197 tools found
Laravel security audit skill using OWASP awareness to risk-classify vulnerabilities in validation, authorization, auth, and deployment config.
Authorized-use guide for Linux privilege escalation - kernel exploits, sudo/SUID/capabilities/cron abuse, and enumeration.
Memory forensics skill using Volatility 3 for acquisition, process/network/injection analysis, rootkit detection, and credential extraction.
Metasploit Framework guide for authorized penetration testing - exploitation, payloads, auxiliary scanning and post-exploitation, written-permission only.
Mobile security coding expert for secure storage, WebView security, certificate pinning, and biometric authentication implementation.
Sets up HTTP, HTTPS, SNMP, and SMB services in an authorized pentest lab for hands-on enumeration and log-analysis practice.
Modern cloud networking expert: multi-cloud architecture, service mesh, zero-trust security, and performance optimization.
Skill for reviewing payment data flows and collecting engineering control evidence for a scoped PCI assessment, without claiming certification.
Plans authorized penetration tests end-to-end: scoping, environment prep, tester selection, monitoring, and remediation.
Command reference for authorized pentesting: Nmap, Metasploit, Nikto, SQLMap, Hydra, John, Aircrack-ng, and Wireshark.
Escalates privileges on compromised Linux/Windows/AD systems for authorized pentesting: sudo abuse, Kerberoasting, Golden Ticket.
A reverse-engineering skill covering RE tooling, a four-phase analysis methodology, and code-pattern recognition, gated behind explicit authorization checks.