Search

Backend & APIs · By cyberful

23 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Design and interpret advanced content discovery with ffuf and complementary web fuzzers.

cyberful/cyberful135—~1.5kAutomated safety check: PassAGPL-3.01 mo ago
2

Assess WebSocket, Server-Sent Events, webhook, event-stream, callback, and asynchronous integration security during authorized penetration tests or code audits.

cyberful/cyberful135—~1.2kAutomated safety check: PassAGPL-3.01 mo ago
3

Test executable smart-contract properties with deterministic, offline Foundry harnesses over a confined source snapshot.

cyberful/cyberful135—~745Automated safety check: PassAGPL-3.01 mo ago
4

Test authorized web-cache key construction, variation, partitioning, authenticated response handling, revalidation, poisoning, deception, purge, and TTL behavior.

cyberful/cyberful135—~631Automated safety check: PassAGPL-3.01 mo ago
5

Deterministically compare OpenAPI JSON operations with implementation and observation inventories to expose undocumented, unimplemented, unexercised, and security-declaration coverage gaps.

cyberful/cyberful135—~585Automated safety check: PassAGPL-3.01 mo ago
6

Test deterministic authorization around AI tool discovery, selection, canonical arguments, credentials, tenants, destinations, approvals, delegation, retries, and effects.

cyberful/cyberful135—~549Automated safety check: PassAGPL-3.01 mo ago
7

Assess the security of a smart-contract system across protocol economics, trust roles, upgrade and governance paths, oracle and bridge dependencies, deployment state, and off-chain operators.

cyberful/cyberful135—~651Automated safety check: PassAGPL-3.01 mo ago
8

Audit smart-contract source and build evidence for authorization, accounting, state-machine, external-call, upgrade, signature, oracle, token-integration, and denial-of-service defects.

cyberful/cyberful135—~650Automated safety check: PassAGPL-3.01 mo ago
9

Test application email generation, recipient authority, template and header construction, link and token binding, inbound parsing, threading, reply handling, bounce processing, and tenant isolation.

cyberful/cyberful135—~599Automated safety check: PassAGPL-3.01 mo ago
10

Test service accounts, OAuth clients, workload federation, token exchange, audience binding, delegated actors, credential rotation, and machine-identity authorization.

cyberful/cyberful135—~895Automated safety check: PassAGPL-3.01 mo ago
11

Audit whether API handlers, gateways, serializers, validators, and generated clients implement the effective contract and its security invariants.

cyberful/cyberful135—~666Automated safety check: PassAGPL-3.01 mo ago
12

Operate Cyberful's pinned Foundry toolchain and engagement-owned Anvil lab for authorized EVM smart-contract bug bounty work.

cyberful/cyberful135—~851Automated safety check: PassAGPL-3.01 mo ago
13

Operate kubectl, kube-bench, Trivy, Prowler, and manifest/runtime evidence for advanced Kubernetes security assessment.

cyberful/cyberful135—~898Automated safety check: PassAGPL-3.01 mo ago
14

Use sqlmap to confirm and characterize suspected SQL injection with faithful requests and bounded evidence.

cyberful/cyberful135—~1.1kAutomated safety check: PassAGPL-3.01 mo ago
15

Coordinate testing of authentication and authenticator state across registration, login, MFA, recovery, linking, federation, device trust, reauthentication, suspension, and revocation.

cyberful/cyberful135—~709Automated safety check: PassAGPL-3.01 mo ago
16

Assess externally or internally reachable services, administrative planes, debug interfaces, data stores, search clusters, object storage, orphaned DNS, and deployment exposure during authorized…

cyberful/cyberful135—~866Automated safety check: PassAGPL-3.01 mo ago
17

Assess server-side URL retrieval and network egress during authorized penetration tests or code audits.

cyberful/cyberful135—~867Automated safety check: PassAGPL-3.01 mo ago
18

Audit container runtime isolation across namespaces, capabilities, seccomp, mandatory access control, mounts, devices, daemon sockets, cgroups, identity, and host integration.

cyberful/cyberful135—~545Automated safety check: PassAGPL-3.01 mo ago
19

Audit serverless applications for event-source authority, function identity, tenant context, data exposure, retry behavior, deployment controls, and unsafe service integrations.

cyberful/cyberful135—~577Automated safety check: PassAGPL-3.01 mo ago
20

Test authorized serverless event handlers for source authority, signature and replay controls, tenant binding, schema validation, retry behavior, idempotency, and side-effect isolation using bounded…

cyberful/cyberful135—~548Automated safety check: PassAGPL-3.01 mo ago
21

Assess identity trust topology, assurance boundaries, issuer and relying-party responsibilities, and failure containment before testing a specific authentication or authorization mechanism.

cyberful/cyberful135—~710Automated safety check: PassAGPL-3.01 mo ago
22

Route a cloud-native security audit across effective IAM, infrastructure as code, build and release paths, containers, Kubernetes, serverless workloads, secrets, event sources, and control-plane…

cyberful/cyberful135—~852Automated safety check: PassAGPL-3.01 mo ago
23

Route an identity assessment across federation architecture, policy enforcement, identity and tenant propagation, workload identity, recovery assurance, linking, and provisioning.

cyberful/cyberful135—~803Automated safety check: PassAGPL-3.01 mo ago