Enterprise DNA

Omni by Enterprise DNA

Enterprise DNA Resources

Latest AI and industry news. Practical AI operating-system thinking for owners, operators, and teams doing real work.

220k+

Data professionals

Omni

AI agents and apps

Audit

Map the manual work

News AI News

A 38-skill offensive-security library for Claude Code (Claude-Red, SQLi through EDR

A 38-skill offensive-security library for Claude Code (Claude-Red, SQLi through EDR evasion, built from real red-team playbooks) is proliferating.

Enterprise DNA |
A 38-skill offensive-security library for Claude Code (Claude-Red, SQLi through EDR

AI Pulse · Under the Radar

A library called Claude-Red just appeared on GitHub with 38 offensive-security skills, everything from SQL injection to endpoint detection and response evasion. It’s built for Claude Code and draws directly from real red-team playbooks. Within days it’s been forked at least four or five times under different names, spreading fast through security communities.

The dual-use problem is obvious. The same packaging pattern that lets you load skills on demand, something we use in the Omni Command Centre for legitimate business automation, works just as well for offensive tooling. Claude-Red doesn’t invent new exploits, but it wraps known techniques into a format that makes them trivial to deploy if you have access to Claude Code. That lowers the barrier.

Why this matters to you

If you’re running a business with any digital surface area, the assumption that exploits require deep technical skill is weakening. Tools like this don’t create vulnerabilities, but they do accelerate how quickly someone can test or exploit them. The forks suggest the model is being adapted and shared inside circles that know what they’re doing.

You don’t need to panic, but you should know this pattern exists. If your team uses AI coding assistants, the same architecture that makes them powerful also makes them extensible in ways you might not control. Review what your developers can load, what your security posture looks like against the basics (SQL injection, privilege escalation, EDR gaps), and whether your logging would catch someone using an AI to probe systematically.

The original repository is public. The speed of the forks tells you this isn’t just a curiosity, it’s being picked up and tested. Treat it as a reminder that the tooling landscape is shifting faster than most compliance frameworks assume.

Free daily email

Get this every morning.

This brief is one item from today's AI Pulse, the short daily read we run for ourselves on what is actually happening in AI. Subscribe free and it lands in your inbox each morning.

Free daily email

Subscribe to the daily AI Pulse

One short read every morning on what is actually happening in AI. Free.

One email a day. Unsubscribe any time.