Skip to main content

anshumanbh/securevibes

SkillsMP는 anshumanbh/securevibes에서 9개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

최근 기록된 소스 활동
SkillsMP 카탈로그 업데이트
수집된 skills
9
GitHub 스타
283
GitHub 포크
62

이 저장소의 skills

직업 카테고리 1개 · 100% 분류됨

수집된 skill 9개 중 9개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Validate Server-Side Request Forgery (SSRF) vulnerabilities by testing if user-controlled URLs can reach internal services, cloud metadata endpoints, or alternative protocols. Use when testing CWE-918 (SSRF), CWE-441 (Unintended Proxy), CWE-611 (XXE leading…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate OS Command Injection vulnerabilities including direct command injection, blind command injection via time delays, and out-of-band command execution. Test by injecting shell metacharacters and commands into user-controlled inputs. Use when testing…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate NoSQL injection vulnerabilities across MongoDB, Cassandra, CouchDB, Redis, and other NoSQL databases. Test operator injection, JavaScript injection, and query manipulation patterns. Use when testing CWE-943 (Improper Neutralization of Special…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate SQL injection vulnerabilities (including blind SQLi) across time-based, error-based, boolean-based, UNION-based, stacked-query, and out-of-band patterns. Use when testing CWE-89 (SQL Injection), CWE-564 (Hibernate SQL Injection), and related SQL…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate Cross-Site Scripting (XSS) vulnerabilities including Reflected, Stored, and DOM-based XSS. Test by injecting script payloads into user-controlled inputs and observing if they execute in browser context. Use when testing CWE-79 (XSS), CWE-80 (Basic…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate XML External Entity (XXE) injection vulnerabilities including file disclosure, SSRF, denial of service, and blind XXE via out-of-band channels. Test by injecting malicious XML with external entity references into endpoints that parse XML. Use when…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate authorization failures including IDOR, privilege escalation, and missing access controls. Test by attempting unauthorized access with lower-privileged credentials. Use when testing CWE-639 (IDOR), CWE-269 (Improper Privilege Management), CWE-862…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Validate miscellaneous injection vulnerabilities NOT covered by dedicated skills. Covers SSTI, LDAP, XPath, XQuery, CRLF/HTTP Header, Email Header, GraphQL, Expression Language (EL/OGNL), JSON/JavaScript eval injection, ORM/HQL, CSV/Formula, Regex (ReDoS),…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Identify agentic AI security threats based on OWASP Top 10 for Agentic Applications 2026. Use when analyzing AI agents, LLM-powered applications, chatbots, auto-reply systems, tool-using AI, browser automation, sandbox execution, or any application that uses…

원문 언어: 영어

업데이트
수집된 skill 9개 중 9개를 표시합니다.