Source

mukul975/anthropic-cybersecurity-skills

834 skills · 111.1K combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
performing-cloud-storage-forensic-acquisition Perform forensic acquisition of cloud storage services including Google Drive, OneDrive, Dropbox, and Box by pulling …
mukul975/anthropic-cybersecurity-skills
65
2
performing-malware-persistence-investigation Systematically investigate all persistence mechanisms on Windows and Linux systems to identify how malware survives r…
mukul975/anthropic-cybersecurity-skills
65
3
performing-memory-forensics-with-volatility3-plugins Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware artif…
mukul975/anthropic-cybersecurity-skills
65
4
performing-soc-tabletop-exercise Performs tabletop exercises for SOC teams simulating security incidents through discussion-based scenarios to test in…
mukul975/anthropic-cybersecurity-skills
65
5
Create Fake Materials: Fake Website Configures Google Workspace advanced phishing and malware protection settings in the Admin Console — pre-delivery mes…
mukul975/anthropic-cybersecurity-skills
64
6
eradicating-malware-from-infected-systems Systematically map and remove malware, backdoors, and attacker persistence mechanisms (registry Run keys, scheduled t…
mukul975/anthropic-cybersecurity-skills
64
7
hunting-for-lolbins-execution-in-endpoint-logs Hunts for LOLBins (Living Off the Land Binaries) abuse, mapped to MITRE T1218, by analyzing endpoint process-creation…
mukul975/anthropic-cybersecurity-skills
64
8
hunting-for-registry-run-key-persistence Detect MITRE ATT&CK T1547.001 registry Run key persistence by analyzing Sysmon Event ID 13 logs and registry queries …
mukul975/anthropic-cybersecurity-skills
64
9
implementing-network-traffic-baselining Builds network traffic baselines from NetFlow/IPFIX CSV or JSON exports using Python pandas, computing hourly/daily v…
mukul975/anthropic-cybersecurity-skills
64
10
implementing-passwordless-auth-with-microsoft-entra Implements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business,…
mukul975/anthropic-cybersecurity-skills
64
11
implementing-passwordless-authentication-with-fido2 Deploy FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators, covering WebAuthn …
mukul975/anthropic-cybersecurity-skills
64
12
implementing-privileged-session-monitoring Implements privileged session monitoring and recording using PAM solutions, focusing on CyberArk Privileged Session M…
mukul975/anthropic-cybersecurity-skills
64
13
performing-credential-access-with-lazagne Extract stored credentials from compromised endpoints using the LaZagne post-exploitation tool to recover passwords f…
mukul975/anthropic-cybersecurity-skills
64
14
performing-fuzzing-with-aflplusplus Performs coverage-guided fuzzing of compiled binaries with AFL++, instrumenting targets via afl-cc/afl-clang-fast, mi…
mukul975/anthropic-cybersecurity-skills
64
15
performing-physical-intrusion-assessment Conduct authorized physical penetration testing against facilities, server rooms, and restricted areas using tailgati…
mukul975/anthropic-cybersecurity-skills
64
16
red-teaming-llms-with-garak Runs NVIDIA garak probe suites (jailbreak, prompt injection, data leakage, toxicity, and more) against an LLM endpoin…
mukul975/anthropic-cybersecurity-skills
64
17
Create Fake Materials: Fake Website Detect and block spearphishing emails that use personalized, researched content to evade generic spam filters, by con…
mukul975/anthropic-cybersecurity-skills
63
18
detecting-malicious-scheduled-tasks-with-sysmon Detect malicious scheduled task creation and modification using Sysmon Event IDs 1 (Process Create for schtasks.exe),…
mukul975/anthropic-cybersecurity-skills
63
19
hunting-for-lateral-movement-via-wmi Detects WMI-based lateral movement (e.g. wmic process call create, Win32_Process.Create()) by analyzing Windows Event…
mukul975/anthropic-cybersecurity-skills
63
20
hunting-for-ntlm-relay-attacks Detects NTLM relay attacks (MITRE T1557.001) by analyzing Windows Event ID 4624 logon type 3 with NTLMSSP authenticat…
mukul975/anthropic-cybersecurity-skills
63
21
implementing-anti-phishing-training-program Guides designing, deploying, and measuring an anti-phishing security awareness program - baseline phishing simulation…
mukul975/anthropic-cybersecurity-skills
63
22
implementing-digital-signatures-with-ed25519 Implements digital signatures using the Ed25519 algorithm (Curve25519), covering key-pair generation, signing, signat…
mukul975/anthropic-cybersecurity-skills
63
23
implementing-gcp-vpc-firewall-rules Implements and audits GCP VPC firewall rules using gcloud, covering auditing overly permissive rules, creating restri…
mukul975/anthropic-cybersecurity-skills
63
24
implementing-zero-knowledge-proof-for-authentication Implements the Schnorr identification protocol and a simplified Zero-Knowledge Password Proof (ZKPP) over the discret…
mukul975/anthropic-cybersecurity-skills
63
25
detecting-beaconing-patterns-with-zeek Performs statistical analysis of Zeek conn.log connection intervals to detect C2 beaconing patterns. Uses the ZAT lib…
mukul975/anthropic-cybersecurity-skills
62
26
evaluating-threat-intelligence-platforms Evaluates and selects Threat Intelligence Platform (TIP) products based on organizational requirements including feed…
mukul975/anthropic-cybersecurity-skills
62
27
extracting-config-from-agent-tesla-rat Extracts embedded configuration from Agent Tesla RAT samples, including SMTP/FTP/Telegram exfiltration credentials, k…
mukul975/anthropic-cybersecurity-skills
62
28
Gather Customer Information Monitor paste sites like Pastebin and GitHub Gists for leaked credentials, API keys, and sensitive data dumps using a…
mukul975/anthropic-cybersecurity-skills
62
29
hunting-for-registry-persistence-mechanisms Hunts for registry-based persistence mechanisms (MITRE T1547) in Windows environments, including Run/RunOnce keys, Wi…
mukul975/anthropic-cybersecurity-skills
62
30
hunting-for-scheduled-task-persistence Runs a hypothesis-driven threat hunt for Windows Scheduled Task persistence (T1053), guiding SIEM/EDR queries against…
mukul975/anthropic-cybersecurity-skills
62
31
implementing-google-workspace-admin-security Hardens a Google Workspace tenant via Admin Console configuration: phishing-resistant MFA enforcement, DLP policies, …
mukul975/anthropic-cybersecurity-skills
62
32
implementing-google-workspace-sso-configuration Configures SAML 2.0 single sign-on for Google Workspace against a third-party identity provider (Okta, Azure AD/Entra…
mukul975/anthropic-cybersecurity-skills
62
33
detecting-misconfigured-azure-storage Audit Azure Storage accounts for public blob containers, missing encryption, overly permissive SAS tokens, disabled l…
mukul975/anthropic-cybersecurity-skills
61
34
detecting-stuxnet-style-attacks Detects sophisticated cyber-physical attacks that follow the Stuxnet pattern of modifying PLC logic while spoofing se…
mukul975/anthropic-cybersecurity-skills
61
35
hunting-for-dcsync-attacks Detect DCSync attacks (MITRE ATT&CK T1003.006) by analyzing Windows Event ID 4662 (AccessMask 0x100) for DS-Replicati…
mukul975/anthropic-cybersecurity-skills
61
36
implementing-epss-score-for-vulnerability-prioritization Queries FIRST's Exploit Prediction Scoring System (EPSS) API to fetch exploitation-probability and percentile scores …
mukul975/anthropic-cybersecurity-skills
61
37
implementing-mobile-application-management Implements Mobile Application Management (MAM) policies to protect enterprise data on managed and unmanaged mobile de…
mukul975/anthropic-cybersecurity-skills
61
38
performing-active-directory-forest-trust-attack Enumerate and audit Active Directory forest trust relationships using Impacket for SID filtering analysis, trust key …
mukul975/anthropic-cybersecurity-skills
61
39
performing-false-positive-reduction-in-siem Reduces SIEM false positives through systematic rule tuning, threshold adjustment, correlation logic refinement, allo…
mukul975/anthropic-cybersecurity-skills
61
40
detecting-dnp3-protocol-anomalies Detect anomalies in DNP3 communications used in SCADA/ICS systems by monitoring unauthorized control commands, firmwa…
mukul975/anthropic-cybersecurity-skills
60
41
detecting-mimikatz-execution-patterns Detect Mimikatz credential-dumping activity via command-line pattern matching, LSASS access signatures, binary/hash i…
mukul975/anthropic-cybersecurity-skills
60
42
hunting-for-dcom-lateral-movement Hunt for DCOM-based lateral movement (MITRE ATT&CK T1021.003) by detecting abuse of MMC20.Application, ShellBrowserWi…
mukul975/anthropic-cybersecurity-skills
60
43
implementing-anti-ransomware-group-policy Configures Windows Group Policy Objects to block ransomware execution and lateral spread, covering AppLocker rules, S…
mukul975/anthropic-cybersecurity-skills
60
44
implementing-cloud-dlp-for-data-protection Implement cloud DLP using Amazon Macie, Google Cloud DLP API, Microsoft Purview, Azure Information Protection, and Ni…
mukul975/anthropic-cybersecurity-skills
60
45
implementing-hardware-security-key-authentication Builds a FIDO2/WebAuthn relying party server with the python-fido2 library, covering registration and authentication …
mukul975/anthropic-cybersecurity-skills
60
46
implementing-image-provenance-verification-with-cosign Signs and verifies container image provenance with Sigstore Cosign, covering key-based and keyless OIDC signing (Fulc…
mukul975/anthropic-cybersecurity-skills
60
47
implementing-network-access-control-with-cisco-ise Deploys Cisco Identity Services Engine (ISE) as a RADIUS policy server for 802.1X wired and wireless authentication, …
mukul975/anthropic-cybersecurity-skills
60
48
implementing-pod-security-admission-controller >- Configures and operates the Kubernetes Pod Security Admission (PSA) controller that enforces Pod Security Standard…
mukul975/anthropic-cybersecurity-skills
60
49
implementing-policy-as-code-with-open-policy-agent Implements policy-as-code enforcement with Open Policy Agent (OPA) and Gatekeeper for Kubernetes and CI/CD pipelines,…
mukul975/anthropic-cybersecurity-skills
60
50
managing-cloud-identity-with-okta Implement Okta as a centralized cloud identity provider: configure SSO with AWS, Azure, and GCP, deploy phishing-resi…
mukul975/anthropic-cybersecurity-skills
60
Page 13 · 834 total Previous Next