Claude Red Auth Offensive OAUTH

OAuth 2.0 attack checklist: authorization code interception, redirect_uri bypass, CSRF on OAuth flow, state parameter abuse, open redirector chaining, token leakage via Referer, PKCE bypass, and scope escalation. Use when testing OAuth implementations in web apps or bug bounty.

netvar1337 Updated

File contents

netvar1337/agent-skill-canon/tree/main/skills/claude-red/auth/offensive-oauth commit bcf680512c

Frequently asked questions

npx skillmds@latest add netvar1337/claude-red-auth-offensive-oauth