud storage. It works with Claude Code and has 7,321 GitHub stars across a repository of 4 listed skills. Its SKILL.md lives at github.com/SnailSploit/Claude-Red/Skills/post-exploitation/offensive-data-exfiltration.
How do I install the Offensive Data Exfiltration skill?
Copy the offensive-data-exfiltration folder (the one containing SKILL.md) into ~/.claude/skills/ for Claude Code, .agents/skills/ for Codex or .cursor/skills/ for Cursor. The agent picks it up automatically when a task matches its description.
Is the Offensive Data Exfiltration skill free?
Yes. The repository is open source under the MIT license.
Is Offensive Data Exfiltration maintained?
The repository's most recent commit was on Sep 19, 2026. Its latest release is v0.3.0. appsgit only lists skills from repositories with a commit in the last six months.