Skip to main content

这个仓库中的 skills

Wyl-cmd/kxns-cli - 第 3 页

SkillsMP 已收集 Wyl-cmd/kxns-cli 中的 97 个 Skill。打开任一 Skill 可查看来源和详情。

Wyl-cmd/kxns-cli

已展示 17 / 97 个已收集 Skill。

职业分类
信息安全分析师
描述

Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity decision guide, downgrade counters, pre-submit checklist. Use…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Exploit public bucket Content-Type override for stored XSS on target origin.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Enumerate Hikvision ISAPI endpoints on SCADA and IoT web interfaces.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Security payloads, bypass tables, wordlists, gf pattern names, attack pattern catalog (P-01 to P-25, WP-01 to WP-18, CORS V1-V8), always-rejected bug list, conditionally-valid-with-chain table, security research context and behavioral rules. Use when you need…

原文语言:英语

更新
职业分类
软件开发工程师
描述

Guide for creating effective skills. This skill should be used when users want to create a new skill (or update an existing skill) that extends KXNS's capabilities with specialized knowledge, workflows, or tool integrations.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Launch stealth Chromium with C++ fingerprint patches for anti-bot bypass.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Detect and verify subdomain takeover via dangling CNAME to unclaimed services.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Spoof TLS ClientHello and JA4 fingerprints for browser impersonation.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Exploit unauthenticated multi-step API flows without credentials.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Discover hidden virtual hosts via Host header fuzzing and SSL certificate parsing.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Screenshot all live hosts for rapid visual triage and technology fingerprinting.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Sensitive file scanning, path traversal bypass, vHost enum, .env extract, log mining, Varnish detect

原文语言:英语

更新
职业分类
信息安全分析师
描述

Web2 recon pipeline — subdomain enumeration (subfinder, Chaos API, assetfinder), live host discovery (dnsx, httpx), URL crawling (katana, waybackurls, gau), directory fuzzing (ffuf), JS analysis (LinkFinder, SecretFinder), continuous monitoring (new subdomain…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Hunt WP plugins via REST, exploit CVEs when version known.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Batch WP recon: users, CORS, XMLRPC, leaks across domains.

原文语言:英语

更新
职业分类
信息安全分析师
描述

XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces. Use when user-controlled XSLT/stylesheet input or transform endpoints are in scope.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Zimbra SOAP user enum, CVE-2022-37042, SSRF when webmail.

原文语言:英语

更新
已展示 17 / 97 个已收集 Skill。