Hunt ssrf
Hunting skill for ssrf vulnerabilities.
Skills for your AI
Hunting skill for ssrf vulnerabilities.
Hunt server-side template injection (SSTI) across Jinja2 (Flask/Django), Twig (Symfony), Freemarker (Java), ERB (Rails), Spring, Velocity, Mako, Thymeleaf, Smarty.
Hunting skill for subdomain takeover vulnerabilities.
Hunt TLS/SSL and DNS misconfigurations
Hunt WebSocket vulnerabilities
Hunting skill for xss vulnerabilities.
Hunting skill for xxe vulnerabilities.
Implement incident management processes and escalation procedures. Configure on-call schedules and post-incident reviews. Use when managing production incidents.
Handle security incidents with IR playbooks and procedures.
End-to-end iOS red-team pipeline
Implement ISO 27001 Information Security Management System. Configure ISMS controls and risk management. Use when implementing enterprise security frameworks.
Implement Kubernetes security contexts, Pod Security Standards, and network policies.
Apply CIS benchmarks and secure Linux servers.
Secure LLM-powered applications with input validation, output controls, tenant isolation, and abuse prevention.
Microsoft 365 / Entra ID red-team attack chain
Secure Model Context Protocol (MCP) servers with transport encryption, tool authorization, input validation, and audit logging for safe AI agent integrations.
Meme coin and token security audit
Methodology for detecting client SOC patches, attacker activity, and security-state changes that occur DURING a red-team engagement
Secure the AI model supply chain with artifact signing, provenance attestation, SBOM workflows, dependency controls, and trusted model promotion.
Operational arsenal for authorized external red-team and bug-bounty recon.
Okta-as-IdP red-team attack chain
Secure OpenClaw deployments with preflight hardening checks, CI/CD guardrails, container runtime restrictions, and post-deploy verification.
Harden OpenClaw self-hosted environments with baseline host controls, auth tightening, secret handling, network segmentation, and safe update/rollback workflows.
Comprehensive OSINT methodology for external red-team operations and authorized attack-surface assessments.