File Path Traversal Testing
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", or "access files outside web root". It provides comprehensive file path traversal attack and testing methodologies.
File Path Traversal Testing
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", or "access files outside web root". It provides comprehensive file path traversal attack and testing methodologies.
file-inclusion
文件包含漏洞检测与利用。当目标存在文件读取、页面包含、模板加载、语言切换功能时使用。包括 LFI、RFI、路径遍历。
File Path Traversal Testing
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", or "access files outside web root". It provides comprehensive file path traversal attack and testing methodologies.
File Path Traversal Testing
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", or "access files outside web root". It provides comprehensive file path traversal attack and testing methodologies.
file-path-traversal
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vu...
performing-directory-traversal-testing
Testing web applications for path traversal vulnerabilities that allow reading or writing arbitrary files on the server by manipulating file path parameters.
ctf-pentesting
Structured penetration testing and CTF challenge methodology for security learning. Use this skill when working on TryHackMe, HackTheBox, or similar CTF platforms, or when analyzing web application security, investigating breaches, performing privilege escalation, or learning offensive security techniques. Triggers on keywords: CTF, pentest, exploit, vulnerability, privilege escalation, reverse shell, nmap, gobuster, flag, THM, HTB, brute force, injection, XSS, SSTI, LFI, RFI, CVE, backdoor, webshell, forensics, breach investigation.
file-path-traversal
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vu...
file-path-traversal
This skill should be used when the user asks to test for directory traversal, exploit path traversal vulnerabilities, read arbitrary files through web applications, find LFI vulnerabilities, or similar file path traversal investigations...
File Path Traversal Testing
This skill should be used when the user asks to "test for directory traversal", "exploit path traversal vulnerabilities", "read arbitrary files through web applications", "find LFI vulnerabilities", or "access files outside web root". It provides comprehensive file path traversal attack and testing methodologies.
File Path Traversal Testing
This skill should be used when the user asks to 'test for directory traversal', 'exploit path traversal vulnerabilities', 'read arbitrary files through web applications', 'find LFI vulnerabilities', or 'access files outside web root'. It provides comprehensive file path traversal attack and testing methodologies.
gcp-security-misconfiguration
Use this skill when users need to audit, detect, or remediate Security Misconfiguration vulnerabilities (OWASP A05:2021) on Google Cloud Platform. This includes checking for unpatched flaws, default configurations, open admin endpoints, HTTP verb tampering, request smuggling, LFI/RFI vulnerabilities, disabled security hardening, and overly permissive firewall rules. Covers Cloud Armor WAF rule deployment, Security Command Center Health Analytics, Cloud Asset Inventory monitoring, SSL/TLS cipher hardening, and Apigee shared flow consolidation. Activate for GCP security hardening audits, default config reviews, admin endpoint protection, or OWASP A05 compliance.