Skip to main content

H-mmer/pentest-agents

SkillsMP は H-mmer/pentest-agents から 162 件の skill を収集しています。skill を開くとソースと詳細を確認できます。

記録された最新のソース活動
SkillsMP カタログ更新
収集済み skills
162
GitHub スター
802
GitHub フォーク
158

収集済み skill 162 件中 40 件を表示しています。

職業分類
情報セキュリティアナリスト
説明

Autonomous hunt orchestrator. INSATIABLE in --autonomous mode: enforces an EXHAUSTION CONTRACT (26 canonical hunter classes, surface probe A-I, depth-engine ≥25 attempts/class, wall-clock floor 90 min/target, PRE-COMPLETION GATE before any summary). No early…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Autonomous hunt orchestrator. INSATIABLE in --autonomous mode: enforces an EXHAUSTION CONTRACT (26 canonical hunter classes, surface probe A-I, depth-engine ≥25 attempts/class, wall-clock floor 90 min/target, PRE-COMPLETION GATE before any summary). No early…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Adversarial validator for DAST findings. Attempts to DISPROVE each finding and DOWNGRADE severity. Catches inflated reports, unverified assumptions, and theoretical-only bugs. Dispatch after /validate PASS and before /report.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Server-Side Template Injection specialist. Covers Jinja2 (H1 #74), Twig, Velocity, FreeMarker, ERB, Handlebars, Thymeleaf. Use for any rule-engine, comment/message rendering, PR automation, admin template, or user-customizable template surface. Systematic…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Autonomous hunt orchestrator. INSATIABLE in --autonomous mode: enforces an EXHAUSTION CONTRACT (26 canonical hunter classes, surface probe A-I, depth-engine ≥25 attempts/class, wall-clock floor 90 min/target, PRE-COMPLETION GATE before any summary). No early…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Autonomous hunt orchestrator. INSATIABLE in --autonomous mode: enforces an EXHAUSTION CONTRACT (26 canonical hunter classes, surface probe A-I, depth-engine ≥25 attempts/class, wall-clock floor 90 min/target, PRE-COMPLETION GATE before any summary). No early…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Generate submission-ready reports for all confirmed findings. Runs dedup, PoC builder, quality check, and report writer. Usage: /report bounty or /report pentest

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Draft and submit a vulnerability report to the bug bounty platform. Reads scope.yaml for platform/program, uses brain + findings for content. Always drafts first for review.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Generate submission-ready reports for all confirmed findings. Runs dedup, PoC builder, quality check, and report writer. Usage: /report bounty or /report pentest

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Draft and submit a vulnerability report to the bug bounty platform. Reads scope.yaml for platform/program, uses brain + findings for content. Always drafts first for review.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Generate submission-ready reports for all confirmed findings. Runs dedup, PoC builder, quality check, and report writer. Usage: /report bounty or /report pentest

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Draft and submit a vulnerability report to the bug bounty platform. Reads scope.yaml for platform/program, uses brain + findings for content. Always drafts first for review.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Generate submission-ready reports for all confirmed findings. Runs dedup, PoC builder, quality check, and report writer. Usage: /report bounty or /report pentest

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Draft and submit a vulnerability report to the bug bounty platform. Reads scope.yaml for platform/program, uses brain + findings for content. Always drafts first for review.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Active vulnerability hunting on a target. Loads scope, reads brain, detects tech stack, runs targeted tests with concrete payloads. Usage: /hunt target.com [--vuln-class idor|xss|ssrf|sqli|ssti|oauth|rce|race|graphql|upload|business-logic|llm-ai]

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Active vulnerability hunting on a target. Loads scope, reads brain, detects tech stack, runs targeted tests with concrete payloads. Usage: /hunt target.com [--vuln-class idor|xss|ssrf|sqli|ssti|oauth|rce|race|graphql|upload|business-logic|llm-ai]

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Mandatory browser verification for client-side findings (XSS, DOM, postMessage, prototype pollution). Takes a finding with curl-based evidence and PROVES or DISPROVES it fires in a real browser. No finding ships without browser verification. Dispatched…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

XSS specialist covering reflected (H1 #60), stored (H1 #61), and DOM (H1 #62). Dispatcher passes subtype — 'reflected', 'stored', or 'dom' — in the task; falls back to inference from target. Use for parameter reflection, persisted inputs…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Active vulnerability hunting on a target. Loads scope, reads brain, detects tech stack, runs targeted tests with concrete payloads. Usage: /hunt target.com [--vuln-class idor|xss|ssrf|sqli|ssti|oauth|rce|race|graphql|upload|business-logic|llm-ai]

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Active vulnerability hunting on a target. Loads scope, reads brain, detects tech stack, runs targeted tests with concrete payloads. Usage: /hunt target.com [--vuln-class idor|xss|ssrf|sqli|ssti|oauth|rce|race|graphql|upload|business-logic|llm-ai]

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Analyze recon output with AI to suggest high-value targets and attack strategies. Usage: /analyze <target>

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Manage the engagement brain. Subcommands: 'init' to set up, 'brief <target>' for pre-flight, 'status' for overview, 'exhausted [target]' to see dead ends.

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Build deep exploit chains — dispatches chain-builder agent. Given bug A, recursively walks the chain graph. Usage: /chain (then describe bug A)

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Run the finding correlation engine to discover attack chains from individual findings.

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Show cost tracking and ROI for this engagement.

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Check if a vulnerability has already been reported. Searches platform hacktivity + local findings. Usage: /dupcheck <vuln_type> e.g. /dupcheck XSS in search endpoint

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Full security assessment with brain coordination. Multi-phase, skips known-exhausted areas, builds on prior knowledge.

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Record a platform response and update learning. Usage: /learn <report_id> <status> [--bounty 500] [--vuln-type XSS]

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Generate a text-based attack surface mindmap. Shows tech stack → vuln class → endpoint relationships. Usage: /mindmap <target>

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Monitor targets for changes. Usage: /monitor baseline (first run), /monitor check (detect changes), /monitor scope (check platform for scope updates)

原文の言語: 英語

更新
職業分類
その他コンピュータ職
説明

Create a new engagement workspace. Usage: /new <platform> <program> [--type web-app|api|mobile|smart-contract]

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Prepare the battlefield — recon, scanning, and surface ranking. Stops before hunting. Run /hunt or /autopilot after. Usage: /pipeline or /pipeline <target>

原文の言語: 英語

更新
職業分類
ソフトウェア品質保証アナリスト・テスター
説明

Score a report draft before submission. Usage: /quality <draft-path-or-finding-description>

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Run a quick security scan on a target. Consults the Brain first, validates scope, runs passive recon + vuln scan in parallel.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Log a finding or pattern to persistent brain memory. Auto-fills from session context. Usage: /remember

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Resume a previous hunt. Shows hunt history, untested endpoints, memory-informed suggestions. Usage: /resume target.com

原文の言語: 英語

更新
職業分類
ソフトウェア品質保証アナリスト・テスター
説明

Source code vulnerability hunting (SAST). Decomposes analysis into specialized passes: map entry points, map dangerous ops, trace flows, find gaps, adversarial validation, exploit. Usage: /sast <repo_path> [--lang c|cpp|rust|java|python|go|php] [--min-score…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Show engagement dashboard with program info, scope, brain state, findings, agent activity, and cost estimate.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Show ranked attack surface for a target. Invokes recon-ranker agent. Usage: /surface target.com

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Sync program scope, policy, and hacktivity from a bug bounty platform. Usage: /sync hackerone tesla or /sync bugcrowd uber

原文の言語: 英語

更新
収集済み skill 162 件中 40 件を表示しています。