PoC-Validator Skill
SkillDatabases & dataLets your agent generate and test proof-of-concept exploits like SQL injection inside an isolated sandbox.
Use PoC-Validator Skill in Claude, ChatGPT or Ahel Desktop
Free. Sign in, add PoC-Validator Skill and connect your AI. About a minute.
Also: Claude Code · Cursor · Codex
Then ask your AI: use the PoC-Validator Skill skill
Details
Instructions available. Your AI can read the instructions. Execution depends on the setup they require.
Account requirements not reviewed. Check the skill instructions before use; ahel provides instructions and does not run this skill.
No other account needed.
Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
About this skill
Proof-of-Concept (PoC) Validation Skill for security exploit verification. Use when validating exploitability of vulnerabilities, generating tailored payloads, executing exploits in sandboxed environments, or verifying successful exploitation (e.g., SQL injection, CVE exploitation, command injection
What this skill tells your AI
The instructions your AI receives, as published by shadd0wtaka/zen-ai-pentest in .agents/skills/poc-validator/SKILL.md and read by ahel’s review.
Validates vulnerability exploitability through controlled payload generation, sandboxed execution, and success verification.
Quick Start
Generate and validate a PoC for SQL injection:
from scripts.payload_generator import PayloadGenerator
from scripts.sandbox_executor import SandboxExecutor
from scripts.verify_exploit import ExploitVerifier
# Generate payload
gen = PayloadGenerator()
payload = gen.generate_sql_payload(
target_url="http://target.com/login",
parameter="username",
technique="error_based"
)
# Execute in sandbox
executor = SandboxExecutor()
result = await executor.execute_sqlmap(
target="http://target.com/login",
payload=payload,
risk_level=2
)
# Verify success
verifier = ExploitVerifier()
is_exploitable = await verifier.verify_sql_injection(result)
Workflow
1. Payload Generation
Use scripts/payload_generator.py for:
- CVE-based exploits: Lookup known payloads from vulnerability_mapping.json
- SQL Injection: Error-based, Union-based, Time-based, Boolean-based
- Command Injection: System command payloads with evasion techniques
- Path Traversal: Directory traversal sequences
- XXE/XML Injection: External entity payloads
See references/payload_patterns.md for complete payload library.
2. Sandbox Execution
Use scripts/sandbox_executor.py for isolated exploit testing:
- Docker container isolation with resource limits
- Network isolation (no egress to private ranges)
- Execution timeouts (default: 300s)
- Read-only filesystem with tmpfs for output
- Automatic cleanup post-execution
Critical: All exploit execution MUST use sandbox. Never run exploits directly on host.
3. Success Verification
Use scripts/verify_exploit.py to confirm exploitation:
- SQL Injection: Detect database version extraction, table enumeration
- RCE: Verify command output in response
- Auth Bypass: Confirm session token/admin access
- Data Exfiltration: Detect sensitive data patterns in responses
- File Upload: Verify file presence/execution
Risk Levels
| Level | Payload Type | Tools | Use Case |
|---|---|---|---|
| 0 | Passive detection | None | Vulnerability confirmation only |
| 1 | Safe payloads | SQLMap --risk 1 | Non-destructive testing |
| 2 | Active exploitation | SQLMap --risk 2, Metasploit | Controlled exploitation |
| 3 | Aggressive | All tools with full payloads | Full PoC validation |
Integration with Zen-AI-Pentest
# Integration with ExploitAgent
from autonomous.exploit_validator import ExploitValidator
def validate_poc(self, vulnerability: dict) -> dict:
"""Validate vulnerability with PoC execution."""
validator = ExploitValidator(
sandbox_enabled=True,
risk_level=vulnerability.get("risk", 1)
)
return validator.validate(
vuln_type=vulnerability["type"],
target=vulnerability["target"],
evidence=vulnerability["evidence"]
)
Safety Controls
Before any exploit execution:
- Validate target is not in private ranges (guardrails/ip_validator.py)
- Confirm explicit authorization in database
- Set execution timeout
- Enable Docker sandbox
- Log all actions to audit trail
See references/safety_requirements.md for complete safety checklist.
Error Handling
| Error | Cause | Solution |
|---|---|---|
| Sandbox timeout | Payload too slow | Increase timeout or use faster technique |
| Container crash | Resource exhaustion | Reduce threads, increase memory limit |
| Network blocked | Egress filtering | Verify allowed outbound in config |
| Verification failed | WAF/IPS blocking | Try evasion techniques from payload_patterns.md |
Output Format
{
"poc_id": "uuid",
"vulnerability_id": "vuln-123",
"status": "verified|failed|inconclusive",
"exploit_type": "sql_injection|rce|xxe|...",
"payload_used": "...",
"sandbox_logs": "...",
"evidence": {
"before": "...",
"after": "...",
"extracted_data": "..."
},
"risk_level": 2,
"timestamp": "2026-03-20T14:46:00Z",
"verified_by": "exploit_agent_v3"
}
References
- Payload Patterns Library - Complete payload collection
- Sandbox Setup Guide - Docker configuration details
- Safety Requirements - Mandatory safety checks
- CVE Database Schema - CVE lookup structure
Scripts
scripts/payload_generator.py- Generate tailored exploit payloadsscripts/sandbox_executor.py- Execute exploits in Docker sandboxscripts/verify_exploit.py- Verify exploitation successscripts/cleanup_sandbox.py- Clean up sandbox resources
Signals
- GitHub stars
- 470
- Forks
- 82
- Last commit
- Oct 2026
ahel review
K1binfo
installs-packages (in references/docker_sandbox_setup.md)
Automated review, not a security audit. Ruleset v1+k2.
Advanced
- Item type
- skill
- Key
poc-validator- Source
- github.com/shadd0wtaka/zen-ai-pentest
github.com/shadd0wtaka/zen-ai-pentest
Related picks
Skill · stbenjam
The pick for Dependenciesmaintenance-orchestration
Skill · a5c-ai
The pick for Dependenciesowasp-security
Skill · davila7
The pick for Web (OWASP)security-and-hardening
Skill · addyosmani
The pick for Web (OWASP)docker-agent-run
Skill · docker
The pick for Dockerdocker-sandbox
Skill · joelhooks
The pick for Docker