BigHugger
sk Skill · elementalsouls

hunt-sqli

Hunting skill for sqli vulnerabilities. Built from 12 public bug bounty reports including modern NoSQL injection (Rocket.Chat CVE-2021-22911 MongoDB $regex, Mongoose ORM CVE-2024-53900 $where bypass), modern ORM raw-fragment SQLi (Django CVE-2024-42005, Sequelize GHSA-wrh9-cjv3-2hpw), second-order SOQL injection (HackerOne Salesforce), time-based blind SQLi in GraphQL resolvers, and SQLi on OIDC-proxy backends. Use…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
jsonjavascriptsqlbashPython
Host repository
elementalsouls/Claude-BugHunter
Host stars
4,524
Host language
Python