0xwilliamortiz
Review Skills published by 0xwilliamortiz, their source repositories, maintenance signals, and identity status.
- Skills
- 2
- Repository stars
- 712
- Identity status
- Source-linked
Provenance
Source and identity
- Profile type
- Creator
- Canonical name
- 0xwilliamortiz
- Public sources
- 1
- License context
- MIT
Source entries
Agent Skills from 0xwilliamortiz
Repository stars and maintenance signals provide context, but do not automatically become an individual Skill's quality score.
0xwilliamortiz/claude-red
offensive-business-logic
Business logic vulnerability testing for web/mobile/API engagements. Covers workflow bypass, state machine violations, multi-step process abuse, price/quantity/discount manipulation, currency confusion, coupon stacking, refund/chargeback abuse, race conditions on logic boundaries, parameter tampering for hidden flows, role/tenant boundary violations, time-of-check vs use, anti-automation defeat, fraud-detection evasion, and subscription/quota abuse. Use when scoping an application after surface-
0xwilliamortiz/claude-red
offensive-toctou
Time-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and container layers. Covers symbolic-link races (open/access/stat split), file-descriptor races, fopen/realpath traversal races, /proc and procfs races, FUSE-backed slow-fs races to widen the window, ptrace and signal races, kernel double-fetch / userspace pointer races, container/runc/symlink escape primitives, kubernetes admission/authz TOCTOU, web auth-vs-authz TOCTOU, JWT-cla
Pinned paths
Every entry links to a specific source path and commit when available.
Repository context
Activity, license, and repository-level popularity are shown as context.
Open the source
Inspect the public repository