Insecure Defaults

Detects fail-open vulnerabilities where applications run insecurely with missing configuration. Finds hardcoded credentials, weak env var fallbacks, and insecure-by-default settings. Adapted from Trail of Bits methodology.

the-hugin 8ea70aa 7.3 KB Updated

File contents

the-hugin/RSIm/tree/main/skills/insecure-defaults commit 8ea70aa463

Frequently asked questions

npx skillmds@latest add the-hugin/insecure-defaults