NwN avatar

NwN

Community

@lnwnl

9Followers
|
8Public Repos
|
83Published Skills

NwN publishes 145 offensive security playbooks covering web, API, binary, cloud, Active Directory, mobile, and cryptographic vulnerability testing.

Skills Distribution
DomainCybersecurit...Web & API Vulnerab.. (35%)Binary Exploitatio.. (20%)Active Directory &.. (15%)Cryptography & For.. (15%)

Agent Skills by NwN

Showing 83 vetted skills indexed across 2 GitHub repositories.

lNwNllNwNl

nosql-injection

Tests NoSQL backends for operator injection, authentication bypass, and blind data extraction.

Community
Intermediate
lNwNllNwNl

401-403-bypass-techniques

Tests 401 and 403 access controls using path, method, header, and protocol bypass techniques.

Community
Intermediate
lNwNllNwNl

type-juggling

Exploit PHP loose comparison and magic hash collisions to bypass authentication checks.

Community
Intermediate
lNwNllNwNl

jndi-injection

Guides JNDI injection testing against Java applications via RMI, LDAP, and Log4Shell vectors.

Community
Advanced
lNwNllNwNl

request-smuggling

Tests HTTP request smuggling and desynchronization between proxies, CDNs, and origin servers.

Community
Advanced
lNwNllNwNl

expression-language-injection

Detects and exploits Expression Language injection in SpEL, OGNL, and Java EL frameworks.

Community
Advanced
lNwNllNwNl

race-condition

Tests web applications for race conditions and TOCTOU flaws using parallel HTTP request techniques.

Community
Advanced
lNwNllNwNl

cors-cross-origin-misconfiguration

Tests CORS configurations for origin reflection, credential exposure, and allowlist bypass vulnerabilities.

Community
Advanced
lNwNllNwNl

csp-bypass-advanced

Analyzes Content Security Policy configurations to identify bypass vectors and exfiltration channels.

Community
Advanced
lNwNllNwNl

business-logic-vulnerabilities

Tests web applications for business logic flaws including race conditions, price manipulation, and workflow bypass.

Community
Advanced
lNwNllNwNl

http-host-header-attacks

Tests HTTP Host header injection for password reset poisoning, cache poisoning, SSRF, and virtual host bypass.

Community
Intermediate
lNwNllNwNl

defi-attack-patterns

Analyzes DeFi protocols for flash loan, oracle manipulation, MEV, and governance attack vectors.

Community
Advanced
lNwNllNwNl

mobile-ssl-pinning-bypass

Bypass SSL certificate pinning on Android and iOS apps using Frida, Objection, and repackaging techniques.

Community
Advanced
lNwNllNwNl

android-pentesting-tricks

Tests Android applications for SSL pinning, exported components, WebView flaws, and root detection weaknesses.

Community
Advanced
lNwNllNwNl

subdomain-takeover

Detects and exploits dangling DNS records enabling subdomain takeover across cloud providers.

Community
Intermediate
lNwNllNwNl

http-parameter-pollution

Tests duplicate HTTP parameters to exploit parser disagreements across WAFs, proxies, and frameworks.

Community
Intermediate
lNwNllNwNl

xslt-injection

Tests XSLT injection endpoints through processor fingerprinting, XXE, document() SSRF, and extension-based RCE.

Community
Advanced
lNwNllNwNl

email-header-injection

Tests email-sending features for SMTP CRLF header injection and SPF/DKIM/DMARC spoofing weaknesses.

Community
Intermediate
lNwNllNwNl

file-access-vuln

Routes file access and upload vulnerability testing to specialized workflow skills.

Community
Basic
lNwNllNwNl
2

dependency-confusion

Detect dependency confusion risks where internal package names resolve to public registries.

Community
Advanced
lNwNllNwNl

injection-checking

Routes injection testing workflows to specialized skills based on input sink type.

Community
Intermediate
lNwNllNwNl

prototype-pollution

Tests JavaScript applications for prototype pollution via __proto__ and constructor.prototype injection paths.

Community
Advanced
lNwNllNwNl
2

unauthorized-access-common-services

Exploit exposed unauthenticated management services using port-scoped attack playbooks.

Community
Advanced
lNwNllNwNl

saml-sso-assertion-attacks

Tests SAML SSO assertions for signature validation, wrapping, and trust boundary flaws.

Community
Basic

Frequently Asked Questions About NwN

FAQPage Schema
What tasks can I perform using NwN's skills?▼

You can execute structured offensive security playbooks: detect and exploit SQLi, XSS, SSRF, XXE, SSTI, and command injection; escalate privileges on Linux and Windows; attack Active Directory via Kerberos and AD CS; reverse binaries with symbolic execution; analyze PCAP and memory dumps; and test mobile, Kubernetes, and smart contract targets.

Who are NwN's skills designed for?▼

The skills target penetration testers, bug bounty hunters, red team operators, and CTF players. Entry-level P0/P1 router skills like hack, api-sec, and auth-sec guide testers to the correct deep playbook, while advanced skills cover heap exploitation, V8 browser exploitation, and lattice cryptanalysis for specialists.

How do NwN's skills work in practice?▼

Each skill is a decision-driven playbook: router skills classify the observed target signals (endpoint behavior, input sinks, error responses) and route to a topic playbook containing concrete payloads, fingerprinting probes, and exploitation steps, such as polyglot SSTI probes or DBMS-specific UNION and time-based SQLi techniques.

What prerequisites do NwN's skills assume?▼

Prerequisites vary by playbook: binary skills assume glibc/ELF knowledge and debuggers; forensics skills require Volatility 2/3 or Wireshark/tshark; symbolic execution skills use angr, Z3, and Unicorn; Active Directory skills assume domain access and BloodHound output. All skills are scoped to authorized testing engagements.

Do NwN's skills cover cloud and container environments?▼

Yes. Dedicated playbooks cover Kubernetes penetration testing (RBAC enumeration, etcd access, pod escape), Docker and LXC container escapes via privileged mode and cgroup abuse, subdomain takeover of deprovisioned cloud resources, and SSRF against cloud metadata endpoints.