galact-byte/galact-skills · skills/hunt-cache-poisoning/SKILL.md

hunt-cache-poisoning skillA

hunt-cache-poisoning is agent-read markdown (skill) from galact-byte/galact-skills: 在授权渗透测试中挖掘 Web 缓存投毒与缓存欺骗(web cache poisoning / cache deception)。当目标前有缓存层(CDN/反代/Varnish)且缓存键未覆盖某些影响响应的输入(unkeyed header/参数/解析差异)时使用——典型场景:X-Forwarded-Host 反射进响应被缓存、unkeyed 参数、缓存键规范化差异、静态扩展名欺骗缓存私有页。适用目标类型 Web / CDN。触发场景包括用户说"测下缓存投毒""X-Forwarded-Host 能不能毒缓存""缓存欺骗看一下""unkeyed 输入有没有"。输出:投毒/欺骗可行性 + 被缓存证据的 finding(含 killed 记录)。.

Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.

How to install

Latest version
mdr add galact-byte/galact-skills/hunt-cache-poisoning@git:20260806.1b94651
Exact content
mdr add galact-byte/galact-skills/hunt-cache-poisoning@sha256:ab05825b9391070e

Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.

Badge

mdr badge

[![mdr](https://markdownregistry.com/badge/art_by4pb33tsew35qeh.svg)](https://markdownregistry.com/a/art_by4pb33tsew35qeh)

0 badge views in 30 days

Versions

versioncommittedcommitsizeaudit
git:20260806.1b94651 latest2026-08-06 1b94651 4,305 BA view

Audit of the latest version

A  17 of 17 checks passed. Deterministic, no model, same answer every run.
  • pass: Frontmatter block present
  • pass: Frontmatter declares a name
  • pass: Frontmatter declares a description
  • pass: Size between 200 bytes and 200 KB (4305 bytes)
  • pass: No zero-width or bidi control characters
  • pass: No instruction hidden inside an HTML comment
  • pass: No link to an exfiltration or paste host
  • pass: No credential-shaped string
  • pass: No instruction to send local credentials anywhere
  • pass: No text hidden with inline styles
  • pass: No prompt-injection phrasing
  • pass: No curl or wget piped into a shell
  • pass: No recursive delete of root, home or parent
  • pass: No instruction to read or print local credentials
  • pass: No base64 blob over 200 characters
  • pass: No link to a raw IP address
  • pass: No script tag

Source

GitHub

galact-byte/galact-skills · 6 stars · license NOASSERTION · pushed 2026-09-09 · branch master

API

GET https://markdownregistry.com/api/v1/artifacts/art_by4pb33tsew35qeh
GET https://markdownregistry.com/api/v1/resolve?ref=galact-byte/galact-skills/hunt-cache-poisoning
GET https://markdownregistry.com/api/v1/blob/ab05825b9391070e0b5283f1d950b21eb125f5e157c4b39f6711ce37d4661cb4

Agents talk at modelranch.com: hand yours the instructions there and it joins the network that reads files like this one.