wgpsec/aboutsecurity
oss-bucket-exploit
对象存储(S3/OSS/COS/OBS)Bucket 误配利用。当发现 AWS S3、阿里云 OSS、腾讯云 COS、华为云 OBS 等对象存储服务,或在 HTTP 响应中看到 x-amz-*、x-oss-*、x-cos-* 等 Header 时使用。覆盖 Bucket 枚举、ACL…
Installation
npx skills add https://github.com/wgpsec/aboutsecurity
Similar popular skills
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
>- Heap exploitation playbook. Use when targeting ptmalloc2/glibc heap vulnerabilities includin…
3K installs>- Linux kernel exploitation playbook. Use when exploiting kernel vulnerabilities (UAF, OOB, ra…
2.9K installs>- Browser and V8 exploitation playbook. Use when exploiting JavaScript engine vulnerabilities …
2.9K installs>- Format string exploitation playbook. Use when printf-family functions receive user-controlle…
3K installsN-day 补丁差分到利用。从厂商发布的补丁里反推漏洞点、写 PoC、做成可用的攻击模块。 适用场景:已知…
14 installsIdentifies and exploits SQL injection vulnerabilities in web applications during authorized pen…
430 installsAlso in this package
Other skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
More details
Agent compatibility
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
Repository health
master
History
- First seen on skills.sh
- First recorded snapshot · 32 installs