← Back to the catalog

eresus-deser-audit

Deserialization vulnerability audit skill with gadget chain knowledge for all major languages. Trigger when the user asks to: "audit deserialization", "check for insecure deserialization", "find pickle vulnerabilities", "Marshal.load audit", "gadget chain analysis", "check for unsafe YAML loading", or when reviewing code that processes serialized data (JSON with type info, YAML, XML, binary format

5stars
Updated 2 months ago

View on GitHub ↗License: Apache-2.0

How to add

/plugin marketplace add EresusSecurity/appsec-skills

The exact command may vary by repository. Check the README on GitHub.

For the skill author

Drop this on your repo README

Shows your skill is listed on Skillteca, generates a backlink and trackable traffic.

Listada na Skillteca
[![Listada na Skillteca](https://www.skillteca.com.br/api/badge/eresus-deser-audit/svg)](https://www.skillteca.com.br/skills/eresus-deser-audit?utm_source=badge&utm_medium=readme&utm_campaign=badge)

Category alert

Get new Segurança skills every Monday

One short email with only the new Segurança skills. 4 minutes of reading, no spam, unsubscribe with one click.

You confirm your email on the first send. No spam. Unsubscribe with one click.

ShareXLinkedIn

Comments · No comments

Sign in to comment. Sign in

  • No comments yet. Be the first.