4,052 tools found
A five-phase bug bounty methodology - intake, passive recon, enumeration, playbook-driven hunting, reporting - with in-scope legal rules.
Delegate bounded coding tasks to the Pi CLI, which has no sandbox or permission modes at all, then verify what changed through touchedFiles and the diff.
Applies Toyota's poka-yoke mistake-proofing to software: design interfaces where mistakes can't happen, not where people are told to be careful.
Decode custom TCP/UDP protocols, Protobuf, gRPC, and binary formats from packet captures with frame layout reconstruction and state machine mapping.
This skill turns an identified binary vulnerability into a working, remote-stabilized pwntools exploit for CTF and authorized security assessments.
CLI-first radare2 binary analysis skill: recon, disassembly, patching, and diffing via rabin2/rasm2/radiff2/rahash2/rax2.
Authorized-only SDR research skill for studying non-Wi-Fi RF protocols with GNU Radio and URH, receive-first, replay only in a shielded lab.
Automates browser pages (Playwright/agent-browser) and Windows desktop apps (OpenReverse UIA/CUA) for scripted UI interaction and evidence capture.
General reverse-engineering methodology for CTF and crackme binaries: quick-win triage, GDB/Frida/angr/Unicorn/Qiling workflows, and anti-analysis notes.
A six-phase methodology for reverse-engineering custom bytecode VMs embedded in obfuscated JavaScript, common in risk-control engines.
Gives an agent one discoverable MCP interface to 2,000+ AI models and APIs, with checksum-verified setup and a two-step approval gate.
Freeze a PRD, technical design, and evidence-backed acceptance contract before medium-to-large Codex work, then judge delivery from diffs and tests.