http-smuggling
Consider request smuggling only when architecture hints make it relevant, and connect confirmation to downstream impact.
Codex または Claude でインストール この Prompt をコピーして Codex、Claude、または他のアシスタントに貼り付けると、Skill ページを確認してインストールできます。
メニュー
Consider request smuggling only when architecture hints make it relevant, and connect confirmation to downstream impact.
Codex または Claude でインストール この Prompt をコピーして Codex、Claude、または他のアシスタントに貼り付けると、Skill ページを確認してインストールできます。
Four-phase autonomous bug bounty orchestration. Phase 0 maps external assets with deterministic Python helpers, Phase 1 lets AI prioritize attack surfaces, Phase 2 gives AI autonomous attack control, and Phase 3 produces verifier-only reports.
Four-phase autonomous bug bounty workflow. Python handles deterministic collection and verifier support; AI owns prioritization, attack reasoning, and autonomous direction changes.
Report generation agent. Convert verifier-confirmed findings into a fixed evidence-based report without adding speculative impact.
Rank reconnaissance-derived attack surfaces and design evidence-driven tests without active exploitation.
Test ranked attack surfaces autonomously, preserve evidence, and turn new access into additional attack-chain hypotheses.
A compact routing skill for choosing vulnerability hypotheses; detailed payloads live in references, not here.
SOC 職業分類に基づく
| name | http-smuggling |
| description | Consider request smuggling only when architecture hints make it relevant, and connect confirmation to downstream impact. |
| metadata | {"tags":"http-smuggling,proxy,waf"} |
判断前后端解析差异是否能绕过 WAF、劫持请求、污染缓存或影响其他用户请求。
references/INDEX.md;候选资源:bypass_techniques.md