AATMF T12 — RAG & Knowledge Base Manipulation. PoisonedRAG, vector store flood, embedding collision, retrieval-bias attacks.
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٣١٢ من skills من PurpleAILAB/Decepticon. افتح أي skill لمراجعة مصدره وتفاصيله.
PurpleAILAB/Decepticonعرض ٣٢ من أصل ٣١٢ skills مجمعة.
AATMF T12 — RAG & Knowledge Base Manipulation. PoisonedRAG, vector store flood, embedding collision, retrieval-bias attacks.
لغة النص الأصلي: الإنجليزية
AATMF T13 — AI Supply Chain & Artifact Trust. Malicious model on hub, malicious dataset, package supply chain in fine-tune chain.
لغة النص الأصلي: الإنجليزية
AATMF T14 — Infrastructure & Economic Warfare. Endpoint DoS via expensive prompts, model-API account exhaustion, GPU resource starvation, billing weaponization.
لغة النص الأصلي: الإنجليزية
AATMF T15 — Human-AI Coupling. Deepfake escalation, voice clone vishing, deepfake-image-driven social engineering, automation of human-targeted attacks.
لغة النص الأصلي: الإنجليزية
NetExec (CrackMapExec successor) — unified SMB/LDAP/MSSQL/WinRM/RDP/SSH/FTP/VNC protocol auth + post-auth modules. 200+ modules incl. BloodHound auto-ingest, ESC1-15 scanning, PrintNightmare, LDAP relay.
لغة النص الأصلي: الإنجليزية
Cipher detection + automated decryption via Ciphey, Cyberchef recipes, hashcat hash-ID, format conversion, common encoding chains.
لغة النص الأصلي: الإنجليزية
Dependency confusion — publish a higher-version internal package name on public registry (npm/PyPI/Maven/Crates) to coerce CI/CD into pulling attacker code.
لغة النص الأصلي: الإنجليزية
Supply-chain attack category — dependency confusion, typosquatting, package-registry abuse, build-pipeline poisoning, SBOM manipulation.
لغة النص الأصلي: الإنجليزية
Account Takeover decision tree — 9 canonical ATO paths, chaining patterns (IDOR→ATO, XSS→ATO, OAuth→ATO), MFA bypass entry points.
لغة النص الأصلي: الإنجليزية
Business logic / authentication bypass / privilege escalation — POST body field tampering (role/is_admin/user_type), 2FA bypass via response manipulation, predictable TOTP seeds, hidden authorization headers, multi-step workflow tampering. For challenges…
لغة النص الأصلي: الإنجليزية
Web cache deception — trick CDN/proxy into caching authenticated responses under unauthenticated URLs, exposing PII to any visitor.
لغة النص الأصلي: الإنجليزية
DOM clobbering — abuse named HTML elements to overwrite JavaScript global variables, bypass CSP, hijack object property lookups.
لغة النص الأصلي: الإنجليزية
Arbitrary file upload exploitation — webshell upload, extension bypass, content-type manipulation, and upload-to-RCE techniques.
لغة النص الأصلي: الإنجليزية
GraphQL exploitation — introspection, injection, authorization bypass, and data exfiltration through GraphQL APIs.
لغة النص الأصلي: الإنجليزية
JSON Web Token attacks — algorithm confusion (alg=none, HS256↔RS256), kid header injection, JWKS spoofing, weak HMAC secret cracking, signature stripping.
لغة النص الأصلي: الإنجليزية
LDAP injection — auth bypass via filter manipulation, blind data extraction, search filter abuse, DN injection.
لغة النص الأصلي: الإنجليزية
Path traversal and Local File Inclusion (LFI) — arbitrary file reading via directory traversal, PHP filter/input/data wrappers for RCE, log poisoning, static resource disclosure, and information leakage. Use for any challenge involving file path manipulation,…
لغة النص الأصلي: الإنجليزية
Mass assignment + ORM leak — inject extra fields into create/update requests, escalate to admin, leak protected fields via response.
لغة النص الأصلي: الإنجليزية
NoSQL injection — MongoDB operator injection ($ne, $gt, $where, $regex), CouchDB / Firebase / Redis attack patterns, auth bypass, blind extraction.
لغة النص الأصلي: الإنجليزية
OAuth 2.0 / OIDC attacks — redirect_uri bypass, state CSRF, code leak via Referer, response_type confusion, PKCE downgrade, scope creep, ATO chains.
لغة النص الأصلي: الإنجليزية
Open redirect + tabnabbing — URL filter bypass, OAuth chain extension, phishing infrastructure-free, SSRF chain.
لغة النص الأصلي: الإنجليزية
Reverse proxy misconfigurations — nginx alias traversal, Apache mod_rewrite SSRF, Spring Boot Actuator exposure, Tomcat manager, IIS short-name disclosure.
لغة النص الأصلي: الإنجليزية
SAML 2.0 attacks — XSW (XML Signature Wrapping) variants 1-8, comment injection, signature stripping, assertion forgery, IdP metadata abuse.
لغة النص الأصلي: الإنجليزية
XPath + XSLT injection — query manipulation in XML data stores, server-side XSLT RCE via document() / EXSLT extensions.
لغة النص الأصلي: الإنجليزية
XS-Leaks — cross-site information leaks via timing, frame counting, navigation, error oracles. Side-channel attacks against same-origin authenticated state.
لغة النص الأصلي: الإنجليزية
Cross-Site Scripting (XSS) — reflected, stored, DOM-based XSS exploitation. Covers filter bypass, CSP evasion, bot-triggered cookie exfiltration, admin page scraping, and headless browser flag extraction. Use for any challenge involving client-side JavaScript…
لغة النص الأصلي: الإنجليزية
REST API discovery, GraphQL detection, parameter fuzzing.
لغة النص الأصلي: الإنجليزية
Authentication surface — login endpoints, JWT/OAuth/SAML/SSO/API-key mechanism identification.
لغة النص الأصلي: الإنجليزية
Cookie-conditional sink discovery — bisect required cookies per sink, session-write timeline for race-condition challenges.
لغة النص الأصلي: الإنجليزية
Web app discovery — directory/file fuzzing, vhost discovery, JavaScript endpoint extraction.
لغة النص الأصلي: الإنجليزية
Web Application Firewall fingerprinting — Cloudflare, AWS WAF, Akamai, Imperva, etc.
لغة النص الأصلي: الإنجليزية
Anti-bot evasion, proxy rotation, credential retrieval from password managers, and stealth HTTP tooling for covert web operations.
لغة النص الأصلي: الإنجليزية