Skip to main content

ersinkoc/security-check

SkillsMP는 ersinkoc/security-check에서 49개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

최근 기록된 소스 활동
SkillsMP 카탈로그 업데이트
수집된 skills
49
GitHub 스타
56
GitHub 포크
5

이 저장소의 skills

직업 카테고리 2개 · 100% 분류됨

수집된 skill 49개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Comprehensive AI-powered security scanning suite with 48 skills covering OWASP Top 10, 7 language-specific deep scanners (Go, TypeScript, Python, PHP, Rust, Java, C#), supply chain analysis, infrastructure-as-code scanning, and 3000+ checklist items. Use when…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

C#/.NET-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Go-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Java/Kotlin-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

PHP-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Python-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Rust-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

TypeScript/JavaScript-specific security deep scan

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

REST, GraphQL, and gRPC API security audit — authentication, authorization, data exposure, and configuration

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Authentication flaw detection — weak passwords, broken auth, credential stuffing, and bypass vectors

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Authorization flaw detection — IDOR, broken access control, horizontal and vertical privilege issues

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Business logic flaw detection — price manipulation, workflow bypass, race conditions, and abuse vectors

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

CI/CD pipeline security — GitHub Actions injection, secret exposure, untrusted actions, and artifact poisoning

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Clickjacking and UI redressing detection — missing frame protection headers and CSP frame-ancestors

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

OS Command Injection detection in shell execution, subprocess calls, and process spawning

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

CORS misconfiguration detection — wildcard origin, reflected origin, null origin, and credential leaks

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Cryptography misuse detection — weak algorithms, ECB mode, static IVs, weak PRNG, and key management flaws

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Cross-Site Request Forgery detection — missing tokens, SameSite misconfiguration, and CORS-CSRF interaction

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Sensitive data exposure detection — PII leaks, verbose errors, debug mode, and information disclosure

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Supply chain and dependency security analysis across all package ecosystems

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Insecure deserialization detection across all serialization formats and languages

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Incremental security scan for changed files only — optimized for PR and commit-level reviews

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Docker-specific security checks — image hardening, secrets in layers, compose security, and runtime configuration

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Insecure file upload detection — unrestricted types, MIME mismatch, polyglot files, and webshell upload

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

GraphQL injection, introspection abuse, query complexity attacks, and authorization bypass detection

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

HTTP Header Injection and Response Splitting detection via CRLF injection in headers

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Infrastructure-as-Code security scanning — Dockerfile, Kubernetes, Terraform, and GitHub Actions misconfigurations

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

JWT implementation flaw detection — algorithm confusion, weak secrets, missing validation, and storage issues

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

LDAP Injection detection in search filters, DN construction, and bind operations

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Mass assignment and over-posting detection — unfiltered request body binding to data models

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NoSQL Injection detection for MongoDB, Redis, CouchDB, and Elasticsearch

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Open redirect detection — unvalidated redirect URLs, protocol-relative bypasses, and URI scheme abuse

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Master orchestration skill that coordinates the entire 4-phase security scanning pipeline

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Path traversal and directory traversal detection — LFI, RFI, zip slip, and symlink attacks

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Privilege escalation vector detection — role manipulation, admin bypass, and RBAC circumvention

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Race condition and TOCTOU detection — database races, file system races, double-spend, and atomicity failures

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Missing rate limiting and application-level DoS vector detection — ReDoS, query complexity, resource exhaustion

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Remote Code Execution detection via eval, exec, dynamic code loading, and code injection vectors

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Codebase discovery and architecture mapping for security analysis

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Final consolidated security assessment report generator with CVSS severity and remediation roadmap

원문 언어: 영어

업데이트
수집된 skill 49개 중 40개를 표시합니다.