Say Seven
Community@sayseven7
Senior Penetration Tester & Red Team Lead | Web · API · Mobile · Infra · Cloud Pentest | AI/LLM Security | Offensive Security
Agent Skills by Say Seven
Showing 48 vetted skills indexed across 1 GitHub repositories.
file-access-vuln
Route file access and upload issues to the correct security testing path.
dependency-confusion
Detect dependency confusion exposure by analyzing package names and registry resolution.
injection-checking
Routes attack input to the appropriate specialized testing workflow based on sink type.
prototype-pollution
Detect prototype pollution vulnerabilities in JavaScript applications via unsafe object merging.
saml-sso-assertion-attacks
Detect SAML assertion trust and validation flaws in SSO flows.
api-sec
Route API security testing into documentation, authorization, token, and parameter workflows.
steganography-techniques
Detect hidden data in images, audio, files, and text via steganography analysis.
csv-formula-injection
Detect spreadsheet formula injection risks in CSV export workflows.
websocket-security
Analyze WebSocket security for handshake validation, session handling, and message-channel abuse.
graphql-and-hidden-parameters
Probe GraphQL schemas and enumerate hidden request parameters for security assessments.
traffic-analysis-pcap
Analyze PCAP files to reconstruct network activity and extract evidence.
ai-ml-security
Assess AI and ML systems for supply-chain, adversarial, and privacy risks.
hack
Route web security testing tasks to vulnerability categories by phase.
ios-pentesting-tricks
Test iOS app security, keychain storage, URL schemes, and runtime defenses.
classical-cipher-analysis
Identify and break classical ciphers from ciphertext using cryptanalysis workflows.
api-recon-and-docs
Discover API endpoints, schemas, versions, and hidden documentation paths.
macos-security-bypass
Analyzes macOS security protections and maps version-specific bypass options for authorized assessments.
smart-contract-vulnerabilities
Audit Solidity and EVM smart contracts for exploitable vulnerability patterns.
mobile-ssl-pinning-bypass
Bypass mobile SSL pinning in Android and iOS apps using Frida and Objection.
business-logic-vuln
Identify business logic vulnerabilities in multi-step workflows and state transitions.
hash-attack-techniques
Identify hash-based attack opportunities in authorized security testing.
recon-and-methodology
Map attack surfaces and build structured web recon plans for authorized targets.
lattice-crypto-attacks
Construct and reduce lattices to recover hidden cryptographic values.
rsa-attack-techniques
Recover RSA plaintexts, factors, or signatures from weak keys and oracle leaks.