Skip to main content
OWASP
GitHub 제작자 프로필

OWASP

7개 GitHub 저장소에서 수집된 41개 skills를 저장소 단위로 보여줍니다.

수집된 skills
41
저장소
7
업데이트
2026년 9월 8일
저장소 탐색

저장소와 대표 skills

mobile-code-review
소프트웨어 품질 보증 분석가·테스터

Security-focused review of native Android and iOS mobile app source code against OWASP MASVS v2.1.0. Use when reviewing mobile codebases, mobile PR diffs, or auditing a mobile module.

2026년 6월 2일
agent-security-audit
정보 보안 분석가

Audit AI agent configurations for security risks — excessive permissions, prompt injection surfaces, data exfiltration paths, and missing guardrails. Use when reviewing CLAUDE.md files, MCP configs, agent orchestration code, or any AI agent setup.

2026년 5월 17일
agentic-ai-risk-assess
정보 보안 분석가

Assess agentic AI applications against the OWASP Top 10 for Agentic Applications 2026. Use when reviewing autonomous AI agents, multi-agent systems, or agentic workflows for security risks including goal hijacking, tool misuse, privilege abuse, and rogue…

2026년 5월 17일
llm-risk-assess
정보 보안 분석가

Comprehensive LLM security assessment against OWASP Top 10 for LLM Applications 2025. Use when reviewing LLM-integrated applications, RAG pipelines, chatbots, AI agents, or GenAI features. Covers prompt injection, data poisoning, supply chain, excessive…

2026년 5월 17일
mcp-server-review
정보 보안 분석가

Security review of MCP (Model Context Protocol) server implementations and configurations. Use when auditing MCP server source code, evaluating third-party MCP servers before installation, or reviewing Claude Code MCP integrations for overpermissioning,…

2026년 5월 17일
prompt-injection-test
정보 보안 분석가

Test LLM-integrated applications against known prompt injection techniques, evasion methods, and attack intents using the Arcanum PI Taxonomy. Use when red-teaming AI apps, validating guardrails, or deepening LLM01 (Prompt Injection) assessments.

2026년 5월 17일
api-security-review
정보 보안 분석가

Comprehensive API security review against OWASP API Security Top 10 (2023). Use when reviewing OpenAPI/Swagger specs, auditing REST/GraphQL/gRPC implementations, testing authentication mechanisms, or checking API gateway configurations. Covers BOLA/IDOR,…

2026년 5월 17일
code-review-security
소프트웨어 품질 보증 분석가·테스터

Security-focused code review mapped to OWASP Top 10 and ASVS. Use when reviewing pull requests, auditing files or modules for vulnerabilities, or performing pre-merge security gate checks. Covers injection, auth, authorization, cryptography, data exposure,…

2026년 5월 17일
수집된 skill 20개 중 8개를 표시합니다.
post-quantum-cryptography-azure
미분류

Identifies and remediates non-quantum-safe cryptographic configurations in Azure including classical TLS key exchange, RSA and ECC keys in Key Vault, and classical certificate algorithms. Maps findings to NIST PQC standards FIPS 203, FIPS 204, and FIPS 205.…

2026년 7월 14일
analyzing-azure-activity-logs-for-threats
미분류

Queries Azure Monitor activity logs and sign-in logs to detect suspicious administrative operations, impossible travel, and privilege escalation.

2026년 6월 21일
analyzing-cloud-storage-access-patterns
미분류

Detect abnormal access patterns in Azure Blob Storage by analyzing Storage Analytics and diagnostic logs. Identifies after-hours bulk downloads, access from new IP addresses, unusual API calls (GetBlob spikes), and potential data exfiltration.

2026년 6월 21일
auditing-azure-active-directory-configuration
미분류

Auditing Microsoft Entra ID (Azure Active Directory) configuration to identify risky authentication policies, overly permissive role assignments, and guest user risks.

2026년 6월 21일
auditing-cloud-with-cis-benchmarks
미분류

Conduct cloud security audits using Center for Internet Security (CIS) benchmarks for Azure. Covers interpreting CIS Foundations Benchmark controls, running automated assessments, and maintaining continuous compliance monitoring.

2026년 6월 21일
building-cloud-siem-with-sentinel
미분류

Deploy Microsoft Sentinel as a cloud-native SIEM and SOAR platform for Azure. Covers configuring data connectors (Entra ID, Azure Activity), writing KQL detection queries, and building automated response playbooks.

2026년 6월 21일
building-identity-federation-with-saml-azure-ad
미분류

Establish SAML 2.0 identity federation between on-premises Active Directory and Microsoft Entra ID (Azure AD) for seamless cross-domain authentication and SSO.

2026년 6월 21일
building-identity-governance-lifecycle-process
미분류

Builds comprehensive identity governance and lifecycle management processes in Azure Entra ID, including JML (Joiner-Mover-Leaver) automation and periodic access reviews.

2026년 6월 21일
수집된 skill 14개 중 8개를 표시합니다.
저장소 7개 중 7개 표시
모든 저장소를 표시했습니다