Salman Abdurrahman
Community@salmanabdurrahman · Yogyakarta, Indonesia
Turning ideas into software through code, curiosity, and continuous learning
Agent Skills by Salman Abdurrahman
Showing 172 vetted skills indexed across 1 GitHub repositories.
framework-express
Review Express.js and Node.js applications for configuration weaknesses and vulnerability patterns.
recon-archive-urls
Collect and categorize historical URLs from public web archives for security reconnaissance.
enum-tls-security
Enumerate TLS protocol versions, cipher suites, and certificate chain validity across network endpoints.
ctf-stego
Analyze file formats to extract hidden data via bit-plane and LSB inspection.
framework-flask
Review Flask and Werkzeug web applications for security misconfigurations.
enum-waf-tech
Identify WAFs, CDNs, and bot-protection services via header and cookie analysis.
blue-report
Generate redacted incident reports from findings, IOC ledgers, and timelines.
ad-enumeration
Enumerate Active Directory domain topology and delegation risks with read-only queries.
recon-asn-whois
Map an organization's network infrastructure using WHOIS, BGP, and certificate transparency data.
pentest-agent-scope
Parse and validate penetration testing scope files against engagement rules.
vuln-sqli
Validate SQL injection vulnerabilities through manual probing and proof-level data extraction.
payload-reference-xxe
Assess XML External Entity vulnerabilities across SOAP, REST, SVG, and SAML interfaces.
ad-kerberoast-validation
Analyze SPN inventory and encryption types to assess Kerberoasting risk.
ad-bloodhound-review
Analyze offline Active Directory graph data for privilege escalation paths and delegation risks.
forensic-metadata
Extract and analyze file-system and embedded metadata from digital artifacts.
payload-reference-sqli
Classify SQL injection payloads by clause and database engine.
internal-network-assessment
Conduct read-only network discovery and service enumeration within defined CIDR and VLAN boundaries.
auth-password-reset
Test password reset token entropy and session management for account takeover vulnerabilities.
pentest-agent-reporting
Assemble and redact security assessment reports from normalized findings and evidence records.
enum-graphql
Enumerate GraphQL endpoints, schemas, and authentication requirements for security assessments.
ctf-pwn-heap
Execute heap exploitation workflows against authorized CTF binaries.
vuln-path-traversal
Test input parameters for directory escape sequences and encoding bypasses.
recon-dns
Enumerate DNS records and assess email security for authorized domains.
enum-headers-cookies
Audit HTTP response headers and cookie attributes for security misconfigurations.