Skip to main content

这个仓库中的 skills

Zyrexnn/Cybermes - 第 3 页

SkillsMP 已收集 Zyrexnn/Cybermes 中的 90 个 Skill。打开任一 Skill 可查看来源和详情。

Zyrexnn/Cybermes

已展示 10 / 90 个已收集 Skill。

职业分类
信息安全分析师
描述

Generates Out-of-Band (OAST) interaction payloads with interactsh-client to detect and confirm Blind SSRF, Blind RCE, and Out-of-Band data leakage.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Discovers hidden GET/POST/JSON parameters from web applications and categorizes them for IDOR, SSRF, SQLi, and redirect testing.

原文语言:英语

更新
职业分类
未分类
描述

Pentest a web app, API, codebase, repository, URL, domain, or IP with Strix — autonomous AI penetration testing that exploits and proves vulnerabilities (OWASP Top 10 and beyond — injection, XSS, SSRF, auth/access-control flaws, IDOR, business logic) instead…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Orchestrates scoped subdomain enumeration, DNS resolution, and active web probing for bug bounty targets.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Performs whitebox static application security testing (SAST), code review, API route extraction, credential hunting, and vulnerability pattern detection in local repositories or GitHub codebases.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyzes scan results and code flaws, formulates security hypotheses, generates deterministic PoCs, and eliminates false positives following the "No PoC, No Finding" standard.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Applies URL encoding, header tampering, path normalization, and payload mutation to bypass Web Application Firewalls (WAF) when testing valid vulnerabilities.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Discovers web application endpoints, Javascript files, hidden paths, and technology fingerprints using httpx and katana.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Authorized bug-bounty / web-pentest methodology for New API (and One API fork) AI-gateway deployments, including their storefront (Midtrans) and LibreChat chat-GUI ecosystem. Covers endpoint mining, known patched decoys, access-control verification, and the…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Master orchestrator skill for end-to-end authorized web application penetration testing, mapping OWASP Top 10 vulnerabilities, coordinating specialized sub-skills, source code auditing, browser automation, and deterministic PoC reporting.

原文语言:英语

更新
已展示 10 / 90 个已收集 Skill。