Skip to main content

transilienceai/communitytools

SkillsMP는 transilienceai/communitytools에서 50개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

최근 기록된 소스 활동
SkillsMP 카탈로그 업데이트
수집된 skills
50
GitHub 스타
470
GitHub 포크
73

수집된 skill 50개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Offensive AI security testing and exploitation framework. Systematically tests LLM applications for OWASP Top 10 vulnerabilities including prompt injection, model extraction, data poisoning, and supply chain attacks. Integrates with pentest workflows to…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Cloud and container security testing - AWS, Azure, GCP, Docker, and Kubernetes misconfigurations and exploitation.

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Run a professional penetration engagement OR a network vulnerability scan from a scope. WEB mode (apex domains / app URLs) — mandatory surface expansion, systematic OWASP attack-class coverage, reversible active exploitation, authoritative validation,…

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Pentest coordination — orchestrates executor and validator agents with context-controlled spawning. Entry point for all engagements.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Generate a Transilience-branded PDF report (pentest, vuln assessment, compliance, threat intel) from a single findings JSON using the bundled ReportLab generator. Use whenever an engagement needs its final report/deliverable PDF in Transilience house style.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Mobile application security testing (Android + iOS) mapped to OWASP MASVS/MASTG — static reversing (Flutter AOT, Unity IL2CPP, React Native/Hermes, native ARM64, Mach-O/Swift), SAST (manifest/IPC, storage, crypto, signing), dynamic analysis (Frida/objection,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Evidence-safe firewall ruleset audit reference specification — 22 documented detector patterns (17 vendor-agnostic plus 5 FortiGate-specific), a 15-check semantic catalogue, CIS Fortinet FortiGate Benchmark guidance, a custom customer-policy benchmark, and…

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

HackTheBox platform operations and automations to solve challenges, machines and capture the flags hacking competitions

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Skill creation, update and management — generates skill directory structure, validates against best practices, enforces line count limits. Use when creating, updating, or improving skills.

원문 언어: 영어

업데이트
직업 분류
그래픽 디자이너
설명

Threat Intelligence Report Design System — ReportLab-based PDF generation for A4 reports with Transilience branding, typography, and layout standards.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

API security testing - GraphQL, REST API, WebSocket, and Web-LLM attack techniques.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Acquire an authenticated session THROUGH MFA/OTP on an in-scope target and emit a reusable session artifact (Playwright storageState + Bearer) so executors can test the post-auth attack surface. Use when the highest-value authenticated classes…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

CVE research, standalone PoC script and report generation. Given a CVE ID, researches NVD and advisories, generates a safe Python PoC, and writes a detailed vulnerability report.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Retrieve CVE risk scores from NVD. Auto-invoked whenever a CVE ID is mentioned to display CVSS score, severity, CWE, and description.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

HackerOne bug bounty automation - parses scope CSVs, deploys parallel pentesting agents per asset, validates PoCs, and generates platform-ready submission reports.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Network infrastructure testing - port scanning, DNS attacks, MITM, VLAN hopping, IPv6, SMB/NetBIOS, sniffing, and DoS assessment.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Offensive testing of perimeter network appliances and VPN crypto — IKE/IPsec (aggressive-mode, transform/DH enum, NAT-T), Check Point SIC/OPSEC, safe firmware/patch-level inference for FortiGate/PAN-OS/Cisco ASA/Citrix feeding CVE applicability, NTLM Type-2…

원문 언어: 영어

업데이트
직업 분류
데스크톱 출판 전문가
설명

Generate ONE strong password and apply it to each referenced file (PDF, Word, Excel, PowerPoint, or any type). Use when asked to password-protect / encrypt / lock one or more deliverable files with a single password before sharing.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discovery, and attack surface analysis.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Server-side vulnerability testing - SSRF, HTTP Request Smuggling, Path Traversal, File Upload, Insecure Deserialization, and Host Header injection.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

System exploitation testing - Active Directory attacks, privilege escalation (Linux/Windows), and exploit development.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Web application logic testing - business logic flaws, race conditions, access control, cache poisoning/deception, and information disclosure.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Authentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass, and bot detection evasion.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect and break the cloud post-compromise attack chain (AWS / Azure / GCP) — per-stage CloudTrail / Activity-Log / Audit-Log detection signals and the preventive controls that close each step. Use for cloud detection engineering, hardening, remediation…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Injection vulnerability testing - SQL, NoSQL, OS Command, SSTI, XXE, and LDAP/XPath injection techniques.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Static and dynamic reverse engineering — ELF/PE analysis, custom-VM bytecode, packed binaries, anti-debug bypass, Frida hooking.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Cryptanalysis techniques — lattice attacks, padding oracles, weak-RNG exploitation, signature forgery, secret-sharing recovery.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Digital forensics and incident response - Windows event log analysis, PCAP forensics, filesystem artifact analysis, AD attack detection, and timeline correlation. Use when investigating security incidents, analyzing Sherlocks, or performing threat hunting on…

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Core pentesting tools and methodology - Burp Suite usage, Playwright automation, binary analysis, testing methodology, and professional reporting standards.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Automated PCI Secure Software Standard (SSS) v2.0 readiness gap-assessment of an application from its source code and documentation. Deterministically enumerates every applicable Test Requirement from a pinned catalog, gathers source/doc evidence, and emits…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Security-focused source code review and SAST. Scans for vulnerabilities (OWASP Top 10, CWE Top 25), CVEs in third-party dependencies/packages, hardcoded secrets, malicious code, and insecure patterns. Use when given source code, a repo path, or asked to…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Stitches confirmed single-asset findings into multi-hop attack paths across the organization. Builds a graph where nodes are assets and edges are confirmed exploit hops citing the findings that enable them.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Fetches and extracts payloads from PayloadsAllTheThings on demand. Bake into executor prompts for live payload enrichment.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Re-validates every previously-confirmed finding against its current target — detects drift (patched, mitigated, re-introduced). Cron-driven weekly sweep across the org's validated finding tree.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Risk-based prioritisation of confirmed attack paths. Combines exploit feasibility, technical CVSS severity, and asset business impact into a single ranked list driving remediation roadmaps.

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Identify and remove negative-ROI skill content — orphan files, never-read entries, duplicates, content reintroducing challenge-specific lore. Inverse of /skill-update. Use during quarterly maintenance or after the linter flags issues.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Threat-intel signal ingest — converts a CVE + affected-asset + claim payload into a queued engagement-scope row for the validation pipeline.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Smart contract security testing and blockchain CTF exploitation. Covers Solidity vulnerability analysis, EVM storage manipulation, delegatecall attacks, CREATE/CREATE2 address prediction, and common DeFi exploit patterns. Use when analyzing Solidity…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Client-side vulnerability testing - XSS (reflected/stored/DOM), CSRF, CORS misconfiguration, Clickjacking, DOM-based attacks, and Prototype Pollution.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Open-source intelligence gathering - company repository enumeration, secret scanning, git history analysis, employee footprint, and code exposure discovery.

원문 언어: 영어

업데이트
수집된 skill 50개 중 40개를 표시합니다.