Skip to main content
Zyrexnn
GitHub creator profile

Zyrexnn

Repository-level view of 90 collected skills across 1 GitHub repositories.

skills collected
90
repositories
1
updated
Aug 24, 2026
repository map

Where the skills live

Top repositories by collected skill count, with their share of this creator catalog and occupation spread.

repository explorer

Repositories and representative skills

autonomous-godmode-hunter
unclassified

Autonomous end-to-end security research and full-surface bug hunting engine. Executes non-stop reconnaissance, attack-surface discovery, parameter mining, multi-stage vulnerability verification, minimal-impact PoC generation, and structured reporting on…

Aug 24, 2026
reporting
unclassified

Generates standardized, professional Bug Bounty vulnerability reports in markdown format following HackerOne and Bugcrowd standards.

Aug 24, 2026
engagement-deliverables-and-validation
unclassified

Workspace conventions for authorized security-engagement deliverables — canonical report location (/workspace/reports/<target>/), plain files not zip, follow-the-existing-format rule, report-aggregator overwrite trap, bypass-before-clear validation gate for…

Aug 24, 2026
hunt-account-abuse
unclassified

Hunt non-ATO account-abuse vulnerabilities — logic flaws in authentication/account endpoints that cause harm without taking over another account. Covers: per-email account-lockout DoS (rate-limit keyed on victim email instead of IP), HTTP-method anomalies on…

Aug 24, 2026
hunt-dispatch
computer-occupations-all-other

Skill-set loader for /hunt orchestrator. Fingerprints the target, picks the right platform attack skills, and loads the Red Team or WAPT skill set. Use when /hunt has just received a mode answer (redteam or wapt + blackbox|greybox) and needs to load the…

Aug 23, 2026
ai-api-gateway-security
information-security-analysts

Assess deployments of New API / One API (and forks) — AI API routers / gateways ("Unified AI API gateway" SPAs) and their Midtrans-backed storefront subdomains (topup.* / shop.*). Covers target identification, JS-bundle route mining, the misleading /api/setup…

Aug 23, 2026
blackbox-web-audit
information-security-analysts

Authorized black-box web/API audit WITHOUT test accounts — unauth probing discipline, unauth-IDOR rounds using leaked IDs, JS-bundle-first attack surface mapping, non-destructive gates, and local report delivery conventions (no zip, follow sibling example…

Aug 23, 2026
bug-bounty-reporting-workflow
information-security-analysts

Class-level workflow for authorized bug bounty / web pentest engagements — covers report language, mandatory validation gate, sensitive-data emphasis, and CORS/API discovery techniques. Use whenever the user asks to "check", "recon", "pentest", or write a bug…

Aug 23, 2026
Showing 8 of 90 collected skills.
Showing 1 of 1 repositories
All repositories loaded