一键导入
exploitation
Controlled exploitation, false-positive elimination, and PoC writing standards.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Controlled exploitation, false-positive elimination, and PoC writing standards.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
End-to-end bug bounty phase flow for BearStrike AI.
Tool selection policy for BearStrike based on target type, scan risk, and signal strength.
Pre-execution planning and priority-scored task list before running tools.
Recon workflow for domain, DNS, host, and web surface mapping.
Reporting standards for single bug, full pentest, and recon-only outputs.
Practical bug bounty methodology notes derived from recent public security reports and training resources.
基于 SOC 职业分类
| name | exploitation |
| description | Controlled exploitation, false-positive elimination, and PoC writing standards. |
A finding is NOT confirmed until all checks pass:
A good PoC must include:
Keep PoC minimal, deterministic, and safe.
Race-condition checks:
API authorization checks:
A valid PoC must prove: