Search

Bug bounty

75 skills found, page 2.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
49

Complete bug bounty workflow — recon, pre-hunt learning, vulnerability hunting (IDOR, SSRF, XSS, auth bypass, CSRF, race conditions, SQLi, XXE, file upload, business logic, GraphQL, HTTP smuggling…

awarexone/Agentic-Bug-Hunter5.3k—~20kAutomated safety check: WarnMITyesterday
50

Flags API endpoints whose data or actions look like they should need a login but currently don't, as part of authorized security testing.

uphiago/recon-skills1.3k—~2kAutomated safety check: PassMIT1 mo ago
51

A skill your agent uses when starting or restructuring an authorized external web and API assessment.

uphiago/recon-skills1.3k—~1.9kAutomated safety check: PassMIT1 mo ago
52

Mobile (Android + iOS) application penetration testing methodology.

SnailSploit/Claude-Red7.4k—~3.5kAutomated safety check: PassMIT21 days ago
53

Bugcrowd-specific reporting tactics complementing report-writing

sickn33/agentic-awesome-skills47k1 repo~5.9kAutomated safety check: PassMIT2 days ago
54

Perform structured reconnaissance and attack surface enumeration for authorized penetration tests, CTF challenges, and bug bounty programs.

briiirussell/cybersecurity-skills413—~1.1kAutomated safety check: NotesMIT4 mo ago
55

Attack cameras via RTSP, ONVIF, Axis config when 554 open. An agent skill from uphiago/recon-skills.

uphiago/recon-skills1.3k—~2.3kAutomated safety check: PassMIT1 mo ago
56

Map subdomains via crt.sh and subfinder at recon kickoff. An agent skill from uphiago/recon-skills.

uphiago/recon-skills1.3k—~3.3kAutomated safety check: PassMIT1 mo ago
57

Screenshot all live hosts for rapid visual triage and technology fingerprinting.

uphiago/recon-skills1.3k—~1.5kAutomated safety check: PassMIT1 mo ago
58

Complete bug bounty workflow

sickn33/agentic-awesome-skills47k1 repo~5kAutomated safety check: NotesMIT2 days ago
59

Domain assessment and web application mapping - subdomain discovery, port scanning, endpoint enumeration, API discovery, and attack surface analysis.

transilienceai/communitytools563—~1.4kAutomated safety check: PassMIT2 mo ago
60

Hunting skill for auth bypass vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~8.2kAutomated safety check: PassMITyesterday
61

Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.7kAutomated safety check: PassMITyesterday
62

Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.5kAutomated safety check: PassMITyesterday
63

Probe a target for accidentally-public admin / debug / introspection endpoints — Spring Boot Actuator, Apache server-status, Prometheus metrics, GraphQL playground, Swagger UI, phpMyAdmin…

jeremylongshore/tons-of-skills-marketplace2.8k—~2kAutomated safety check: PassMITyesterday
64

Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise.

elementalsouls/Claude-BugHunter4.8k—~1.9kAutomated safety check: NotesMITyesterday
65

Draft and file a HackerOne report in the browser, with a proof-of-concept package and demo-video notes.

forefy/.context152—~2.1kAutomated safety check: PassMIT6 days ago
66

Map a bug-bounty scope and rank targets by payout, crowding, and freshness.

forefy/.context152—~2.1kAutomated safety check: PassMIT6 days ago
67

Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity…

elementalsouls/Claude-BugHunter4.8k—~5.2kAutomated safety check: PassMITyesterday
68

Write security findings and assessment reports — severity scoring with CVSS and business impact, reproducible proof of concept, remediation guidance, executive summaries, and coordinated disclosure.

trilwu/secskills157—~3.4kAutomated safety check: PassMIT1 mo ago
69
69.Hack

Entry P0 primary router and operating doctrine for HackSkills.

yaklang/hack-skills2.4k—~4.7kAutomated safety check: NotesMIT28 days ago
70

Enumerate web technologies, headers, endpoints, and metadata from a target

NeoTheCapt/RedteamAgent143—~770Automated safety check: PassNo licence2 mo ago
71

Operate Cyberful as an authorized application-security control room.

cyberful/cyberful135—~1.1kAutomated safety check: PassAGPL-3.0-only1 mo ago
72

Reconnaissance and methodology playbook. An agent skill from langbyyi/CyberStrikeAI-SRC.

langbyyi/CyberStrikeAI-SRC1291 repo~3.1kAutomated safety check: WarnApache-2.04 days ago
73

A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US cybersecurity firms — pen-testing/red team, security audits, vCISO, SOC 2 readiness, incident response, managed…

jeremylongshore/tons-of-skills-marketplace2.8k—~3.7kAutomated safety check: NotesMITyesterday
74

Plans and runs authorized reconnaissance to enumerate a target's external attack surface (DNS, subdomains, ports, web tech) and produces a prioritized report.

criptogus/agent-evolve-network288—~1.2kAutomated safety check: PassCC-BY-SA-4.02 days ago
75

Audit all open HackerOne-sourced VULN Jira tickets and their linked engineering child items to identify what needs action.

bitwarden/ai-plugins155—~3.4kAutomated safety check: PassUnknownyesterday