Skip to main content

이 저장소의 skills

uphiago/recon-skills - 2페이지

SkillsMP는 uphiago/recon-skills에서 145개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

uphiago/recon-skills

수집된 skill 145개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Pick sectors, compile targets, batch recon for campaigns.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Map subdomains via crt.sh and subfinder at recon kickoff.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Use at the START of any bug bounty hunting session, when switching targets, or when feeling lost about what to do next. Master orchestrator that combines the 5-phase non-linear hunting workflow with the critical thinking framework (developer psychology,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Master bug bounty orchestrator — full pipeline: recon, pre-hunt learning, vulnerability hunting (30+ classes), A-to-B chaining, AI/LLM testing (ASI01-ASI10), language-specific grep, bypass tables, and reporting (7-question gate, CVSS 3.1, human-tone…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Hunt HTTP request smuggling (CL.TE, TE.CL, H2.CL, H2.TE). Cause: front-end proxy and back-end server disagree on where one request ends and the next begins (Content-Length vs Transfer-Encoding header parsing inconsistency). CL.TE: front-end uses CL, back uses…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Meme coin and token security audit — rug pull detection (honeypot, hidden mint, fee manipulation, LP lock bypass), Solana SPL token analysis (freeze authority, mint authority, metadata mutability), Token-2022 extension risks (transfer hooks, permanent…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table. Use when you need specific payloads for XSS/SSRF/SQLi/XXE/NoSQLi/command injection/SSTI/IDOR/path-traversal/HTTP…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Finding validation before writing any report — 7-Question Gate (all 7 questions), 4 pre-submission gates, always-rejected list, conditionally valid with chain table, CVSS 3.1 quick reference, severity decision guide, report title formula, 60-second pre-submit…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Smart contract security audit — 10 DeFi bug classes (accounting desync, access control, incomplete path, off-by-one, oracle, ERC4626, reentrancy, flash loan, signature replay, proxy), pre-dive kill signals (TVL < $500K etc), Foundry PoC template, grep…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Screenshot all live hosts for rapid visual triage and technology fingerprinting.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Complete bug bounty workflow — recon (subdomain enumeration, asset discovery, fingerprinting, HackerOne scope, source code audit), pre-hunt learning, vuln hunting (30+ classes), A-to-B chaining, AI/LLM testing, bypass tables, language-specific grep,…

원문 언어: 영어

업데이트
직업 분류
기타 컴퓨터 관련 직업
설명

Skill-set loader for /hunt orchestrator. Fingerprints the target, picks the right platform attack skills, and loads the Red Team or WAPT skill set. Use when /hunt has just received a mode answer (redteam or wapt + blackbox|greybox) and needs to load the…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt error leakage, DVCS exposure, source maps, config files, and differential oracles.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Laravel specific vulnerabilities — Debug mode leakage (APP_DEBUG=true exposes full stack trace + env vars), Laravel Telescope/Horizon dashboard unauthorized access, Ignition RCE (CVE-2021-3129), Signed URL manipulation, Queue Worker abuse, mass…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for misc vulnerabilities. Built from 225 public bug bounty reports. Use when hunting misc on any target.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt source code and build artifact leakage — JavaScript source maps (.js.map) reconstructing TypeScript/ES6 source, Swagger/OpenAPI JSON endpoint discovery, .env/.git exposure, webpack chunks with hardcoded secrets, robots.txt/security.txt recon, build-info…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for sqli vulnerabilities. Built from 12 public bug bounty reports including modern NoSQL injection (Rocket.Chat CVE-2021-22911 MongoDB $regex, Mongoose ORM CVE-2024-53900 $where bypass), modern ORM raw-fragment SQLi (Django CVE-2024-42005,…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt TLS/SSL and DNS misconfigurations — missing HSTS (downgrade attack), weak cipher suites, expired/invalid certificates, mTLS bypass, missing SPF/DKIM/DMARC (email spoofing), DNS Zone Transfer (AXFR), dangling CNAME subdomain takeover, CAA records. Most of…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for xss vulnerabilities. Built from 174 public bug bounty reports. Use when hunting xss on any target.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Operational arsenal for authorized external red-team and bug-bounty recon. Concrete probes, wordlists, regexes, dorks, curl one-liners for: subdomain enum, GraphQL/Swagger/REST discovery, identity fabric (Entra/Okta/ADFS/Google/SAML/M365 deep —…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

External recon for software supply-chain attack surface — package-namespace squatting candidates, dependency-confusion vulnerabilities, GitHub Actions injection openings, container image registry exposure, SBOM mining, internal-package-name leakage, and CI/CD…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Scripts and workflows to batch-test popular WordPress plugin CVEs across hundreds of domains. Covers automated plugin detection, version extraction from readme.txt, CVE matching against a curated matrix of high-impact plugin vulnerabilities (ElementsKit,…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt cloud / infrastructure misconfigurations. AWS: public S3 buckets (s3:GetObject anonymous), permissive bucket policies (PutObjectAcl public-write), exposed CloudFront origin, public Lambda function URL, public RDS snapshot, IAM credentials in JS bundles,…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for ssrf vulnerabilities. Built from 15 public bug bounty reports including AWS metadata SSRF (HackerOne $25k Analytics PDF, Shopify Exchange $25k, Capital One 106M-record breach, Dropbox/HelloSign $4,913), GCP metadata SSRF (Snapchat $4k),…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Map organization IP infrastructure via ASN, CIDR, TLD expansion, and reverse DNS.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt broken function-level authorization via verb drift, route shadowing, and transport gaps.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Django-specific vulnerabilities: DRF permission gaps, ORM injection, and admin exploitation.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt FastAPI-specific vulnerabilities: dependency injection gaps, Pydantic coercion, and OpenAPI mining.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Firebase / Firestore / GCP exploitation — Firebase API key discovery in JS bundles, anonymous auth via signUp endpoint, Firestore collection enumeration with anon key, Realtime Database read/write without auth, Firebase Storage bucket listing, Firebase…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Local File Inclusion (LFI), Remote File Inclusion (RFI), and Path Traversal — /etc/passwd read, log poisoning → RCE, PHP filter-chain RCE (no upload needed), php:// / data:// / zip:// / phar:// wrappers, RFI via allow_url_include, directory traversal…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt mass assignment via sensitive field injection and ORM framework exploitation.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Model Context Protocol (MCP) vulnerabilities in AI-tool integration systems.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt NestJS-specific vulnerabilities: guard bypass, decorator gaps, and microservice auth drift.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Node.js specific vulnerabilities — Prototype Pollution → RCE chains (lodash/merge/assign), Express trust proxy misconfiguration, child_process/eval injection, template engine SSTI (EJS/Pug/Handlebars), path traversal in file servers, require() injection,…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for oauth vulnerabilities. Built from 19 public bug bounty reports. Use when hunting oauth on any target.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt client-side and server-side prototype pollution for XSS, auth bypass, and RCE.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunting skill for race condition vulnerabilities. Built from 12 public bug bounty reports including modern HTTP/2 single-packet attack cases (James Kettle DEF CON 2023 "Smashing the State Machine"; RyotaK / Flatt Security 10,000-request first-sequence-sync…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Hunt Supabase exploitation — Supabase anon key discovery in JS bundles, REST API table enumeration with anon key, Row Level Security (RLS) bypass via missing organization_id check, RPC function abuse returning cross-organization data, Storage bucket listing,…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Microsoft 365 / Entra ID red-team attack chain — current 2026 reality. AADSTS code reference, user enumeration vectors (with hardening status), Smart Lockout math, Conditional Access bypass options, ROPC + SAML SSO browser flow, Burp/Playwright templates.…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Methodology for detecting client SOC patches, attacker activity, and security-state changes that occur DURING a red-team engagement — and converting those observations into deliverable findings. Built from authorized red-team work where the client patched a…

원문 언어: 영어

업데이트
수집된 skill 145개 중 40개를 표시합니다.