Skip to main content

このリポジトリの skills

abelrguezr/hacktricks-skills - 11ページ

SkillsMP は abelrguezr/hacktricks-skills から 908 件の skill を収集しています。skill を開くとソースと詳細を確認できます。

abelrguezr/hacktricks-skills

収集済み skill 908 件中 40 件を表示しています。

職業分類
情報セキュリティアナリスト
説明

How to reverse engineer Android native libraries (.so files) for security analysis, malware triage, and vulnerability research. Use this skill whenever you need to analyze, decompile, or instrument Android native code, extract JNI bindings, dump…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Use this skill for Android security testing, privilege escalation analysis, and system API exploration using Shizuku. Trigger when users mention Android pentesting, security auditing, Shizuku, privileged APIs, ADB debugging, mobile security assessments,…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Android APK decompilation, Smali code modification, and recompilation for security testing. Use this skill whenever the user mentions APK analysis, Android app security testing, decompiling Android applications, modifying Smali code, reverse engineering…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

How to bypass regional restrictions on Google Play Store during Android app security testing. Use this skill whenever you need to access region-locked Android applications, test geo-restricted app behavior, or install apps unavailable in your current location…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Test Android applications for tapjacking vulnerabilities. Use this skill whenever you're doing Android app security testing, pentesting, or analyzing exported activities for clickjacking risks. Trigger when the user mentions tapjacking, clickjacking, overlay…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Android WebView security assessment and exploitation. Use this skill whenever the user mentions WebView vulnerabilities, Android app pentesting, JavaScript bridges, deep-linking attacks, file access in WebViews, or needs to test WebView configurations.…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Android APK penetration testing methodology and checklist. Use this skill whenever analyzing Android applications for security vulnerabilities, performing mobile app security assessments, reverse engineering APKs, or conducting static/dynamic analysis of…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Security testing and analysis for Apache Cordova hybrid mobile applications. Use this skill whenever you need to clone, analyze, or pentest Cordova apps (APK/IPA files), identify WebView vulnerabilities, hook JavaScript-to-native bridges with Frida, or harden…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Exploit unauthenticated remote input injection in Air Keyboard iOS app (port 8888) and Android companion (port 55535). Use this skill whenever you need to discover, test, or exploit the Air Keyboard vulnerability on a local network, or when analyzing mobile…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS security testing operations including device identification, shell access, data transfer, app extraction, and decryption. Use this skill whenever the user needs to perform iOS pentesting tasks, identify iOS devices, access device shells, transfer data…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Configure Burp Suite for iOS device traffic interception and SSL pinning bypass. Use this skill whenever the user needs to set up Burp proxy on iOS devices, install Burp certificates, configure iOS simulators for mobile security testing, analyze iOS network…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Comprehensive iOS application security testing checklist. Use this skill whenever you need to pentest an iOS app, perform mobile security assessments, check for iOS vulnerabilities, analyze iOS data storage, test iOS authentication, or audit iOS applications…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Extract entitlements and mobile provision files from iOS app binaries (IPA files, compiled apps, or jailbroken device binaries). Use this skill whenever the user needs to analyze iOS app permissions, review embedded entitlements, extract plist data from…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS mobile security testing with Frida instrumentation. Use this skill whenever the user needs to perform iOS app pentesting, hook Objective-C/Swift methods, bypass jailbreak detection, fuzz iOS applications, inspect memory, or analyze iOS binaries. Trigger…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS app extension security testing. Use this skill whenever the user needs to test iOS app extensions for security vulnerabilities, analyze extension configurations, or perform static/dynamic analysis on iOS app extensions. Trigger for any iOS security…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS security architecture and pentesting fundamentals. Use this skill whenever the user mentions iOS security, mobile app pentesting, iOS app analysis, Info.plist inspection, Keychain investigation, data protection classes, sandboxing, or anything related to…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS security testing for custom URI handlers, deeplinks, and custom schemes. Use this skill whenever testing iOS apps for URL scheme vulnerabilities, deeplink security, custom protocol handling, Info.plist URL configuration, or inter-app communication…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS mobile security testing with Objection for runtime hooking and enumeration. Use this skill whenever the user needs to analyze iOS apps, enumerate classes/methods, hook functions, or modify runtime behavior on iOS devices. Trigger for iOS pentesting,…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS application security testing and pentesting. Use this skill whenever the user needs to test iOS apps for security vulnerabilities, analyze IPA files, perform static/dynamic analysis, check data storage security, test local authentication, or conduct…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS application security testing without requiring a jailbroken device. Use this skill whenever the user needs to pentest iOS apps, analyze mobile applications, perform dynamic instrumentation on iOS, or investigate iOS app security. This includes tasks like…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS WebView Protocol Handler security testing. Use this skill whenever the user mentions iOS app security, URL schemes, custom protocol handlers, deep links, intent hijacking, or WebView vulnerabilities. This skill helps enumerate, test, and exploit iOS…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Security testing for iOS object serialization vulnerabilities. Use this skill whenever testing iOS apps for insecure deserialization, NSCoding/NSSecureCoding issues, NSKeyedArchiver/Unarchiver abuse, or Codable implementation flaws. Trigger when the user…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Set up and configure iOS security testing environments including simulators, physical devices, and jailbroken devices. Use this skill whenever the user needs to prepare an iOS device for security testing, troubleshoot device pairing issues, understand…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Analyze iOS apps for UIActivity sharing vulnerabilities. Use this skill whenever you need to test iOS app sharing mechanisms, examine how apps send/receive data through the share sheet, audit Info.plist for document type declarations, or perform dynamic…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

How to test iOS applications for pasteboard security vulnerabilities. Use this skill whenever you need to analyze iOS app clipboard usage, check for sensitive data exposure via UIPasteboard, or perform static/dynamic analysis of iOS pasteboard…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest iOS Universal Links by extracting entitlements, fetching apple-app-site-association (AASA) files, and identifying misconfigurations like over-broad paths, missing server validation, and wildcard subdomains. Use this skill whenever the user mentions…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Use this skill whenever testing iOS applications for WebView vulnerabilities, analyzing WebView configurations, investigating WebView-based security issues, or performing mobile security assessments on iOS apps. Trigger this skill for any iOS WebView security…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

iOS sandbox escape via itunesstored and bookassetd daemons. Use this skill whenever the user mentions iOS pentesting, sandbox escapes, itunesstored, bookassetd, AFC file access, SQLite database manipulation, or wants to exploit the…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Security audit skill for analyzing zero-click exploit chains in messaging apps and image parsers. Use this skill whenever the user mentions security auditing, messaging app vulnerabilities, image parser exploits, zero-click attacks, WhatsApp linked-device…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Reverse engineer and pentest Xamarin mobile apps. Use this skill whenever the user needs to analyze, decompile, or test Xamarin apps built with .NET/C# for Android or iOS. Trigger for tasks involving: extracting DLLs from APK/IPA files, decompiling Xamarin…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

How to enumerate and assess Network Data Management Protocol (NDMP) services on port 10000. Use this skill whenever the user mentions NDMP, port 10000, backup protocols, NAS backup systems, Symantec/Veritas Backup Exec, network-attached storage backups, or…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Enumerate usernames from hosts running the rusersd protocol (ports 512-514). Use this skill whenever you need to discover user accounts on a target system, perform network reconnaissance, or when rusersd, rusers, or RPC port mapper services are mentioned.…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest SOCKS proxy services (port 1080). Use this skill whenever you need to enumerate, brute force, or validate SOCKS proxies. Trigger when the user mentions SOCKS, port 1080, proxy enumeration, socks5, proxychains, or any scenario involving SOCKS proxy…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest Java RMI (Remote Method Invocation) services on ports 1090, 1098, 1099, 1199, 4443-4446, 8999-9010, 9999. Use this skill whenever the user mentions Java RMI, RMI registry, remote method invocation, JMX RMI, or needs to enumerate/exploit Java RMI…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

How to enumerate and extract data from exposed Memcache instances. Use this skill whenever you need to test Memcache security, enumerate cached data, extract keys/values, or assess Memcache vulnerabilities on port 11211. Trigger this for any Memcache-related…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

How to interact with Memcache servers for pentesting and CTF challenges. Use this skill whenever you need to connect to a Memcache service (typically port 11211), read/write cache keys, enumerate stored data, check server statistics, or exploit Memcache…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest the Ident Protocol (port 113) to enumerate usernames associated with TCP connections. Use this skill whenever you need to identify users running services on a target, enumerate usernames for password attacks, or assess if a target has identd running.…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest Microsoft RPC (MSRPC) services on ports 135, 593, 139, 445. Use this skill whenever you need to enumerate RPC endpoints, identify vulnerable interfaces, execute remote commands with valid credentials, or fuzz RPC services for vulnerabilities. Trigger…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Enumerate NetBIOS services (ports 137, 138, 139) to discover server names, workgroups, and MAC addresses during network pentesting. Use this skill whenever you need to enumerate NetBIOS services, discover Windows/Samba shares, investigate network name…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Pentest IBM MQ message brokers on port 1414. Use this skill whenever the user mentions IBM MQ, message queues, port 1414, punch-q, pymqi, or needs to enumerate/exploit IBM MQ instances. This skill covers enumeration of queue managers, channels, and queues,…

原文の言語: 英語

更新
収集済み skill 908 件中 40 件を表示しています。