scan-fase-9

Identify and exploit GraphQL, mass assignment, IDOR, and race condition vulnerabilities.

Updated Mar 11, 2026
One-click install
npx skills add https://github.com/ricardoo022/PentestAI-with-claude-code --skill scan-fase-9
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: scan-fase-9
Source: https://github.com/ricardoo022/PentestAI-with-claude-code/tree/main/.claude/skills/scan-fase-9
Command: npx skills add https://github.com/ricardoo022/PentestAI-with-claude-code --skill scan-fase-9

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Identifies and validates advanced vulnerabilities in modern web applications by simulating real-world attack patterns across GraphQL, mass assignment, IDOR, race conditions, and business logic flaws.

Core Features & Use Cases

  • End-to-end security testing across multiple phases, including backend detection, reconnaissance, schema discovery, and targeted attack simulations.
  • Advanced attack coverage for GraphQL mutations without auth, unsafe data handling, and race conditions to reveal critical risks in production-like environments.
  • Use Case: Security teams can verify resilience of enterprise apps that rely on REST/GraphQL APIs and complex authorization rules before release.

Quick Start

Provide the target URL to begin the FASE 9 advanced-attack workflow; Claude Code will autonomously execute the multi-phase assessment against that application.

Frequently Asked Questions about scan-fase-9

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I test for IDOR and mass assignment vulnerabilities in GraphQL APIs?

You can test for IDOR and mass assignment vulnerabilities in GraphQL APIs by running an autonomous multi-phase assessment that executes schema discovery and targeted mutation attacks against your target URL to identify unsafe data handling.

Can I detect race conditions and business logic flaws in web applications automatically?

Detecting race conditions and business logic flaws is possible through automated attack simulations that orchestrate multi-phase breach testing to reveal critical risks in production-like environments with complex authorization rules.

How do I perform unauthenticated security testing on GraphQL mutations?

Unauthenticated security testing on GraphQL mutations is performed by executing targeted attack workflows against the target URL, simulating real-world attack patterns to validate advanced application-level vulnerabilities without requiring prior authorization.

What is the best way to conduct end-to-end breach testing on REST and GraphQL endpoints?

The best way to conduct end-to-end breach testing on REST and GraphQL endpoints is to apply deterministic phase orchestration covering backend detection, reconnaissance, schema discovery, and targeted attack simulations to produce structured reporting for actionable findings.

Does this security testing approach work for enterprise apps with complex architectures?

This security testing approach works for enterprise apps with complex architectures by verifying the resilience of REST and GraphQL APIs that rely on complex authorization rules, applying multi-phase orchestration across authenticated and unauthenticated scenarios.

Why do I need to test for business logic flaws separately from standard application security scanning?

Testing for business logic flaws separately from standard scanning is needed because advanced application-level vulnerabilities require simulating real-world attack patterns across GraphQL, IDOR, and race conditions to uncover critical risks that automated scanners miss.