Source

mukul975/anthropic-cybersecurity-skills

834 skills · 111.1K combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
performing-kerberoasting-attack Perform Kerberoasting, a post-exploitation technique that enumerates Active Directory service accounts with Service P…
mukul975/anthropic-cybersecurity-skills
60
2
detecting-modbus-protocol-anomalies Detect anomalies in Modbus/TCP and Modbus RTU industrial traffic via function code monitoring, register range validat…
mukul975/anthropic-cybersecurity-skills
59
3
detecting-t1003-credential-dumping-with-edr Detect OS credential dumping (MITRE T1003) targeting LSASS memory, the SAM database, NTDS.dit, and cached credentials…
mukul975/anthropic-cybersecurity-skills
59
4
Email Spoofing Monitor for brand impersonation attacks across domains, social media, mobile apps, and dark web channels to detect ph…
mukul975/anthropic-cybersecurity-skills
59
5
hunting-for-beaconing-with-frequency-analysis Identify command-and-control beaconing patterns in network traffic by applying statistical frequency analysis, jitter…
mukul975/anthropic-cybersecurity-skills
59
6
hunting-for-living-off-the-land-binaries Proactively hunts for adversary abuse of legitimate, signed system binaries (LOLBins) used to execute malicious paylo…
mukul975/anthropic-cybersecurity-skills
59
7
hunting-for-persistence-via-wmi-subscriptions Hunts for adversary persistence via WMI event subscriptions (MITRE T1546.003) by monitoring the creation of WMI event…
mukul975/anthropic-cybersecurity-skills
59
8
hunting-for-startup-folder-persistence Detects T1547.001 startup folder persistence by monitoring Windows startup directories for suspicious file creation, …
mukul975/anthropic-cybersecurity-skills
59
9
implementing-azure-ad-privileged-identity-management Configure Microsoft Entra Privileged Identity Management (PIM) to convert standing privileged assignments into eligib…
mukul975/anthropic-cybersecurity-skills
59
10
implementing-container-network-policies-with-calico Uses Calico's own policy CRDs beyond the upstream Kubernetes API - GlobalNetworkPolicy, HostEndpoint, NetworkSet, pol…
mukul975/anthropic-cybersecurity-skills
59
11
implementing-envelope-encryption-with-aws-kms Implements envelope encryption with AWS KMS, encrypting data locally with a data encryption key (DEK) and protecting …
mukul975/anthropic-cybersecurity-skills
59
12
implementing-siem-use-cases-for-detection Implements SIEM detection use cases by designing correlation rules, threshold alerts, and behavioral analytics mapped…
mukul975/anthropic-cybersecurity-skills
59
13
performing-bluetooth-security-assessment Assess Bluetooth Low Energy (BLE) device security using Python's bleak asyncio library to discover nearby devices, en…
mukul975/anthropic-cybersecurity-skills
59
14
performing-oil-gas-cybersecurity-assessment Conduct cybersecurity assessments of upstream, midstream, and downstream oil and gas operations, covering pipeline SC…
mukul975/anthropic-cybersecurity-skills
59
15
performing-scada-hmi-security-assessment Perform security assessments of SCADA Human-Machine Interface (HMI) systems to identify vulnerabilities in web-based …
mukul975/anthropic-cybersecurity-skills
59
16
hunting-for-defense-evasion-via-timestomping Detect NTFS timestamp manipulation (MITRE T1070.006) by comparing $STANDARD_INFORMATION vs $FILE_NAME timestamps in t…
mukul975/anthropic-cybersecurity-skills
58
17
implementing-cloud-trail-log-analysis Implementing AWS CloudTrail log analysis for security monitoring, threat detection, and forensic investigation using …
mukul975/anthropic-cybersecurity-skills
58
18
implementing-fuzz-testing-in-cicd-with-aflplusplus Integrates AFL++ coverage-guided fuzzing into CI/CD pipelines, covering harness construction, AFL++/AddressSanitizer/…
mukul975/anthropic-cybersecurity-skills
58
19
implementing-network-segmentation-for-ot Implements OT network segmentation using VLANs, OT-aware firewalls, data diodes, and IEC 62443 zone/conduit architect…
mukul975/anthropic-cybersecurity-skills
58
20
implementing-vulnerability-sla-breach-alerting Build an automated SLA breach alerting system for vulnerability remediation, including a database schema for SLA trac…
mukul975/anthropic-cybersecurity-skills
58
21
performing-automated-malware-analysis-with-cape Deploy and operate the CAPEv2 malware sandbox (a Cuckoo derivative) to run samples in a monitored Windows guest VM, c…
mukul975/anthropic-cybersecurity-skills
58
22
Account Takeover: Exposed Login Credential Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across en…
mukul975/anthropic-cybersecurity-skills
57
23
detecting-lateral-movement-with-zeek Detect lateral movement in network traffic using Zeek (formerly Bro) log analysis. Parses conn.log, smb_mapping.log, …
mukul975/anthropic-cybersecurity-skills
57
24
detecting-wmi-persistence Detect WMI event subscription persistence (MITRE T1546.003) by analyzing Sysmon Event IDs 19, 20, and 21 for maliciou…
mukul975/anthropic-cybersecurity-skills
57
25
implementing-aws-macie-for-data-classification Enable and configure Amazon Macie via AWS CLI/Terraform to discover, classify, and protect sensitive data (PII, finan…
mukul975/anthropic-cybersecurity-skills
57
26
implementing-aws-nitro-enclave-security Build AWS Nitro Enclave confidential computing environments using nitro-cli to create enclave images, configure attes…
mukul975/anthropic-cybersecurity-skills
57
27
implementing-azure-defender-for-cloud Enable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Po…
mukul975/anthropic-cybersecurity-skills
57
28
implementing-privileged-access-workstation Design and implement Privileged Access Workstations (PAWs) using the tiered administration model, with device hardeni…
mukul975/anthropic-cybersecurity-skills
57
29
implementing-sigstore-for-software-signing Implements Sigstore-based software signing and verification using Cosign keyless signing, Rekor transparency log veri…
mukul975/anthropic-cybersecurity-skills
57
30
implementing-threat-intelligence-lifecycle-management Build out a full CTI program around the six-phase threat intelligence lifecycle (direction, collection, processing, a…
mukul975/anthropic-cybersecurity-skills
57
31
recovering-deleted-files-with-photorec Recovers deleted files from disk images and storage media using PhotoRec's file signature-based carving engine, which…
mukul975/anthropic-cybersecurity-skills
57
32
detecting-t1055-process-injection-with-sysmon Detect process injection techniques (T1055) - including DLL injection, process hollowing, and APC injection - by anal…
mukul975/anthropic-cybersecurity-skills
56
33
detecting-t1548-abuse-elevation-control-mechanism Detect abuse of elevation control mechanisms (T1548), including Windows UAC bypass via auto-elevating binaries like f…
mukul975/anthropic-cybersecurity-skills
56
34
implementing-alert-fatigue-reduction Implements strategies to reduce SOC alert fatigue by tuning detection rules, consolidating duplicate alerts, implemen…
mukul975/anthropic-cybersecurity-skills
56
35
implementing-cloud-workload-protection Implements cloud workload protection using boto3 and google-cloud APIs for runtime security monitoring, process anoma…
mukul975/anthropic-cybersecurity-skills
56
36
implementing-opa-gatekeeper-for-policy-enforcement Deploys OPA Gatekeeper via Helm as a Kubernetes admission controller and writes ConstraintTemplates with Rego plus in…
mukul975/anthropic-cybersecurity-skills
56
37
implementing-patch-management-workflow Patch management is the systematic process of identifying, testing, deploying, and verifying software updates to reme…
mukul975/anthropic-cybersecurity-skills
56
38
implementing-rsa-key-pair-management Generates, stores, rotates, and manages RSA key pairs following NIST SP 800-57 guidelines, covering serialization for…
mukul975/anthropic-cybersecurity-skills
56
39
investigating-insider-threat-indicators Investigates insider threat indicators including data exfiltration attempts, unauthorized access patterns, policy vio…
mukul975/anthropic-cybersecurity-skills
56
40
performing-gcp-security-assessment-with-forseti Performing comprehensive security assessments of Google Cloud Platform environments using Forseti Security, Security …
mukul975/anthropic-cybersecurity-skills
56
41
implementing-gcp-binary-authorization Implements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, de…
mukul975/anthropic-cybersecurity-skills
55
42
implementing-ot-network-traffic-analysis-with-nozomi Deploy Nozomi Networks Guardian sensors for passive OT network traffic analysis, providing asset visibility, behavior…
mukul975/anthropic-cybersecurity-skills
55
43
implementing-rapid7-insightvm-for-scanning Deploy and configure Rapid7 InsightVM Security Console and Scan Engines, including scan templates, credentialed scann…
mukul975/anthropic-cybersecurity-skills
55
44
performing-dynamic-analysis-with-any-run Perform interactive dynamic malware analysis using the ANY.RUN cloud sandbox to detonate samples, observe real-time e…
mukul975/anthropic-cybersecurity-skills
55
45
performing-iot-security-assessment Performs comprehensive security assessments of IoT devices and their ecosystems by testing hardware interfaces, firmw…
mukul975/anthropic-cybersecurity-skills
55
46
Account Takeover: Password Reset Implement SAML 2.0 Single Sign-On using Okta as the Identity Provider, covering SP-initiated and IdP-initiated flows,…
mukul975/anthropic-cybersecurity-skills
54
47
implementing-application-whitelisting-with-applocker Implements application whitelisting using Windows AppLocker to restrict unauthorized software execution on endpoints,…
mukul975/anthropic-cybersecurity-skills
54
48
implementing-file-integrity-monitoring-with-aide Configures AIDE (Advanced Intrusion Detection Environment) for file integrity monitoring on Linux, covering baseline …
mukul975/anthropic-cybersecurity-skills
54
49
implementing-mtls-for-zero-trust-services Configures mutual TLS (mTLS) authentication between microservices using Python cryptography library for certificate g…
mukul975/anthropic-cybersecurity-skills
54
50
implementing-network-deception-with-honeypots Deploy and manage network honeypots using OpenCanary, T-Pot, or Cowrie to detect unauthorized access, lateral movemen…
mukul975/anthropic-cybersecurity-skills
54
Page 14 · 834 total Previous Next