What problem does it solve?
This Skill helps authorized security teams identify and prioritize exposed cloud services, container infrastructure, CI/CD platforms, and weak TLS configurations without turning reconnaissance into exploitation.
Core Features & Use Cases
- Cloud-Native Fingerprinting: Classify AWS, Google Cloud, Azure, and modern application-platform endpoints and assess public versus authenticated access.
- Infrastructure Exposure Checks: Review Kubernetes, Docker, etcd, container registries, and CI/CD platforms for dangerous anonymous or misconfigured access.
- TLS and Favicon Analysis: Perform deep TLS configuration audits and use favicon hashes to pivot toward related infrastructure.
- Evidence-Based Triage: Produce severity-ranked infrastructure findings with provider, service type, authentication posture, detectability, and evidence requirements.
- Use Case: An authorized bug bounty team can review discovered subdomains for public cloud functions, exposed Kubernetes services, CI/CD consoles, weak TLS, and target-owned container images before handing prioritized leads to validation workflows.
Quick Start
Use the cloud-and-infra skill to audit the authorized target’s cloud services, container and Kubernetes exposure, CI/CD platforms, TLS posture, and favicon pivots, then return evidence-backed prioritized findings.