security-arsenal

Compile web vulnerability payloads and bypass techniques for authorized testing.

3.3k|507|Updated May 5, 2026
One-click install
npx skills add https://github.com/elementalsouls/Claude-BugHunter --skill security-arsenal-elementalsouls
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-arsenal
Source: https://github.com/elementalsouls/Claude-BugHunter/tree/main/skills/security-arsenal
Command: npx skills add https://github.com/elementalsouls/Claude-BugHunter --skill security-arsenal-elementalsouls

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill consolidates payloads, bypass tables, wordlists, gf pattern names, and chain-logic guidance to accelerate web security testing and vulnerability triage across XSS, SSRF, SQLi, XXE, NoSQLi, SSTI, IDOR, path traversal, HTTP smuggling, WebSocket, and MFA bypass scenarios.

Core Features & Use Cases

  • Comprehensive payload libraries for XSS, SSRF, SQLi, XXE, NoSQLi, SSTI, IDOR, path traversal, HTTP smuggling, WebSocket, MFA bypass.
  • Bypass technique reference tables, submission rules, and chain-building guidance to determine practical impact.
  • gf pattern name mappings and wordlists to support reconnaissance and payload matching.
  • Use Case: Combine payloads with chain templates to validate end-to-end exploitability in authorized engagements.

Quick Start

Install the security-arsenal skill in your Claude environment and begin loading payloads for your current target.

Frequently Asked Questions about security-arsenal

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
Where can I find XSS and SSRF payloads with bypass techniques for web vulnerability testing?

The library supplies web security payloads and bypass techniques across XSS, SSRF, SQLi, XXE, and SSTI scenarios. It includes pattern name mappings and submission guardrails to determine if findings are submittable in authorized engagements.

How do I bypass WAF filters when testing for SQLi and NoSQLi vulnerabilities?

SQLi and NoSQLi WAF filter bypass is supported through reference tables containing bypass patterns and alternative payloads. The library maps gf pattern names to support reconnaissance and payload matching during authorized testing.

Can I use this security-arsenal skill for HTTP request smuggling and WebSocket testing?

HTTP request smuggling and WebSocket testing are supported with dedicated payload libraries. The skill covers these alongside MFA bypass, IDOR, and path traversal scenarios, providing submission rules to determine practical impact.

What are the submission guardrails for determining if a vulnerability finding is submittable?

Submission guardrules provide rules for determining if vulnerability findings are submittable in authorized engagements. They combine payload validation results with chain-logic guidance to assess practical impact and exploitability.

How do I chain payloads together to validate end-to-end exploitability during security testing?

Chain payloads using chain-logic guidance and templates that combine individual payloads with bypass techniques. This validates end-to-end exploitability across XSS, SSRF, SQLi, and other web vulnerability scenarios in authorized engagements.

Does this library include gf pattern names and wordlists for reconnaissance?

gf pattern name mappings and wordlists are included to support reconnaissance and payload matching during web security testing. These map to vulnerability classes like XSS, SSRF, SQLi, and path traversal for efficient target analysis.