Loading...
Loading...
Found 5212 skills
jokken79
Tests for directory traversal vulnerabilities by simulating attacks to read arbitrary files outside the web root.
jokken79
Provides comprehensive guidance on security scanning tools and methodologies for vulnerability assessment, network scanning, and compliance evaluation.
jokken79
Provides techniques for detecting, exploiting, and understanding XSS and HTML injection vulnerabilities in web applications.
jokken79
Guides detection, exploitation, and remediation of Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.
jokken79
Provides techniques for identifying and exploiting privilege escalation vectors on Linux systems, including SUID binaries and sudo misconfigurations.
jokken79
Automates SQL injection testing and database penetration using SQLMap for vulnerability detection and exploitation.
jokken79
Provides techniques for network packet capture, filtering, and analysis using Wireshark to detect anomalies and investigate suspicious traffic.
jokken79
Conducts AWS security assessments including IAM enumeration, S3 bucket testing, Lambda exploitation, and metadata SSRF vulnerability scanning.
jokken79
Provides comprehensive definitions, root causes, impacts, and mitigation strategies for web vulnerabilities across OWASP categories.
jokken79
Provides guidance for Active Directory penetration testing, covering techniques like Kerberoasting, DCSync, and BloodHound enumeration.
jokken79
Guides users in performing Shodan-based security reconnaissance for identifying exposed devices, vulnerable services, and IoT security risks.
jokken79
Conducts WordPress security assessments including vulnerability scanning, user/theme/plugin enumeration, and exploitation.
jokken79
Provides guidance for discovering and exploiting Windows privilege escalation vulnerabilities in security testing scenarios.
jokken79
Guides configuration and testing of network services including web servers, HTTP/HTTPS, SNMP, and SMB for penetration testing environments.
jokken79
Tests SMTP server security via user enumeration, open relay detection, banner grabbing, and credential brute-forcing.
jokken79
Performs security testing for broken authentication, session management flaws, and credential stuffing in web applications.
jokken79
Guides penetration testing with Metasploit Framework, covering exploit development, payload creation, and post-exploitation techniques.
jokken79
Guides on privilege escalation methods including SUID abuse, Kerberoasting, and token impersonation for Linux/Windows post-exploitation.
jokken79
Tests for SQL injection vulnerabilities by identifying, exploiting, and understanding attack vectors across multiple database systems.
jokken79
Conducts API security assessments through fuzzing and vulnerability scanning for bug bounty programs, targeting REST and GraphQL endpoints.
jokken79
Provides red team methodology, bug bounty techniques, and security tool configurations for vulnerability hunting including XSS and subdomain enumeration.
jokken79
Provides a structured methodology for planning penetration tests, including scope definition and adherence to security testing best practices.
jokken79
Provides step-by-step guidance for intercepting, modifying, and scanning web traffic using Burp Suite's core security testing features.
Harery
Provides a shared compliance framework for regulatory requirements, audit readiness, and gap analysis across all project phases.