with one click
blhackbox
blhackbox contains 11 collected skills from valITino, with repository-level occupation coverage and site-owned skill detail pages.
Skills in this repository
API security testing covering OWASP API Top 10 with active exploitation. Use when the user wants to test REST APIs, GraphQL endpoints, or API security.
Bug bounty hunting workflow with exploitation-driven PoC reports. Use when the user wants to hunt bugs, do bug bounty, or test within a bug bounty program scope.
Custom exploit development workflow — write, test, and iterate on exploit code for discovered vulnerabilities. Use when the user wants to develop custom exploits, write PoC code, adapt public exploits, or generate targeted payloads.
Full attack chain assessment from recon through exploitation with attack chain reporting. Use when the user wants maximum-impact testing, attack chain construction, or complete exploitation assessment.
Run a complete end-to-end penetration test with full exploitation and data extraction against a target. Use when the user wants a comprehensive pentest.
Comprehensive network infrastructure assessment with service exploitation and credential testing. Use when the user wants network-level pentesting, infrastructure assessment, or service enumeration.
Passive open-source intelligence collection against a target domain. Use when the user wants OSINT, passive recon, or intelligence gathering without active scanning.
Fast high-level security scan to quickly identify critical issues. Use when the user wants a quick triage or fast scan of a target.
Comprehensive reconnaissance and attack surface mapping against a target. Use when the user wants deep recon or attack surface discovery without exploitation.
Systematic vulnerability identification, validation, and exploitation against a target. Use when the user wants vulnerability scanning, assessment, or validation with proof of impact.
Focused web application security testing with active exploitation and data extraction. Use when the user wants to test a web app, website, or web application security.