security-arsenal

Centralize security payloads, bypass tables, and submission rules for bug bounty testing.

1|Updated Mar 19, 2026
One-click install
npx skills add https://github.com/zer0xhamid/LogicHunter_v2 --skill security-arsenal-zer0xhamid
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-arsenal
Source: https://github.com/zer0xhamid/LogicHunter_v2/tree/main/skills/security-arsenal
Command: npx skills add https://github.com/zer0xhamid/LogicHunter_v2 --skill security-arsenal-zer0xhamid

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Payloads, bypass tables, wordlists, gf pattern names, and submission rules for bug bounty assessment.

Core Features & Use Cases

  • Payload library covering XSS, SSRF, SQLi, XXE, IDOR, and path-traversal payloads with example variants
  • Bypass tables and gf pattern names to extend testing surfaces
  • Always-rejected checklist and conditional-chain guidance to judge submittability

Quick Start

Load the security arsenal and apply relevant payloads to the target input vectors to test submission viability.

Frequently Asked Questions about security-arsenal

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
Where can I find security payloads and bypass tables for XSS and SQLi testing?

Security payloads for XSS and SQLi testing are centralized alongside bypass tables and submission rules for bug bounty assessment. The library covers XSS, SSRF, SQLi, XXE, IDOR, and path-traversal scenarios with example variants and bypass patterns.

How do I judge bug bounty submission viability before reporting a vulnerability?

To judge bug bounty submission viability, apply an always-rejected checklist and conditional-chain guidance to the identified vulnerability. This helps determine if findings like IDOR or SSRF meet submission rules before reporting.

What is the best way to test path-traversal and XXE vulnerabilities during assessments?

The best way to test path-traversal and XXE vulnerabilities is by applying curated payload variants to target input vectors. A centralized arsenal provides specific path-traversal and XXE payloads to extend testing surfaces effectively.

Can I use gf pattern names to extend my bug bounty testing surface?

Yes, gf pattern names are included to extend bug bounty testing surfaces. They are provided alongside bypass tables and security payloads to help identify additional attack vectors during XSS, SSRF, and SQLi assessments.

Does this bug bounty arsenal cover IDOR and SSRF bypass patterns?

Yes, the bug bounty arsenal covers IDOR and SSRF bypass patterns. It provides centralized security payloads and bypass tables specifically addressing these vulnerabilities, along with XSS, SQLi, XXE, and path-traversal scenarios.