Skip to main content
Exécutez n'importe quel Skill dans Manus
en un clic
Dépôt GitHub

Tesserin-pro

Tesserin-pro contient 16 skills collectées depuis Samurai-goose, avec une couverture métier par dépôt et des pages de détail sur le site.

skills collectés
16
Stars
5
mis à jour
2026-03-12
Forks
6
Couverture métier
2 catégories métier · 100% classifié
explorateur de dépôts

Skills dans ce dépôt

active-directory-and-identity-audit
Analystes en sécurité de l'information

Audit Active Directory, LDAP, and enterprise identity infrastructure for misconfigurations, privilege escalation paths, Kerberos weaknesses, trust relationship abuse, and credential exposure.

2026-03-12
api-security-review
Analystes en sécurité de l'information

API-specific security testing for REST, GraphQL, WebSocket, and gRPC endpoints. Covers authentication, authorization, injection, rate limiting, mass assignment, and API-specific attack patterns.

2026-03-12
bug-bounty-triage
Analystes en sécurité de l'information

Intake, deduplication, severity assignment, and prioritization of security findings for bug bounty and pentest engagements. Processes raw findings into actionable triaged items.

2026-03-12
ci-cd-supply-chain-security
Analystes en sécurité de l'information

Audit CI/CD pipelines and software supply chains for poisoning vectors, secret exposure, artifact tampering, dependency confusion, and build environment compromise. Covers GitHub Actions, GitLab CI, Jenkins, and container build pipelines.

2026-03-12
cloud-config-audit
Analystes en sécurité de l'information

Audit cloud infrastructure configuration for security misconfigurations across AWS, Azure, and GCP. Covers IAM, storage, networking, compute, and logging. Reviews IaC templates (Terraform, CloudFormation, Pulumi).

2026-03-12
container-and-runtime-security
Analystes en sécurité de l'information

Assess container runtime security including escape paths, kernel exploitation, capability abuse, namespace breakouts, and orchestration runtime issues beyond static configuration review.

2026-03-12
dependency-and-secret-audit
Analystes en sécurité de l'information

Audit third-party dependencies for known vulnerabilities and detect hardcoded secrets, API keys, and credentials in source code, configuration, and git history.

2026-03-12
evidence-and-reporting
Analystes en sécurité de l'information

Compile, format, and generate security assessment reports from triaged findings. Produces consistent, professional reports with executive summaries, finding details, remediation guidance, and validation notes.

2026-03-12
exploit-validation
Analystes en sécurité de l'information

Develop and execute proof-of-concept exploits to validate suspected vulnerabilities. Confirms exploitability, measures real impact, and produces reproducible evidence for confirmed findings.

2026-03-12
indepth-recon-analysis
Analystes en sécurité de l'information

Deep reconnaissance review and attack surface mapping. Analyzes gathered recon data to identify exposed services, entry points, technology stacks, and potential attack vectors.

2026-03-12
mobile-security-assessment
Analystes en sécurité de l'information

Security assessment of iOS and Android mobile applications. Covers OWASP Mobile Top 10, reverse engineering, runtime manipulation, data storage, network security, certificate pinning bypass, and platform-specific attack patterns.

2026-03-12
network-infrastructure-pentest
Analystes en sécurité de l'information

Network-layer security assessment covering segmentation validation, service enumeration, firewall rule analysis, protocol attacks, and infrastructure exposure testing.

2026-03-12
secure-code-review
Analystes en assurance qualité des logiciels et testeurs

Source-level vulnerability hunting. Systematic review of application source code for injection flaws, auth bypasses, logic bugs, cryptographic weaknesses, and unsafe patterns. Operates on code files within the workspace.

2026-03-12
security-governance
Analystes en sécurité de l'information

Establishes engagement rules, authorization boundaries, and operational guardrails for all security review skills. Must be invoked before any assessment work begins.

2026-03-12
threat-modeling
Analystes en sécurité de l'information

Proactive threat identification using structured frameworks (STRIDE, PASTA). Models data flows, trust boundaries, and threat actors to prioritize security testing and contextualize findings with business risk.

2026-03-12
web-misconfig-review
Analystes en sécurité de l'information

Review web server, application, and infrastructure configuration for security misconfigurations. Covers headers, TLS, CORS, error handling, directory exposure, and deployment hygiene.

2026-03-12
Tesserin-pro Agent Skills sur GitHub | SkillsMP