← all publishers

ferr079

@ferr079 source repo

32 published skills

  1. Humanizer Fr · ferr079 bundle
    Supprime les marques d'écriture IA dans un texte français. À utiliser pour relire ou réécrire du texte afin qu'il sonne humain. Adaptation française du skill « humanizer » de blader/humanizer, fondée sur le guide Wikipédia « Signs of AI writing ». Repère et corrige l'inflation de portée, le langage promotionnel, les attributions vagues, la voix passive, la règle de trois, le parallélisme négatif, les anglicismes calqués, les tics typographiques (guillemets droits, capitalisation à l'anglaise, abus du tiret cadratin) et les formules de remplissage propres au français.
    0
    installs
  2. Ssrf · ferr079
    Exploiting Server-Side Request Forgery
    0
    installs
  3. Ssti · ferr079
    Detect and exploit server-side template injection (Jinja2, Twig, Freemarker, Velocity) up to remote code execution. Use during an authorized test when input reaches a template engine.
    0
    installs
  4. Hashcat · ferr079
    Performing Hash Cracking with Hashcat
    0
    installs
  5. Aide Fim · ferr079
    Implementing File Integrity Monitoring with AIDE
    0
    installs
  6. Dns Enum · ferr079
    DNS enumeration and zone transfers — record analysis, brute forcing, infrastructure mapping. Use during authorized reconnaissance of a target's external surface.
    0
    installs
  7. Bloodhound · ferr079
    Map Active Directory attack paths with BloodHound — collection, Cypher queries, shortest path to Domain Admin. Use during an authorized AD assessment.
    0
    installs
  8. JWT Attack · ferr079
    Exploiting JWT Algorithm Confusion Attack
    0
    installs
  9. Sqli Sqlmap · ferr079
    Exploit SQL injection with sqlmap — detection, DBMS fingerprinting, data extraction, WAF evasion, out-of-band techniques. Use during an authorized web application test.
    0
    installs
  10. Web Pentest · ferr079
    Run a full web application penetration test — recon, authentication, session, injection, access control, business logic — mapped to OWASP WSTG. Use to structure an authorized engagement end to end.
    0
    installs
  11. Xss Testing · ferr079
    Test for reflected, stored and DOM-based XSS with context-aware payloads and CSP bypass checks, following OWASP WSTG. Use during an authorized web application test.
    0
    installs
  12. Kerberoasting · ferr079
    Extract and crack Kerberos service tickets with Impacket. Use during an authorized Active Directory assessment when valid domain credentials are available.
    0
    installs
  13. Nmap Advanced · ferr079
    Advanced Nmap scanning — asset discovery, service and version enumeration, NSE scripting, timing and evasion tuning. Use during an authorized assessment when mapping a network or fingerprinting services.
    0
    installs
  14. Privesc Linux · ferr079
    Performing Privilege Escalation on Linux
    0
    installs
  15. Binary Exploit · ferr079
    Analyze ELF binaries for memory corruption — protections, fuzzing, ROP chains, exploit development. Use on an authorized target or a CTF binary.
    0
    installs
  16. Race Condition · ferr079
    Find and exploit race conditions (TOCTOU, limit overrun) with parallel-request techniques. Use when testing authorized transactional functionality such as payments or coupons.
    0
    installs
  17. Subdomain Enum · ferr079
    Enumerate subdomains with subfinder and friends, then resolve, probe and triage what is actually live. Use during authorized recon or in-scope bug bounty discovery.
    0
    installs
  18. Syslog Central · ferr079
    Implementing Syslog Centralization with Rsyslog
    0
    installs
  19. Deserialization · ferr079
    Exploit insecure deserialization in Java, PHP, Python and .NET, including gadget-chain selection with ysoserial. Use during an authorized test when the target processes serialized data.
    0
    installs
  20. Suricata Config · ferr079
    Configure Suricata as an IDS/IPS — multi-threading, capture tuning, rule management, alert output. Use when deploying or troubleshooting network monitoring.
    0
    installs
  21. Wazuh Detection · ferr079
    Implementing Endpoint Detection with Wazuh
    0
    installs
  22. Dns Exfil Detect · ferr079
    Detecting DNS Exfiltration with DNS Query Analysis
    0
    installs
  23. Docker Forensics · ferr079
    Investigate a compromised container or container host — image and layer analysis, runtime artifacts, escape indicators. Use during container incident response.
    0
    installs
  24. Docker Hardening · ferr079
    Harden Docker for production — daemon configuration, non-root containers, capabilities, seccomp and AppArmor, image supply chain. Use when reviewing or deploying container workloads.
    0
    installs
  25. Internal Pentest · ferr079
    Conducting Internal Network Penetration Test
    0
    installs
  26. Linux Audit Logs · ferr079
    Investigate a Linux host through auditd and system logs — rule design, searching, reconstructing an intrusion timeline. Use when triaging suspected unauthorized access or privilege escalation.
    0
    installs
  27. Security Headers · ferr079
    Audit HTTP security headers — CSP, HSTS, frame options, permissions policy — with concrete fixes for each gap. Use when reviewing a web application's configuration.
    0
    installs
  28. Dns Exfil Analysis · ferr079
    Analyze DNS logs for tunneling and exfiltration using entropy, volume and query-pattern analysis. Use when investigating suspected data theft over DNS.
    0
    installs
  29. Wireshark Analysis · ferr079
    Analyze captured traffic with Wireshark and tshark — display filters, stream reconstruction, command-and-control and exfiltration indicators. Use when investigating an intrusion from a pcap.
    0
    installs
  30. Cis Linux Hardening · ferr079
    Hardening Linux Endpoint with CIS Benchmark
    0
    installs
  31. Credential Dump Detect · ferr079
    Detecting Credential Dumping Techniques
    0
    installs
  32. Lateral Movement Detect · ferr079
    Detect lateral movement — pass-the-hash, PSExec, RDP hopping, remote service creation — from Windows and network telemetry. Use when hunting post-compromise activity.
    0
    installs