sector-recon-methodology

Installation
SKILL.md

Sector Recon Methodology Skill

Methodology for selecting non-regulated industry sectors with the highest WordPress vulnerability rates, compiling company domain lists, and running batch reconnaissance within authorized engagements. Distilled from surveying 600+ US company domains across 28 sectors under bug bounty and authorized testing programs.

When to Use

  • Planning a new recon campaign and need to choose sectors.
  • Expanding from tested sectors into new ones.
  • Building target lists from sector keywords via crt.sh.
  • After recon-playbook Phase 0 — this skill provides the sector intelligence.
  • Comparing your findings against baseline vulnerability rates per sector.

Prerequisites

  • curl, jq, httpx, and subfinder.
  • Understanding of the US regulatory landscape (HIPAA, GLBA, PCI-DSS) — regulated sectors have near-zero vulnerability rates.
  • An execution environment with explicit concurrency and rate limits.

How to Run

Installs
8
GitHub Stars
1.2K
First Seen
Jul 9, 2026
sector-recon-methodology — uphiago/recon-skills