elementalsouls
GitHub profile for elementalsouls16 skills
Are you elementalsouls? Claim your skills.
elementalsouls / mid-engagement-ir-detection
Detects client SOC patches and attacker activity during red-team engagements, converting observations into actionable findings.
elementalsouls / bugcrowd-reporting
Enhances Bugcrowd submissions with specific reporting tactics, improving accuracy in vulnerability reporting and triage validation.
elementalsouls / hunt-api-misconfig
Identifies and exploits API security misconfigurations, including mass assignment and JWT vulnerabilities, enhancing security assessments.
elementalsouls / hunt-ato
Provides a comprehensive taxonomy for identifying and exploiting account takeover vulnerabilities across various paths and scenarios.
elementalsouls / hunt-mfa-bypass
Identifies and exploits vulnerabilities in MFA/2FA implementations to prevent account takeover through various bypass techniques.
elementalsouls / hunt-saml
Identifies and exploits SAML/SSO vulnerabilities, enhancing security assessments against XML Signature Wrapping and other attack vectors.
elementalsouls / hunt-ssti
Detects server-side template injection vulnerabilities across various templating engines, enabling escalation to remote code execution.
elementalsouls / hunt-subdomain
Identifies subdomain vulnerabilities by leveraging public bug bounty reports and specific attack methodologies.
elementalsouls / m365-entra-attack
Explores Microsoft 365 Entra ID red-team attack vectors, providing insights on credential attacks and bypass techniques.
elementalsouls / offensive-osint
Provides a comprehensive toolkit for authorized external red-team and bug-bounty reconnaissance, including probes, wordlists, and discovery techniques.
elementalsouls / redteam-mindset
Enhances red team operations by instilling a mindset focused on aggressive testing and thorough engagement strategies.
elementalsouls / redteam-report-template
Facilitates the creation of structured red-team reports for client engagements, ensuring clarity for both technical and non-technical stakeholders.
elementalsouls / bb-methodology
Guides bug bounty hunters through a structured methodology to enhance critical thinking and improve finding impactful vulnerabilities.
elementalsouls / apk-redteam-pipeline
Automates the red-team pipeline for Android APKs, enabling APK acquisition, decompilation, and security analysis.
elementalsouls / cloud-iam-deep
Analyzes cloud IAM vulnerabilities across AWS, Azure, and GCP, focusing on external exploitation and privilege escalation techniques.
elementalsouls / enterprise-vpn-attack
Analyzes and exploits vulnerabilities in SSL VPN appliances, providing a comprehensive attack matrix for various vendors.
elementalsouls / evidence-hygiene
Enhances bug-bounty submissions by ensuring proper evidence hygiene, focusing on redaction of sensitive data and effective documentation practices.
elementalsouls / hunt-aspnet
Identifies and exploits ASP.NET vulnerabilities, focusing on deserialization issues and security misconfigurations.
elementalsouls / hunt-auth-bypass
This skill aids in identifying authentication bypass vulnerabilities through detailed methodologies and target signals.
elementalsouls / hunt-business-logic
Identifies business logic vulnerabilities in financial transactions, enhancing security for e-commerce and SaaS platforms.