UhdyIndy
- 17 skills
- 0 followers
- 5 hours ago last updated
- ▌
- ▌
- ▌ Hackerone · uhdyindy bundleHackerOne bug bounty automation - parses scope CSVs, deploys parallel pentesting agents for each asset, validates PoCs, and generates platform-ready submission reports. Use when testing HackerOne programs or preparing professional vulnerability submissions.
- ▌ Injection · uhdyindy bundleInjection vulnerability testing - SQL, NoSQL, OS Command, SSTI, XXE, and LDAP/XPath injection techniques.
- ▌ Hackthebox · uhdyindy bundleHackTheBox platform automation - login via Playwright, browse challenges/machines/labs, manage VPN connections, solve challenges using pentest skills, log all proceedings, and feed learnings back into skill improvement.
- ▌ Mem Search · uhdyindySearch claude-mem's persistent cross-session memory database. Use when user asks "did we already solve this?", "how did we do X last time?", or needs work from previous sessions.
- ▌ Server Side · uhdyindy bundleServer-side vulnerability testing - SSRF, HTTP Request Smuggling, Path Traversal, File Upload, Insecure Deserialization, and Host Header injection.
- ▌ API Security · uhdyindy bundleAPI security testing - GraphQL, REST API, WebSocket, and Web-LLM attack techniques.
- ▌ Coordination · uhdyindy bundlePentest engagement orchestration - workflow management, test planning, reporting, and output structure coordination.
- ▌ Authentication · uhdyindy bundleAuthentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass, and bot detection evasion.
- ▌ Infrastructure · uhdyindy bundleNetwork infrastructure testing - port scanning, DNS attacks, MITM, VLAN hopping, IPv6, SMB/NetBIOS, sniffing, and DoS assessment.
- ▌ Essential Tools · uhdyindy bundleCore pentesting tools and methodology - Burp Suite usage, Playwright automation, testing methodology, and professional reporting standards.
- ▌ Cloud Containers · uhdyindy bundleCloud and container security testing - AWS, Azure, GCP, Docker, and Kubernetes misconfigurations and exploitation.
- ▌ Techstack Identification · uhdyindy bundleOSINT-based technology stack identification. Discovers company tech stacks using passive reconnaissance across 17 intelligence domains. Given a company name (and optional domain hint), infers frontend, backend, infrastructure, and security technologies using publicly available signals.
- ▌ Transilience Report Style · uhdyindy bundleTransilience AI — Threat Intelligence Report Design System
- ▌ Backend Inferencer · uhdyindyInfers backend technologies including servers, languages, frameworks, databases, and CMS
- ▌ System · uhdyindy bundleSystem exploitation testing - Active Directory attacks, privilege escalation (Linux/Windows), and exploit development.