Agent Skills by Harshith Jella
Showing 21 vetted skills indexed across 1 GitHub repositories.
hunt-xss
Detect reflected, stored, and DOM XSS vulnerabilities with OOB confirmation.
hunt-ssti
Probe template rendering behavior to detect SSTI and fingerprint the active engine.
report-writing
Draft bug bounty reports with program-specific templates and CVSS 3.1 scoring.
hunt-race-condition
Detect and validate race conditions in stateful endpoints via parallel requests.
mid-engagement-ir-detection
Detect and document security-state changes during red-team engagements.
bugcrowd-reporting
Guide Bugcrowd vulnerability report authors through VRT selection and severity overrides.
redteam-report-template
Generate a markdown red-team report template with six-section findings and severity fields.
hunt-http-smuggling
Detect HTTP request smuggling via front-end and back-end parser inconsistencies.
hunt-business-logic
Identify business logic vulnerabilities in web payment and verification flows.
hunt-rce
Identify remote code execution vectors across web and infrastructure endpoints.
bb-methodology
Orchestrate phase-based bug bounty hunts with critical-thinking decision rules.
redteam-mindset
Guide red-team operators to preserve access-impact finding correctness during engagements.
offensive-osint
Generate probe paths, wordlists, and evidence-scoped findings for authorized asset discovery.
triage-validation
Validates security-finding reportability using a structured 7-question gate and four pre-submission checks.
hunt-ntlm-info
Capture and decode NTLM Type-2 AV_PAIRS from IIS, SharePoint, and Exchange endpoints.
enterprise-vpn-attack
Map pre-auth and auth-bypass CVE test paths for SSL VPN appliances.
hunt-graphql
Discover GraphQL endpoints, map schemas, and test authorization boundaries.
hunt-oauth
Guide enumeration and testing of OAuth authorization, callback, token, and mobile deep link surfaces.
m365-entra-attack
Parse ROPC AADSTS codes to validate Entra credentials under Conditional Access.
web3-audit
Audit Solidity smart contracts using DeFi bug-class playbooks and Foundry PoC templates.
evidence-hygiene
Redact sensitive cookies, Authorization headers, and PII from bug-bounty screenshots and HAR exports.