Abdelrahman Kasem
Community@akasem1 · Cairo, Egypt
Agent Skills by Abdelrahman Kasem
Showing 29 vetted skills indexed across 1 GitHub repositories.
bug-bounty
Orchestrate authorized bug bounty workflows from recon to report drafting.
hunt-api-misconfig
Detect and validate API security misconfigurations across mass assignment, JWT, CORS, and HTTP verbs.
hunt-xss
Detect and validate reflected, stored, and DOM-based XSS vulnerabilities.
web2-vuln-classes
Map observed web behaviors to Web2 vulnerability classes and generate validation-focused hunting plans.
meme-coin-audit
Analyze EVM and Solana token contracts for rug-pull and authority risks.
hunt-dispatch
Map HTTPS fingerprints to platform-specific hunt-* skill sets for Red Team or WAPT workflows.
report-writing
Generate triager-ready bug bounty reports with CVSS scoring for HackerOne, Bugcrowd, Intigriti, and Immunefi.
hunt-idor
Detect IDOR vulnerabilities by replaying victim IDs across accounts to confirm unauthorized access or state changes.
hunt-race-condition
Detect race condition vulnerabilities in business-logic workflows via synchronized parallel requests.
mid-engagement-ir-detection
Detect and document security-state changes during monitored red-team engagements.
hunt-xxe
Locate XML parsing entry points and validate XXE file disclosure, OOB callbacks, or SSRF.
bugcrowd-reporting
Align Bugcrowd submissions to correct VRT mappings and severity requests.
redteam-report-template
Format red-team findings into a six-section client report template.
hunt-business-logic
Identifies business logic vulnerabilities in web and API authentication, payment, and verification flows.
hunt-aspnet
Fingerprint ASP.NET surfaces and triage ViewState security properties.
hunt-rce
Identify externally reachable Remote Code Execution vulnerabilities with out-of-band validation.
hunt-sqli
Identify SQL injection paths in web apps and APIs.
bb-methodology
Guide bug bounty hunters through a validated 5-phase workflow with engagement mode confirmation.
redteam-mindset
Guide authorized red-team operators through engagement discipline and evidence-forward decision-making.
triage-validation
Validate bug-bounty findings with a kill-on-fail triage sequence before report writing.
cloud-iam-deep
Analyze exposed cloud credentials and map IAM privilege escalation paths.
hunt-misc
Identify authorization, token lifecycle, and SSO logic vulnerabilities across web targets.
hunt-ssrf
Confirm SSRF vulnerabilities via out-of-band callbacks across URL-fetching endpoints.
web2-recon
Discover subdomains, live hosts, and actionable URLs for web2 vulnerability hunting.