vuln-matrix

Analyze 20 web2 vulnerability classes with root causes and detection patterns.

1|Updated Apr 3, 2026
One-click install
npx skills add https://github.com/mlvpatel/sentinel-ai-offensive --skill vuln-matrix
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: vuln-matrix
Source: https://github.com/mlvpatel/sentinel-ai-offensive/tree/main/skills/vuln-matrix
Command: npx skills add https://github.com/mlvpatel/sentinel-ai-offensive --skill vuln-matrix

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Security teams and researchers need a consolidated reference of common web2 vulnerability classes to quickly identify patterns, test ideas, and prioritize bug-bounty submissions. The vuln-matrix provides structured root causes, detection patterns, bypass techniques, exploit references, and paid real-world examples across 20 classes.

Core Features & Use Cases

  • Comprehensive coverage of 20 web2 bug classes including IDOR, broken auth, XSS, SSRF, SQLi, OAuth/OIDC, file upload bypasses, GraphQL, LLM/AI, API misconfig, ATO taxonomy, SSTI, subdomain takeover, cloud misconfigurations, HTTP request smuggling, cache poisoning, MFA bypass, and SAML attacks.
  • Detection patterns, bypass tables, and practical test scenarios with references to real-world paid findings.
  • Use in bug-bounty hunting, security research, and training to quickly map targets to applicable vulnerability classes and testing steps.

Quick Start

Read and study the matrix to understand each class's root causes, patterns, and typical exploit techniques, then apply the patterns to your testing workflow.

Frequently Asked Questions about vuln-matrix

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What are the major web2 vulnerability classes for security assessments?

The major web2 vulnerability classes include IDOR, broken auth, XSS, SSRF, SQLi, OAuth/OIDC, GraphQL, SSTI, subdomain takeover, and HTTP request smuggling. The vuln-matrix identifies and analyzes 20 classes with root causes, detection patterns, and real-world paid examples.

How do I detect and bypass common web2 security patterns during bug bounty hunting?

To detect and bypass web2 security patterns, apply the detection patterns and bypass tables provided for each vulnerability class. The matrix guides targeted test design by mapping root causes to specific bypass techniques and practical test scenarios with references to real-world paid findings.

Does this vulnerability reference cover modern attack surfaces like LLM/AI and GraphQL?

Yes, this vulnerability reference covers modern attack surfaces including LLM/AI and GraphQL. It provides structured root causes, detection patterns, and bypass techniques for 20 web2 bug classes, ensuring rapid class-level triage and targeted test design for modern security assessments.

Can I use this matrix for red-team operations and vulnerability research?

Yes, you can use this matrix for red-team operations and vulnerability research. It applies to scenarios where rapid class-level triage and targeted test design are needed, capturing core concepts, techniques, and references to surface relevant patterns and primers during assessments.

What is the best way to map target applications to applicable vulnerability classes?

The best way to map target applications to applicable vulnerability classes is to study the matrix to understand each class's root causes and patterns. You can then apply these structured detection patterns and practical test scenarios directly to your testing workflow.

Why does my vulnerability triage process lack real-world exploit context?

Your vulnerability triage lacks real-world context because it misses references to paid real-world findings. The vuln-matrix provides exploit references and practical test scenarios across 20 web2 classes to guide security assessments and prioritize bug-bounty submissions effectively.