Skip to main content
Kur1sulab
ملف منشئ GitHub

Kur1sulab

عرض على مستوى المستودعات لـ ١٤٠ skills مجمعة عبر ٢ مستودعات GitHub.

skills مجمعة
١٤٠
مستودعات
٢
محدث
١٢ أغسطس ٢٠٢٦
مستكشف المستودعات

المستودعات و skills الممثلة

401-403-bypass-techniques
محللو أمن المعلومات

401/403 bypass playbook. Use when encountering access-denied responses on admin panels, API endpoints, or restricted paths. Covers path manipulation, HTTP method tampering, header injection, protocol downgrade, and automated bypass tools.

١٢ أغسطس ٢٠٢٦
active-directory-acl-abuse
محللو أمن المعلومات

Active Directory ACL abuse playbook. Use when exploiting misconfigured AD permissions including GenericAll, WriteDACL, DCSync rights, shadow credentials, LAPS reading, GPO abuse, and BloodHound-guided attack paths.

١٢ أغسطس ٢٠٢٦
active-directory-certificate-services
محللو أمن المعلومات

AD Certificate Services attack playbook. Use when targeting misconfigured AD CS for privilege escalation via ESC1-ESC13 template abuse, NTLM relay to enrollment, CA officer abuse, and certificate-based persistence.

١٢ أغسطس ٢٠٢٦
active-directory-kerberos-attacks
محللو أمن المعلومات

Kerberos attack playbook for Active Directory. Use when targeting AD authentication via AS-REP roasting, Kerberoasting, golden/silver/diamond tickets, delegation abuse, or pass-the-ticket attacks.

١٢ أغسطس ٢٠٢٦
android-pentesting-tricks
محللو أمن المعلومات

Android pentesting playbook. Use when testing Android applications for SSL pinning bypass, exported component abuse, WebView vulnerabilities, intent redirection, root detection bypass, tapjacking, and backup extraction during authorized mobile security…

١٢ أغسطس ٢٠٢٦
api-auth-and-jwt-abuse
محللو أمن المعلومات

API authentication and JWT abuse playbook. Use when testing bearer tokens, API keys, claim trust, header spoofing, rate limits, and API auth boundary weaknesses.

١٢ أغسطس ٢٠٢٦
api-authorization-and-bola
محللو أمن المعلومات

API authorization and BOLA testing playbook. Use when APIs expose object identifiers, nested resources, hidden writable fields, or weak function-level authorization.

١٢ أغسطس ٢٠٢٦
api-recon-and-docs
محللو أمن المعلومات

API reconnaissance and documentation review playbook. Use when discovering endpoints, schemas, versions, OpenAPI specs, hidden docs, and surface area for API testing.

١٢ أغسطس ٢٠٢٦
عرض 8 من أصل ١١٢ skills مجمعة.
ai-ml-security
محللو أمن المعلومات

AI/ML security playbook. Use when assessing model supply chain attacks (pickle RCE, poisoned weights), adversarial examples, model poisoning, model stealing, data privacy attacks (membership inference, model inversion), and autonomous agent security risks.

١٢ أغسطس ٢٠٢٦
anti-debugging-techniques
محللو أمن المعلومات

Anti-debugging detection and bypass playbook. Use when reversing protected binaries that detect debuggers via ptrace, PEB flags, timing checks, or signal/exception handlers on Linux and Windows.

١٢ أغسطس ٢٠٢٦
binary-protection-bypass
محللو أمن المعلومات

Binary protection bypass playbook. Use when identifying and bypassing ASLR, PIE, NX/DEP, stack canary, RELRO, FORTIFY_SOURCE, CET, and MTE protections in ELF binaries to enable exploitation.

١٢ أغسطس ٢٠٢٦
classical-cipher-analysis
محللو أمن المعلومات

Classical cipher analysis playbook. Use when encountering substitution ciphers, Vigenere, transposition, XOR, or encoded text in CTF challenges that requires frequency analysis, Kasiski examination, or known-plaintext cryptanalysis.

١٢ أغسطس ٢٠٢٦
code-obfuscation-deobfuscation
محللو أمن المعلومات

Code obfuscation analysis and deobfuscation playbook. Use when reversing binaries protected by junk code, opaque predicates, self-modifying code, control flow flattening, VM protection, or string encryption.

١٢ أغسطس ٢٠٢٦
lattice-crypto-attacks
محللو أمن المعلومات

Lattice-based cryptanalysis playbook. Use when attacking RSA via Coppersmith small roots, recovering DSA/ECDSA nonces from bias, solving knapsack problems, or applying LLL/BKZ reduction to cryptographic constructions.

١٢ أغسطس ٢٠٢٦
memory-forensics-volatility
محللو أمن المعلومات

Memory forensics playbook using Volatility 2/3. Use when analyzing memory dumps for malware analysis, credential extraction, process investigation, code injection detection, and incident response timeline reconstruction.

١٢ أغسطس ٢٠٢٦
rsa-attack-techniques
محللو أمن المعلومات

RSA attack playbook for CTF and real-world cryptanalysis. Use when given RSA parameters (n, e, c) and need to recover plaintext by exploiting weak keys, small exponents, shared factors, or padding oracles.

١٢ أغسطس ٢٠٢٦
عرض 8 من أصل ٢٨ skills مجمعة.
عرض ٢ من أصل ٢ مستودعات
تم تحميل كل المستودعات