Login
Download
Skill UI
Browse and discover
18671+
curated skills
All
Development
Artificial Intelligence
Design & Creative
Product & Business
Data Science
Marketing
Soft Skills
Productivity
Engineering
Languages
Search
PR
, found
15890
results
Default
Newest
Most Downloaded
GraphQL Vulnerability Hunting
hunt-graphql
sickn33/agentic-awesome-skills
390
Hunting skill for GraphQL vulnerabilities. Provides methodology to discover endpoints, test introspection, map schemas, and exploit authorization flaws across GraphQL and REST APIs.
View Details
gRPC Vulnerability Hunter
hunt-grpc
sickn33/agentic-awesome-skills
325
This skill helps identify gRPC security vulnerabilities during penetration testing. It includes fingerprinting gRPC servers, enumerating services via reflection, testing authentication bypasses, and checking for DoS risks like HTTP/2 Rapid Reset. Requires explicit authorization for offensive use.
View Details
Host Header Injection Hunter
hunt-host-header
sickn33/agentic-awesome-skills
209
A security skill for identifying and exploiting Host header injection vulnerabilities, including password reset poisoning, web cache poisoning, and routing-based SSRF. Provides step-by-step testing methodology and commands for authorized assessments only. Built from public research and real-world findings.
View Details
HTML Injection Hunting
hunt-html-injection
sickn33/agentic-awesome-skills
302
This skill helps security researchers identify HTML injection vulnerabilities in web applications. It provides techniques for detecting unescaped user input, escalating to XSS, and proving impact with unique canaries. Recommended for authorized penetration testing and bug bounty engagements.
View Details
HTTP Request Smuggling Analysis
hunt-http-smuggling
sickn33/agentic-awesome-skills
329
This skill covers identifying and exploiting HTTP request smuggling vulnerabilities (CL.TE, TE.CL, H2.CL, H2.TE). It includes fingerprinting front-end servers, crafting payloads for cache poisoning, and harvesting credentials via backend desyncs. Requires authorization and defensive guidance protocols.
View Details
IDOR Vulnerability Hunting
hunt-idor
sickn33/agentic-awesome-skills
102
A security hunting skill for IDOR vulnerabilities, built from 26 public bug bounty reports. Provides methodology, attack surface signals, and payload patterns for authorized security assessments.
View Details
Hunt JWT Crypto Failures
hunt-jwt-crypto
sickn33/agentic-awesome-skills
98
This skill identifies and exploits JWT cryptographic weaknesses such as alg:none and key confusion attacks. It helps security professionals find critical vulnerabilities in authentication systems by forging tokens to bypass security checks and gain unauthorized access.
View Details
LLM AI Feature Bug Hunting
hunt-llm-ai
sickn33/agentic-awesome-skills
429
This skill focuses on identifying security vulnerabilities in Large Language Model (LLM) and AI features. It covers prompt injection, system prompt leakage, cross-tenant access, and data exfiltration techniques. Users must verify findings against false positives using reproducibility checks and out-of-band callbacks before reporting.
View Details
MFA and 2FA Bypass Testing
hunt-mfa-bypass
sickn33/agentic-awesome-skills
338
Offensive security skill for hunting MFA and 2FA bypass flaws: workflow skipping, OTP replay, response tampering, prefix-oracle guessing, and race conditions on verification endpoints. Requires written authorization.
View Details
Misc Vulnerability Hunting
hunt-misc
sickn33/agentic-awesome-skills
171
A comprehensive skill for identifying miscellaneous security vulnerabilities like access control failures, information disclosure, and misconfigurations. Based on 225 public bug bounty reports, it helps hunters target SaaS platforms, identity flows, and internal APIs to find high-value issues.
View Details
Next.js Vulnerability Hunter
hunt-nextjs
sickn33/agentic-awesome-skills
150
This skill helps identify and exploit specific vulnerabilities in Next.js applications, such as Server Actions authentication bypasses, middleware bypasses, and SSRF via image optimization. It provides commands for fingerprinting, version detection, and testing attack vectors. Requires explicit written authorization for target scope.
View Details
Node.js Vulnerability Hunting
hunt-nodejs
sickn33/agentic-awesome-skills
407
This skill helps identify and exploit specific vulnerabilities in Node.js applications. It covers techniques like prototype pollution, Express trust proxy abuse, and template engine SSTI. Users must have explicit authorization before testing. It includes fingerprinting, detection, and exploitation chains for critical security issues.
View Details
Prev
1
2
3
...
1261
1262
1263
1264
1265
1266
1267
...
1323
1324
1325
Next
Language
简体中文
English