Skillz Wiki¶
Agent-ready offensive security skills, recon workflows, and replayable exploit-path notes.
Recent entries¶
- Polaris storage-location and WSO2 token-authority boundaries
- TinyAGI, NanoClaw, and openclaw-cn authority follow-up
- Keycloak SAML
OneTimeUsereplay follow-up - Assemblyline remote artifact identifier-to-file boundary
- Quay mirror-fetch and VuFind handler-termination authority boundaries
- CRLF header-injection expansion for HTTP desync campaigns
- Langflow validation, cache, memory, and filesystem authority follow-up
- Gitea migration and OAuth final-peer SSRF follow-up
- Traefik route, transport, and namespace authority boundaries
- Nuxt server-island component and DevTools RPC authority follow-up
What lives here¶
- Skills: installable, tool-specific guides that agents can execute step by step
- Recon: workflows for turning scope into a prioritized asset map
- Exploit Paths: concrete attack chains that are specific enough to replay during authorized testing
- Templates: reusable report skeletons and delivery formats
- Notes: editorial guidance, taxonomy, and source tracking
- Blog: short updates when major skills or exploit paths land
Older alert and mitigation-oriented reference pages may remain in the repo, but the primary site surface is intentionally centered on pentesting, red-team, and bug-bounty operator workflows.
How the skills are written¶
Each skill page is structured so it can be reused outside the wiki:
- When to use the tool
- Required inputs and prerequisites
- Command patterns worth reusing
- Expected outputs and what to capture
- Safety constraints and scope boundaries
Authorized use only
These pages are for lawful research, lab work, and authorized assessments. Do not apply them to systems you do not own or lack explicit permission to test.