SkillAgentSearch skills...
Home

yaklang

103 skills across 103 repos235.7k repo starsGitHub

Showing 1–60 of 103 skills · Page 1 of 2

yaklang / dependency-confusion

2.3k

Supply-chain testing via package-manager dependency confusion: when internal package names resolve to attacker-controlled public registries, leading to malicious install and script execution. Use for npm/pip/gem/Maven/Composer/Docker manifest review and authorized red-team supply-chain exercises.

📄 SKILL.mdzed
skilltestingdocker+1
86
Updated 15d ago

yaklang / http-parameter-pollution

2.3k

HTTP Parameter Pollution (HPP): duplicate query/body keys parsed differently by servers, proxies, WAFs, and app frameworks

📄 SKILL.mduniversal
skill
86
Updated 15d ago

yaklang / linux-lateral-movement

2.3k

Linux lateral movement playbook. Use after gaining initial access to pivot across Linux hosts via SSH hijacking, credential harvesting, internal pivoting, D-Bus exploitation, sudo token reuse, and shared filesystem abuse.

📄 SKILL.mduniversal
skill
86
Updated 15d ago

yaklang / prototype-pollution-advanced

2.3k

Advanced prototype pollution playbook — server-side RCE, client-side gadgets, filter bypasses, and detection techniques. Companion to ../prototype-pollution/ for basics

📄 SKILL.mduniversal
skill
86
Updated 15d ago

yaklang / ssrf-server-side-request-forgery

2.3k

Also load SCENARIOS.md when you need: - WebLogic SSRF (CVE-2014-4210) — `uddiexplorer/SearchPublicRegistries.jsp` + `operator` parameter + `%0D%0A` CRLF to inject Redis commands - SSRF → internal Redis → write crontab reverse shell complete payload chain - DNS Rebinding deep dive — TTL=0 trick, init…

📄 SKILL.mduniversal
skillredis
86
Updated 15d ago

yaklang / xslt-injection

2.3k

XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces

📄 SKILL.mduniversal
skilltesting
86
Updated 15d ago

yaklang / xss-cross-site-scripting

2.3k

Also load SCENARIOS.md when you need: - Django debug page XSS (CVE-2017-12794) — duplicate key error → unescaped exception → XSS - UTF-7 XSS for legacy IE environments (`+ADw-script+AD4-`) - HttpOnly bypass methodology — proxy-the-browser, session riding, CSRF-via-XSS - XS-Leaks side channel attacks…

📄 SKILL.mduniversal
skill
86
Updated 15d ago

yaklang / xxe-xml-external-entity

2.3k

Also load SCENARIOS.md when you need: - Apache Solr XXE + RCE chain (CVE-2017-12629) — XXE to read config, then VelocityResponseWriter for RCE - Office docx XXE step-by-step — unzip → inject DOCTYPE into `word/document.xml` or `[Content_Types].xml` → repackage → upload - DOCTYPE-based blind SSRF — `…

📄 SKILL.mduniversal
skillrest
86
Updated 15d ago

yaklang / attack-surface-mapping

2.3k

Draw a testable attack surface from one authorized target URL or one application

📄 SKILL.mdzed
skillapi
83
Updated 15d ago

yaklang / auth-sec

2.3k

Entry P1 category router for authentication and authorization

📄 SKILL.mduniversal
skilltestingrust
83
Updated 15d ago

yaklang / csv-formula-injection

2.3k

CSV/spreadsheet formula injection (DDE, Excel/LibreOffice, Google Sheets IMPORT*)

📄 SKILL.mdzed
skilltesting
83
Updated 15d ago

yaklang / file-access-vuln

2.3k

Entry P1 category router for file access and upload workflows

📄 SKILL.mduniversal
skilltestingreview
83
Updated 15d ago

yaklang / ghost-bits-cast-attack

2.3k

Java "Ghost Bits" / Cast Attack playbook (Black Hat Asia 2026)

📄 SKILL.mduniversal
skillsql
83
Updated 15d ago

yaklang / hack

2.3k

Entry P0 primary router and operating doctrine for HackSkills

📄 SKILL.mdzed
skilltestingapi+1
83
Updated 15d ago

yaklang / insecure-source-code-management

2.3k

Source control and artifact exposure (.git, .svn, .hg, backups, .env)

📄 SKILL.mdzed
skilltestinggit
83
Updated 15d ago

yaklang / ssti-server-side-template-injection

2.3k

Before using full engine-specific exploitation, you can first load:

📄 SKILL.mduniversal
skillreview
83
Updated 15d ago

yaklang / websocket-security

2.3k

WebSocket handshake, CSWSH, tooling (wsrepl, ws-harness, Burp), and common flaws

📄 SKILL.mdzed
skilltestingapi+5
83
Updated 15d ago

yaklang / active-directory-acl-abuse

2.3k

Active Directory ACL abuse playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / active-directory-certificate-services

2.3k

AD Certificate Services attack playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / active-directory-kerberos-attacks

2.3k

Kerberos attack playbook for Active Directory

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / anti-debugging-techniques

2.3k

Anti-debugging detection and bypass playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / api-auth-and-jwt-abuse

2.3k

API authentication and JWT abuse playbook

📄 SKILL.mduniversal
skilltestingapi+1
79
Updated 15d ago

yaklang / api-authorization-and-bola

2.3k

API authorization and BOLA testing playbook

📄 SKILL.mduniversal
skilltestingapi
79
Updated 15d ago

yaklang / api-recon-and-docs

2.3k

API reconnaissance and documentation review playbook

📄 SKILL.mduniversal
skilltestingapi+4
79
Updated 15d ago

yaklang / api-sec

2.3k

Entry P1 category router for API security

📄 SKILL.mduniversal
skilltestingapi+4
79
Updated 15d ago

yaklang / arbitrary-write-to-rce

2.3k

Arbitrary write to RCE playbook

📄 SKILL.mdzed
skill
79
Updated 15d ago

yaklang / authbypass-authentication-flaws

2.3k

Authentication bypass testing playbook

📄 SKILL.mduniversal
skilltestingsql+1
79
Updated 15d ago

yaklang / binary-protection-bypass

2.3k

Binary protection bypass playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / browser-exploitation-v8

2.3k

Browser and V8 exploitation playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / business-logic-vuln

2.3k

Entry P1 category router for business logic testing

📄 SKILL.mduniversal
skilltestingaws
79
Updated 15d ago

yaklang / business-logic-vulnerabilities

2.3k

Business logic vulnerability playbook

📄 SKILL.mduniversal
skillautomationaws
79
Updated 15d ago

yaklang / classical-cipher-analysis

2.3k

Classical cipher analysis playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / code-obfuscation-deobfuscation

2.3k

Code obfuscation analysis and deobfuscation playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / cors-cross-origin-misconfiguration

2.3k

CORS misconfiguration testing playbook

📄 SKILL.mduniversal
skilltestingapi+1
79
Updated 15d ago

yaklang / csp-bypass-advanced

2.3k

Advanced Content Security Policy bypass techniques

📄 SKILL.mduniversal
skillsecurityrust
79
Updated 15d ago

yaklang / dangling-markup-injection

2.3k

Dangling markup injection playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / deserialization-insecure

2.3k

Insecure deserialization playbook

📄 SKILL.mduniversal
skillpythonrust
79
Updated 15d ago

yaklang / email-header-injection

2.3k

Email header injection and spoofing playbook

📄 SKILL.mduniversal
skilltestingapi
79
Updated 15d ago

yaklang / expression-language-injection

2.3k

Expression Language injection playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / format-string-exploitation

2.3k

Format string exploitation playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / graphql-and-hidden-parameters

2.3k

GraphQL and hidden parameter testing playbook

📄 SKILL.mduniversal
skilltestingdocumentation+2
79
Updated 15d ago

yaklang / http-host-header-attacks

2.3k

HTTP Host header injection and routing abuse playbook

📄 SKILL.mduniversal
skillrust
79
Updated 15d ago

yaklang / http2-specific-attacks

2.3k

HTTP/2 protocol-specific attack playbook

📄 SKILL.mduniversal
skillaws
79
Updated 15d ago

yaklang / idor-broken-object-authorization

2.3k

IDOR and broken object authorization testing playbook

📄 SKILL.mduniversal
skilltesting
79
Updated 15d ago

yaklang / injection-checking

2.3k

Entry P1 category router for injection testing

📄 SKILL.mduniversal
skilltestingsql+1
79
Updated 15d ago

yaklang / jwt-oauth-token-attacks

2.3k

JWT and OAuth token attack playbook

📄 SKILL.mduniversal
skillrust
79
Updated 15d ago

yaklang / kernel-exploitation

2.3k

Linux kernel exploitation playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / kubernetes-pentesting

2.3k

Kubernetes penetration testing playbook

📄 SKILL.mduniversal
skilltestingapi+1
79
Updated 15d ago

yaklang / lattice-crypto-attacks

2.3k

Lattice-based cryptanalysis playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / linux-privilege-escalation

2.3k

Linux privilege escalation playbook

📄 SKILL.mduniversal
skilldocker
79
Updated 15d ago

yaklang / linux-security-bypass

2.3k

Linux security mechanism bypass playbook

📄 SKILL.mduniversal
skillsecurityrest
79
Updated 15d ago

yaklang / macos-process-injection

2.3k

macOS process injection playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / macos-security-bypass

2.3k

macOS security bypass playbook

📄 SKILL.mdzed
skillsecurityrest
79
Updated 15d ago

yaklang / memory-forensics-volatility

2.3k

Memory forensics playbook using Volatility 2/3

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / mobile-ssl-pinning-bypass

2.3k

Mobile SSL pinning bypass playbook

📄 SKILL.mduniversal
skillreact
79
Updated 15d ago

yaklang / network-protocol-attacks

2.3k

Network protocol attack playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / ntlm-relay-coercion

2.3k

NTLM relay and authentication coercion playbook

📄 SKILL.mduniversal
skillsql
79
Updated 15d ago

yaklang / oauth-oidc-misconfiguration

2.3k

OAuth and OIDC misconfiguration testing playbook

📄 SKILL.mduniversal
skilltestingreview+2
79
Updated 15d ago

yaklang / path-traversal-lfi

2.3k

Path traversal and LFI playbook

📄 SKILL.mduniversal
skill
79
Updated 15d ago

yaklang / prototype-pollution

2.3k

Prototype pollution testing for JavaScript stacks

📄 SKILL.mduniversal
skilltestingrust
79
Updated 15d ago