wufufu770
- 232 skills
- 0 followers
- 1 day ago last updated
- ▌
- ▌ Hunt Business Logic · wufufu770Hunting skill for business logic vulnerabilities. Built from 12 public bug bounty reports. Covers coupon-race-stacking (Instacart, Stripe, Reverb), negative-quantity-in-cart price tampering (Upserve, Eternal/Zomato), decimal/fraction price-field overflow (Shipt), client-side checkout amount trust on PayPal redirect (WordPress.org), price-per-unit mass-assignment (Krisp), and archived-price swap /
- ▌ Hunt Race Condition · wufufu770Hunting skill for race condition vulnerabilities. Built from 12 public bug bounty reports including modern HTTP/2 single-packet attack cases (James Ke
- ▌ Operating Havoc C2 · wufufu770Deploy a Havoc C2 team server with Yaotl malleable profiles, generate evasive Demon agents using indirect syscalls and sleep obfuscation, an…
- ▌ Hunt Deserialization · wufufu770Hunt Insecure Deserialization — Java gadget chains (ysoserial), PHP object injection (phpggc), Python pickle RCE, .NET BinaryFormatter, Ruby Marshal.load, JNDI/Log4Shell. RCE via deserialization is almost always Critical. Use when target runs Java, PHP serialization, Python pickle, .NET, or Ruby on Rails.
- ▌ Operating Sliver C2 · wufufu770Stand up a Sliver C2 server and mTLS listeners, generate cross-platform implants and beacons, and run post-exploitation, pivoting, and BOF/…
- ▌ Cloud Saas Exposure · wufufu770<2-5 sentences — issue + attacker impact, not a terse restatement of the title> evidence: url: <where found> timestamp: <UTC ISO8601> sha256: <hash of any downloaded artifact — never an object body, see §5> raw: <truncated to 2 KiB> references: [<advisory URL, vendor doc>] remediation: <action the asset owner can take> ``` UTC timestamps everywhere.
- ▌ Attack Path Stitcher · wufufu770Stitches confirmed single-asset findings into multi-hop attack paths across the organization. Builds a graph where nodes are assets and edge…
- ▌ Dimensional Analysis · wufufu770Perform dimensional analysis assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Enterprise Vpn Attack · wufufu770Look for: Set-Cookie: webvpn=; X-Frame-Options: SAMEORIGIN; CSP: ... block-all-mixed-content
- ▌ Audit Context Building · wufufu770Understand a codebase before looking for bugs in it - what each function assumes, what it guarantees, and what it depends on elsewhere. Use…
- ▌ Agentic Actions Auditor · wufufu770Perform agentic actions auditor assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Burpsuite Project Parser · wufufu770Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patte…
- ▌ Relaying Ntlm For Adcs Esc8 · wufufu770Uses Impacket's ntlmrelayx.py with a coercion tool (PetitPotam, Coercer, printerbug) to relay NTLM authentication from a coerced domain cont…
- ▌ Testing Cors Misconfiguration · wufufu770Identifying and exploiting Cross-Origin Resource Sharing misconfigurations that allow unauthorized cross-domain data access and credential t…
- ▌ Exploiting Adcs With Certipy · wufufu770Use Certipy to enumerate AD CS certificate authorities and templates over LDAP/RPC, then exploit ESC1-ESC16 misconfigurations - SAN abuse, N…
- ▌ Moving Laterally With Netexec · wufufu770Use NetExec (nxc) to validate credentials, enumerate SMB shares/users/policy, password-spray safely across lockout thresholds, execute comma…
- ▌ Claude In Chrome Troubleshooting · wufufu770Perform claude in chrome troubleshooting assessment during authorized security testing. Use this skill when indicators of the vulnerability class are
- ▌ Performing Ssl Stripping Attack · wufufu770Perform performing ssl stripping attack assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Enumerating Cloud With Cloudfox · wufufu770Run CloudFox's read-only Describe/List/Get enumeration (all-checks, role-trusts, secrets, endpoints, and permissions commands) to map AWS an…
- ▌ Performing Vlan Hopping Attack · wufufu770Perform performing vlan hopping attack assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Broken Link Hijacking · wufufu770Perform exploiting broken link hijacking assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Malware Ioc Extraction · wufufu770Perform performing malware ioc extraction assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Ipv6 Vulnerabilities · wufufu770Identifies and exploits IPv6-specific vulnerabilities including SLAAC
- ▌ Performing Csrf Attack Simulation · wufufu770Testing web applications for Cross-Site Request Forgery vulnerabilities by crafting forged requests that exploit authenticated user sessions…
- ▌ Testing For Host Header Injection · wufufu770Perform testing for host header injection assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Osint With Spiderfoot · wufufu770Perform performing osint with spiderfoot assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Malware Triage With Yara · wufufu770Perform performing malware triage with yara assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Scanning Iac And Images With Trivy · wufufu770Scans container images, Infrastructure-as-Code (Terraform, CloudFormation, Kubernetes manifests, Dockerfile, Helm), filesystems, git repos…
- ▌ Testing For Email Header Injection · wufufu770Perform testing for email header injection assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Deeplink Vulnerabilities · wufufu770Tests and exploits deep link (URL scheme and App Link) vulnerabilities
- ▌ Performing Clickjacking Attack Test · wufufu770Perform performing clickjacking attack test assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Packet Injection Attack · wufufu770Crafts and injects custom network packets using Scapy, hping3, and Nemesis
- ▌ Conducting Mobile App Penetration Test · wufufu770Perform conducting mobile app penetration test assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Heap Spray Exploitation · wufufu770Detect and analyze heap spray attacks in memory dumps using Volatility3 plugins to identify NOP sled patterns, shellcode landing zones, and…
- ▌ Scanning Infrastructure With Nessus · wufufu770Perform scanning infrastructure with nessus assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Security Logs With Splunk · wufufu770Perform analyzing security logs with splunk assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Configuring Oauth2 Authorization Flow · wufufu770Configures secure OAuth 2.0 authorization flows, including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant…
- ▌ Conducting Cloud Penetration Testing · wufufu770Perform conducting cloud penetration testing assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Abusing Dpapi For Credential Access · wufufu770Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or…
- ▌ Analyzing Network Packets With Scapy · wufufu770Perform analyzing network packets with scapy assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Testing API Authentication Weaknesses · wufufu770Perform testing api authentication weaknesses assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Active Directory Acl Abuse · wufufu770Perform analyzing active directory acl abuse assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Iot Security Assessment · wufufu770Perform performing iot security assessment assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Ssl Tls Security Assessment · wufufu770>- Assess SSL/TLS server configurations using the sslyze Python scanning library to evaluate supported protocol versions, cipher suite stren…
- ▌ Scanning Containers With Trivy In Cicd · wufufu770Perform scanning containers with trivy in cicd assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Powershell Empire Artifacts · wufufu770Perform analyzing powershell empire artifacts assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Building C2 Redirector Infrastructure · wufufu770Build dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filter rules from a Malleabl…
- ▌ Analyzing Linux Kernel Rootkits · wufufu770Perform analyzing linux kernel rootkits assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Abusing Shadow Credentials For Privesc · wufufu770Take over Active Directory accounts by writing attacker-controlled public keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker…
- ▌ Exploiting Kerberoasting With Impacket · wufufu770Request TGS tickets for all Kerberoastable accounts
- ▌ Exploiting Insecure Data Storage In Mobile · wufufu770Perform exploiting insecure data storage in mobile assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Intercepting Mobile Traffic With Burpsuite · wufufu770Perform intercepting mobile traffic with burpsuite assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Dynamic Analysis Of Android App · wufufu770Perform performing dynamic analysis of android app assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Nopac Cve 2021 42278 42287 · wufufu770Exploits the noPac Active Directory privilege-escalation chain (CVE-2021-42278 sAMAccountName spoofing plus CVE-2021-42287 KDC PAC confusion…
- ▌ Analyzing PDF Malware With Pdfid · wufufu770Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to
- ▌ Reverse Engineering Rust Malware · wufufu770Perform reverse engineering rust malware assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Type Juggling Vulnerabilities · wufufu770Perform exploiting type juggling vulnerabilities assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Constrained Delegation Abuse · wufufu770Perform exploiting constrained delegation abuse assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Supply Chain Malware Artifacts · wufufu770Perform analyzing supply chain malware artifacts assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Bgp Hijacking Vulnerabilities · wufufu770Analyzes and simulates BGP hijacking scenarios in authorized lab environments
- ▌ Performing Initial Access With Evilginx3 · wufufu770Perform performing initial access with evilginx3 assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Binary Exploitation Analysis · wufufu770Analyze ELF binaries for memory-corruption vulnerabilities and build proof-of-concept
- ▌ Analyzing Uefi Bootkit Persistence · wufufu770Perform analyzing uefi bootkit persistence assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Steganography Detection · wufufu770>- Detects and extracts hidden data embedded in images, audio, and other media files using steganalysis tools such as StegDetect, zsteg, ste…
- ▌ Performing HTTP Parameter Pollution Attack · wufufu770Perform performing http parameter pollution attack assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Web Application Firewall Bypass · wufufu770Perform performing web application firewall bypass assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Testing For Business Logic Vulnerabilities · wufufu770Perform testing for business logic vulnerabilities assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Scanning Kubernetes Manifests With Kubesec · wufufu770Perform security risk analysis on Kubernetes resource manifests using Kubesec to identify misconfigurations, privilege escalation risks, and…
- ▌ Conducting Domain Persistence With Dcsync · wufufu770Perform DCSync attacks by abusing MS-DRSR replication rights (DS-Replication-Get-Changes/-All) to impersonate a Domain Controller and extrac…
- ▌ Conducting Full Scope Red Team Engagement · wufufu770Perform conducting full scope red team engagement assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Arp Spoofing Attack Simulation · wufufu770Perform performing arp spoofing attack simulation assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Reverse Engineering Android Malware With Jadx · wufufu770Perform reverse engineering android malware with jadx assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Malicious PDF With Peepdf · wufufu770Perform analyzing malicious pdf with peepdf assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Authenticated Scan With Openvas · wufufu770Perform performing authenticated scan with openvas assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Docker Bench Security Assessment · wufufu770Perform performing docker bench security assessment assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Web Application Penetration Test · wufufu770Perform performing web application penetration test assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Malware Sandbox Evasion Techniques · wufufu770Perform analyzing malware sandbox evasion techniques assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Privilege Escalation Assessment · wufufu770Perform performing privilege escalation assessment assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Malicious Url With Urlscan · wufufu770Perform analyzing malicious url with urlscan assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Network Traffic Of Malware · wufufu770Perform analyzing network traffic of malware assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Firmware Malware Analysis · wufufu770Perform performing firmware malware analysis assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Authenticated Vulnerability Scan · wufufu770Perform performing authenticated vulnerability scan assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Bluetooth Security Assessment · wufufu770Perform performing bluetooth security assessment assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Physical Intrusion Assessment · wufufu770Perform performing physical intrusion assessment assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Exploiting Active Directory With Bloodhound · wufufu770Perform exploiting active directory with bloodhound assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Integrating Dast With Owasp Zap In Pipeline · wufufu770Integrates OWASP ZAP (Zed Attack Proxy) into GitHub Actions and GitLab CI pipelines, covering baseline, full, and API scan configuration aga…
- ▌ Analyzing Command And Control Communication · wufufu770Analyzes malware C2 communication over HTTP, HTTPS, DNS, and custom
- ▌ Analyzing Bootkit And Rootkit Samples · wufufu770Perform analyzing bootkit and rootkit samples assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Bypassing Authentication With Forced Browsing · wufufu770Perform bypassing authentication with forced browsing assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Configuring Tls 1 3 For Secure Communications · wufufu770Configures TLS 1.3 (RFC 8446) on servers, covering cipher suite and key-exchange group selection, and validates the resulting configuration…
- ▌ Exploiting Template Injection Vulnerabilities · wufufu770Perform exploiting template injection vulnerabilities assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing Cryptographic Audit Of Application · wufufu770Perform performing cryptographic audit of application assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Reverse Engineering Dotnet Malware With Dnspy · wufufu770Perform reverse engineering dotnet malware with dnspy assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Auditing Kubernetes Rbac Privilege Escalation · wufufu770Perform auditing kubernetes rbac privilege escalation assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Conducting Internal Network Penetration Test · wufufu770Perform conducting internal network penetration test assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Executing Active Directory Attack Simulation · wufufu770Perform executing active directory attack simulation assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Performing External Network Penetration Test · wufufu770Perform performing external network penetration test assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Cobalt Strike Beacon Configuration · wufufu770Perform analyzing cobalt strike beacon configuration assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.
- ▌ Analyzing Cobaltstrike Malleable C2 Profiles · wufufu770Perform analyzing cobaltstrike malleable c2 profiles assessment during authorized security testing. Use this skill when indicators of the vulnerability class are present in the target environment.