Agent Skills by zhanglimao
Showing 10 vetted skills indexed across 1 GitHub repositories.
security-misconfiguration
Audit and exploit security misconfigurations across web servers, applications, and cloud services.
broken-access-control
Test and exploit broken access control vulnerabilities in web applications, APIs, and cloud environments.
authentication-failures
Test web application authentication for brute-force, session, and MFA flaws.
security-logging-alerting-failures
Test and exploit security logging and alerting failures in applications.
software-supply-chain-failures
Analyze configuration files and dependency trees to exploit software supply chain weaknesses.
mishandling-exceptional-conditions
Tests and exploits vulnerabilities from improper exception handling in software applications.
software-data-integrity-failures
Test software and data integrity failures per OWASP Top 10:2025 A08.
injection
Detect and exploit SQL, NoSQL, OS command, XSS, SSRF, XXE, and template injection vulnerabilities.
cryptographic-failures
Audit cryptographic implementations for weak algorithms, key management, and TLS vulnerabilities.
insecure-design
Map penetration testing scenarios for insecure design vulnerabilities to reference files.