Skip to main content

ersinkoc/security-check

SkillsMP は ersinkoc/security-check から 49 件の skill を収集しています。skill を開くとソースと詳細を確認できます。

記録された最新のソース活動
SkillsMP カタログ更新
収集済み skills
49
GitHub スター
56
GitHub フォーク
5

このリポジトリの skills

2 件の職業カテゴリ · 100% 分類済み

収集済み skill 49 件中 40 件を表示しています。

職業分類
情報セキュリティアナリスト
説明

Comprehensive AI-powered security scanning suite with 48 skills covering OWASP Top 10, 7 language-specific deep scanners (Go, TypeScript, Python, PHP, Rust, Java, C#), supply chain analysis, infrastructure-as-code scanning, and 3000+ checklist items. Use when…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

C#/.NET-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Go-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Java/Kotlin-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

PHP-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Python-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Rust-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

TypeScript/JavaScript-specific security deep scan

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

REST, GraphQL, and gRPC API security audit — authentication, authorization, data exposure, and configuration

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Authentication flaw detection — weak passwords, broken auth, credential stuffing, and bypass vectors

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Authorization flaw detection — IDOR, broken access control, horizontal and vertical privilege issues

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Business logic flaw detection — price manipulation, workflow bypass, race conditions, and abuse vectors

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

CI/CD pipeline security — GitHub Actions injection, secret exposure, untrusted actions, and artifact poisoning

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Clickjacking and UI redressing detection — missing frame protection headers and CSP frame-ancestors

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

OS Command Injection detection in shell execution, subprocess calls, and process spawning

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

CORS misconfiguration detection — wildcard origin, reflected origin, null origin, and credential leaks

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Cryptography misuse detection — weak algorithms, ECB mode, static IVs, weak PRNG, and key management flaws

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Cross-Site Request Forgery detection — missing tokens, SameSite misconfiguration, and CORS-CSRF interaction

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Sensitive data exposure detection — PII leaks, verbose errors, debug mode, and information disclosure

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Supply chain and dependency security analysis across all package ecosystems

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Insecure deserialization detection across all serialization formats and languages

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Incremental security scan for changed files only — optimized for PR and commit-level reviews

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Docker-specific security checks — image hardening, secrets in layers, compose security, and runtime configuration

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Insecure file upload detection — unrestricted types, MIME mismatch, polyglot files, and webshell upload

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

GraphQL injection, introspection abuse, query complexity attacks, and authorization bypass detection

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

HTTP Header Injection and Response Splitting detection via CRLF injection in headers

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Infrastructure-as-Code security scanning — Dockerfile, Kubernetes, Terraform, and GitHub Actions misconfigurations

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

JWT implementation flaw detection — algorithm confusion, weak secrets, missing validation, and storage issues

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

LDAP Injection detection in search filters, DN construction, and bind operations

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Mass assignment and over-posting detection — unfiltered request body binding to data models

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

NoSQL Injection detection for MongoDB, Redis, CouchDB, and Elasticsearch

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Open redirect detection — unvalidated redirect URLs, protocol-relative bypasses, and URI scheme abuse

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Master orchestration skill that coordinates the entire 4-phase security scanning pipeline

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Path traversal and directory traversal detection — LFI, RFI, zip slip, and symlink attacks

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Privilege escalation vector detection — role manipulation, admin bypass, and RBAC circumvention

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Race condition and TOCTOU detection — database races, file system races, double-spend, and atomicity failures

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Missing rate limiting and application-level DoS vector detection — ReDoS, query complexity, resource exhaustion

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Remote Code Execution detection via eval, exec, dynamic code loading, and code injection vectors

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Codebase discovery and architecture mapping for security analysis

原文の言語: 英語

更新
職業分類
ソフトウェア開発者
説明

Final consolidated security assessment report generator with CVSS severity and remediation roadmap

原文の言語: 英語

更新
収集済み skill 49 件中 40 件を表示しています。