Cover image for project: Trickest OffSec IN PROGRESS

Technical summary

Trickest OffSec connects to the Trickest REST API to orchestrate security scanners (Nuclei, httpx, subfinder, naabu, katana) on managed fleets. Dashboard with workflows/runs/fleets, findings with severity filter and JSON/CSV export, NEXUS task creation from CVEs, and fleet management. Auto-detected JWT/Token authentication. Intel Hub enricher (priority 38) processes IPs, domains and URLs in tasks and comments.

Executed scope

  • plugin.php (55 lines): "Trickest" tab under "Threat Intel" with zap icon, doc, modal, Intel Hub enricher (types ip, domain, url, priority 38), 13 API actions.
  • backend.php (875 lines): config in admin_configs, trickest_request() with 45s curl, auto JWT/Token auth, dashboard (workflows/runs/fleets), workflow execution with configurable fleet/machines, run monitoring with subjobs, findings with severity filter and CSV export, task creation (priority by severity), lightweight Intel Hub enricher (no API call), target extraction (URLs, domains, IPv4).
  • tab.php (546 lines): Alpine.js 6-tab UI (Dashboard, Workflows, Runs, Findings, Fleet, Configuration), lime theme, KPI cards (runs today, total, active, fleets), toast feedback, password API token input, enrichment toggles.
  • modals.php (2 lines): plugin modal registration.
  • fastr.json: /trickest slash command listing recent findings via trickest_findings.
  • doc.md (70 lines): author's technical documentation (PT).
  • icon.svg: Trickest brand icon.

GitHub progress (issues)

Real-time panel with latest repository issues.

abertas (amostra): -- fechadas (amostra): -- base: -- ultimas issues

carregando andamento...

Real results

Integration with the Trickest platform for offensive security workflows (Nuclei, httpx, subfinder, naabu, katana) on managed fleets, with dashboard, findings with JSON/CSV export, NEXUS task creation from CVEs and Intel Hub enrichment — 13 API endpoints and a lime-themed 6-tab UI.

Architecture and organization

Execution and operations

The project follows reproducible execution flow with technical validation in production-like environments.

Screenshots

Talk about this project

Apply this implementation pattern in your environment and accelerate delivery with technical consistency.