Find the perfect skill
Security Bounty Hunter
Security
Hunt for exploitable, bounty-worthy security issues in repositories, focusing on remotely reachable vulnerabilities for real reports.
API Gateway Access Log Analysis
Security
Parses API gateway access logs to detect BOLA/IDOR attacks, rate limit bypass, credential scanning, and injection attempts using pandas.
Economic Responsibility Audit
Security
Enterprise economic responsibility audit toolkit covering the full audit lifecycle: scope definition, financial review, major decisions, asset management, compliance, and reporting.
Azure Landing Zone Architect
Security
Design or review Azure landing zones with operator-grade focus on structure, dependencies, and blast radius. Use for platform decisions across management groups, subscriptions, identity, network, governance, security, and operations.
Security Bounty Hunter
Security
Hunt for exploitable, reportable vulnerabilities in a repository for bug bounty programs. Focuses on remotely reachable attack paths.
Threat Modeling Expert
Security
Expert in threat modeling, security architecture review, and risk assessment. Proficient in STRIDE, PASTA, attack trees, and security requirement extraction.
Firebase APK Security Scanner
Security
Scans Android APKs for Firebase misconfigurations: open databases, storage buckets, auth issues, exposed cloud functions. For authorized security research only.
Containerized Security Auditing and Ethical Hacking
Security
Containerized security auditing and ethical hacking tools. All operations run in isolated Docker containers for safety.
Containerized Security Auditing and Ethical Hacking
Security
Run security scans, audits, and exploits in isolated Docker containers. Ensure safety with host isolation.
Firestore Security Rules for The Italian Club
Security
Guidelines for writing or modifying Firestore security rules: auth required, bakery stamp, field validation, delete restrictions, default-deny. Deploy after changes.
Export OSCAL Compliance Data
Security
Export NIST OSCAL JSON compliance evidence from ArangoDB graph for NIST 800-171 and CMMC L2. Supports dry-run and validation.
Eric Zimmerman Tools for Windows Artifact Analysis
Security
Learn to analyze Windows artifacts using Eric Zimmerman's open-source tools (KAPE, MFTECmd, PECmd) to examine registry hives, prefetch files, and event logs.