Web Auth Defenses Testing

Methodology for testing authentication defenses on web apps — login lockout/rate-limit scope determination (global vs per-account vs per-IP), forgot-password error handling, auth-route method/logic anomalies, and hosted-app (Next.js/Vercel) auth probing. Produces correctly-scored findings (Critical vs Medium) and safe, non-destructive testing.

zyrexnn 784a9aa 2 files · 10.8 KB Updated

File contents

zyrexnn/cybermes/tree/main/skills/security/web-auth-defenses-testing commit 784a9aaac3

Frequently asked questions

npx skillmds@latest add zyrexnn/web-auth-defenses-testing