本文へ移動
cccskills

スキルを探す

103 件(yaklang のリポジトリ) ・ 人気順

概要と使いどころ

XSS playbook. Use when user-controlled content reaches HTML, attributes, JavaScript, DOM sinks, uploads, or multi-context rendering paths.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces. Use when user-controlled XSLT/stylesheet input or transform endpoints are in scope.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

XXE playbook. Use when XML, SVG, OOXML, SOAP, or parser-driven imports may resolve external entities, files, or internal network resources.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Network protocol attack playbook. Use when exploiting layer 2/3 protocols including ARP spoofing, LLMNR/NBT-NS/mDNS poisoning, WPAD abuse, DHCPv6 attacks, VLAN hopping, STP manipulation, DNS spoofing, IPv6 attacks, and IDS/IPS evasion.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

JNDI injection playbook. Use when Java applications perform JNDI lookups with attacker-controlled names, especially via Log4j2, Spring, or any code path reaching InitialContext.lookup().

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

AV/EDR evasion playbook for Windows. Use when bypassing AMSI, ETW, .NET assembly detection, shellcode execution, process injection, API hooking, and signature-based detection on Windows endpoints.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

WAF bypass methodology and generic evasion techniques. Use when a web application firewall blocks injection payloads (SQLi, XSS, RCE) and you need to craft bypasses using encoding, protocol-level tricks, or WAF-specific weaknesses.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

LLM prompt injection playbook. Use when testing AI/LLM applications for direct injection, indirect injection via RAG/browsing, tool abuse, data exfiltration, MCP security risks, and defense bypass techniques.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Path traversal and LFI playbook. Use when file paths, download endpoints, include operations, archive extraction, or wrapper behavior may expose filesystem control.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Steganography detection and extraction playbook. Use when analyzing images (LSB, PNG chunks, JPEG DCT, EXIF), audio (spectrogram, DTMF), files (polyglots, appended data, ADS), and text (whitespace, zero-width, homoglyphs) for hidden data.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Lattice-based cryptanalysis playbook. Use when attacking RSA via Coppersmith small roots, recovering DSA/ECDSA nonces from bias, solving knapsack problems, or applying LLL/BKZ reduction to cryptographic constructions.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

RSA attack playbook for CTF and real-world cryptanalysis. Use when given RSA parameters (n, e, c) and need to recover plaintext by exploiting weak keys, small exponents, shared factors, or padding oracles.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

SAML SSO assertion attack playbook. Use when testing signature validation, assertion wrapping, audience restrictions, ACS handling, XML trust boundaries, and enterprise SSO flaws.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

macOS process injection playbook. Use when you need to inject code into running or launching macOS processes via dylib hijacking, DYLD environment variables, XPC exploitation, Mach port manipulation, or Electron/Chromium abuse.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Mobile SSL pinning bypass playbook. Use when intercepting HTTPS traffic from mobile applications that implement certificate pinning, public key pinning, or SPKI hash pinning on Android and iOS, including React Native, Flutter, and Xamarin frameworks.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Linux security mechanism bypass playbook. Use when facing restricted bash/rbash, read-only or noexec filesystems, AppArmor, SELinux, seccomp filters, or audit logging that must be evaded during post-exploitation.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

NTLM relay and authentication coercion playbook. Use when capturing and relaying NTLM authentication to escalate privileges via SMB, LDAP, HTTP, or MSSQL relay targets, combined with PetitPotam, PrinterBug, and other coercion methods.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

OAuth and OIDC misconfiguration testing playbook. Use when reviewing redirect URI handling, state and nonce validation, PKCE, token audience, callback binding, and identity-provider trust flaws.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Advanced prototype pollution playbook — server-side RCE, client-side gadgets, filter bypasses, and detection techniques. Companion to ../prototype-pollution/ for basics. Use when you've confirmed pollution and need to escalate to code execution or find framework-specific gadgets.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

SSRF playbook. Use when the server fetches URLs, resolves hostnames, imports remote content, or can be driven toward internal networks, cloud metadata, or secondary protocols.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

WebSocket handshake, CSWSH, tooling (wsrepl, ws-harness, Burp), and common flaws. Use when apps use real-time channels, chat, notifications, or WS-backed APIs.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Custom VM and bytecode reverse engineering playbook. Use when CTF challenges or protected software implement custom virtual machines with proprietary bytecode, dispatcher loops, or maze-style challenges.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Web cache deception and poisoning playbook. Use when CDN, reverse proxy, or application caching may serve sensitive authenticated content to other users due to path confusion or cache key manipulation.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新

Windows local privilege escalation playbook. Use when you have low-privilege shell access on Windows and need to escalate via token abuse, Potato exploits, service misconfigurations, DLL hijacking, UAC bypass, or registry autoruns.

日本語の概要は準備中です。原文の説明を表示しています。

yaklang/hack-skills2,4262026年9月13日 更新