yliken avatar

yliken

Community

@yliken

1Followers
|
18Public Repos
|
25Published Skills

Agent Skills by yliken

Showing 25 vetted skills indexed across 1 GitHub repositories.

YlikenYliken
5

file-access-vuln

Test file access and upload workflows for misconfigurations and vulnerabilities.

Community
Intermediate
YlikenYliken
5

injection-checking

Route attacker-controlled input to the appropriate injection testing sub-skill.

Community
Intermediate
YlikenYliken
5

saml-sso-assertion-attacks

Analyze SAML SSO assertions for signature validation and trust boundary weaknesses.

Community
Advanced
YlikenYliken
5

api-sec

Route API security tasks to appropriate deep-dive sub-skills.

Community
Intermediate
YlikenYliken
5

graphql-and-hidden-parameters

Discover GraphQL schema gaps via introspection, hidden fields, and batching.

Community
Intermediate
YlikenYliken
5

clickjacking

Detect web page frameability by inspecting X-Frame-Options and CSP frame-ancestors headers.

Community
Advanced
YlikenYliken
5

path-traversal-lfi

Identify and exploit path traversal and LFI vulnerabilities to expose sensitive files.

Community
Advanced
YlikenYliken
5

hack

Route vulnerability testing tasks to security categories based on reconnaissance context.

Community
Advanced
YlikenYliken
5

type-juggling

Identify and exploit PHP loose comparison and magic hash bypass patterns.

Community
Advanced
YlikenYliken
5

api-recon-and-docs

Discover reachable API endpoints, schemas, and documentation across REST, GraphQL, and mobile APIs.

Community
Intermediate
YlikenYliken
5

sqli-sql-injection

Identify and exploit SQL injection vectors across multiple DBMS.

Community
Advanced
YlikenYliken
5

business-logic-vuln

Identify business logic vulnerabilities in workflows and state transitions.

Community
Intermediate
YlikenYliken
5

recon-and-methodology

Organize reconnaissance workflows for bug bounty engagements.

Community
Advanced
YlikenYliken
5

csrf-cross-site-request-forgery

Identify and validate CSRF vulnerabilities in state-changing web flows.

Community
Advanced
YlikenYliken
5

recon-for-sec

Map target scope and plan initial reconnaissance routes.

Community
Intermediate
YlikenYliken
5

idor-broken-object-authorization

Identify and exploit IDOR and broken object authorization vulnerabilities across APIs and UI paths.

Community
Advanced
YlikenYliken
5

oauth-oidc-misconfiguration

Assess OAuth2/OpenID Connect misconfigurations across redirect_uri, state, PKCE, and token binding.

Community
Advanced
YlikenYliken
5

request-smuggling

Detect and map HTTP request smuggling vulnerabilities across proxies and backends.

Community
Advanced
YlikenYliken
5

race-condition

Identify and test race conditions and TOCTOU bugs in web applications.

Community
Advanced
YlikenYliken
5

insecure-source-code-management

Detect exposed .git, .svn, and .hg metadata during authorized assessments.

Community
Advanced
YlikenYliken
5

api-authorization-and-bola

Detects and tests API authorization gaps in object access and function controls.

Community
Advanced
YlikenYliken
5

http-parameter-pollution

Detect inconsistent interpretation of duplicate HTTP parameters across server, proxy, and application layers.

Community
Advanced
YlikenYliken
5

xslt-injection

Identify and exploit XSLT processing weaknesses across engines.

Community
Advanced
YlikenYliken
5

auth-sec

Route authentication and authorization testing tasks to appropriate sub-skills.

Community
Intermediate