Source

mukul975/anthropic-cybersecurity-skills

834 skills · 111.1K combined installs

Skills from this source

#
Skill
Source
8W Activity
Installs
1
extracting-credentials-from-memory-dump Extracts cached credentials, password hashes, Kerberos tickets, and authentication tokens from Windows memory dumps u…
mukul975/anthropic-cybersecurity-skills
112
2
performing-container-security-scanning-with-trivy Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clu…
mukul975/anthropic-cybersecurity-skills
112
3
securing-aws-iam-permissions Hardens AWS IAM configurations to enforce least-privilege access, covering IAM policy scoping, permission boundaries,…
mukul975/anthropic-cybersecurity-skills
112
4
securing-serverless-functions Hardens serverless compute platforms (AWS Lambda, Azure Functions, Google Cloud Functions): least-privilege IAM roles…
mukul975/anthropic-cybersecurity-skills
112
5
building-c2-redirector-infrastructure Build dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filte…
mukul975/anthropic-cybersecurity-skills
111
6
conducting-cyber-risk-assessment-with-nist-800-30 Conduct a defensible cybersecurity risk assessment using the NIST SP 800-30 Rev 1 methodology: prepare scope and a ri…
mukul975/anthropic-cybersecurity-skills
111
7
configuring-windows-event-logging-for-detection Configures Windows Event Logging with advanced audit policies to generate high-fidelity security events for threat de…
mukul975/anthropic-cybersecurity-skills
111
8
detecting-typosquatting-packages-in-npm-pypi Detects typosquatting attacks in npm and PyPI package registries by analyzing package name similarity using Levenshte…
mukul975/anthropic-cybersecurity-skills
111
9
extracting-browser-history-artifacts Extracts and analyzes browser history, cookies, cache, downloads, and bookmarks from Chrome, Firefox, and Edge using …
mukul975/anthropic-cybersecurity-skills
111
10
performing-graphql-depth-limit-attack Execute and test GraphQL depth limit attacks using deeply nested recursive queries to identify denial-of-service vuln…
mukul975/anthropic-cybersecurity-skills
111
11
Adversary-in-the-Middle Hardens LDAP directory services against credential harvesting, LDAP injection, anonymous binding, and channel-binding…
mukul975/anthropic-cybersecurity-skills
110
12
exploiting-active-directory-certificate-services-esc1 Exploit misconfigured Active Directory Certificate Services (AD CS) ESC1 vulnerability to request certificates as hig…
mukul975/anthropic-cybersecurity-skills
110
13
performing-open-source-intelligence-gathering Open Source Intelligence (OSINT) gathering is the first active phase of a red team engagement, where operators collec…
mukul975/anthropic-cybersecurity-skills
110
14
scanning-container-images-with-grype Scans container images, filesystems, and SBOMs for known CVEs with Anchore Grype, matching Syft-generated SBOM packag…
mukul975/anthropic-cybersecurity-skills
110
15
exploiting-bgp-hijacking-vulnerabilities Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation, RPKI…
mukul975/anthropic-cybersecurity-skills
109
16
performing-soap-web-service-security-testing Performs security testing of SOAP web services by analyzing WSDL definitions and testing for XML injection, XXE, WS-S…
mukul975/anthropic-cybersecurity-skills
109
17
exploiting-kerberoasting-with-impacket Performs Kerberoasting (MITRE ATT&CK T1558.003) using Impacket's GetUserSPNs.py to request Kerberos TGS tickets for S…
mukul975/anthropic-cybersecurity-skills
108
18
performing-network-packet-capture-analysis Perform forensic analysis of network packet captures (PCAP/PCAPNG) using Wireshark, tshark, and tcpdump to reconstruc…
mukul975/anthropic-cybersecurity-skills
108
19
performing-wireless-network-penetration-test Execute a wireless network penetration test to assess WiFi security by capturing handshakes, cracking WPA2/WPA3 keys,…
mukul975/anthropic-cybersecurity-skills
108
20
exploiting-nopac-cve-2021-42278-42287 Exploits the noPac Active Directory privilege-escalation chain (CVE-2021-42278 sAMAccountName spoofing plus CVE-2021-…
mukul975/anthropic-cybersecurity-skills
107
21
implementing-gdpr-data-protection-controls Implements GDPR (EU 2016/679) technical and organizational measures — privacy by design/default, DPIAs, data subject …
mukul975/anthropic-cybersecurity-skills
107
22
implementing-llm-guardrails-for-security Implements input/output validation guardrails for LLM applications using NVIDIA NeMo Guardrails (Colang), custom Pyth…
mukul975/anthropic-cybersecurity-skills
107
23
performing-mobile-app-certificate-pinning-bypass Bypasses SSL/TLS certificate pinning implementations in Android and iOS applications to enable traffic interception d…
mukul975/anthropic-cybersecurity-skills
107
24
securing-container-registry-images Secures container registry images (ECR, ACR, GCR, Docker Hub) by scanning with Trivy and Grype, signing with Cosign a…
mukul975/anthropic-cybersecurity-skills
107
25
auditing-uefi-firmware-with-chipsec Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Sec…
mukul975/anthropic-cybersecurity-skills
106
26
deploying-cloudflare-access-for-zero-trust Deploys Cloudflare Access with Cloudflare Tunnel for zero trust access to self-hosted apps, configuring identity-awar…
mukul975/anthropic-cybersecurity-skills
106
27
performing-container-image-hardening Harden container images by minimizing attack surface, stripping unnecessary packages, implementing multi-stage builds…
mukul975/anthropic-cybersecurity-skills
106
28
performing-dark-web-monitoring-for-threats Dark web monitoring involves systematically scanning Tor hidden services, underground forums, paste sites, and dark w…
mukul975/anthropic-cybersecurity-skills
106
29
performing-sqlite-database-forensics Performs forensic analysis of SQLite databases by examining B-tree page structures, recovering deleted records from f…
mukul975/anthropic-cybersecurity-skills
105
30
detecting-email-account-compromise Detect compromised O365 and Google Workspace email accounts by analyzing Unified Audit Logs and Azure AD sign-in logs…
mukul975/anthropic-cybersecurity-skills
104
31
performing-ai-driven-osint-correlation Use AI/LLM-based reasoning with Sherlock, theHarvester, and SpiderFoot to correlate OSINT findings—usernames, emails,…
mukul975/anthropic-cybersecurity-skills
104
32
Account Manipulation Detect compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity, impossible-trave…
mukul975/anthropic-cybersecurity-skills
103
33
implementing-github-advanced-security-for-code-scanning Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot al…
mukul975/anthropic-cybersecurity-skills
103
34
intercepting-mobile-traffic-with-burpsuite Intercepts and analyzes HTTP/HTTPS traffic from mobile applications using Burp Suite proxy to identify insecure API c…
mukul975/anthropic-cybersecurity-skills
103
35
performing-privilege-escalation-on-linux Guides manual enumeration and automated tooling to escalate from a low-privilege Linux user to root by exploiting mis…
mukul975/anthropic-cybersecurity-skills
103
36
triaging-security-alerts-in-splunk Triages security alerts in Splunk Enterprise Security by classifying severity, investigating notable events, correlat…
mukul975/anthropic-cybersecurity-skills
103
37
Account Takeover Detects credential stuffing attacks by analyzing authentication logs for login velocity anomalies, ASN diversity, pas…
mukul975/anthropic-cybersecurity-skills
102
38
configuring-microsegmentation-for-zero-trust Configures microsegmentation policies to enforce least-privilege workload-to-workload access using tools such as VMwa…
mukul975/anthropic-cybersecurity-skills
102
39
containing-active-breach Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed s…
mukul975/anthropic-cybersecurity-skills
102
40
detecting-indirect-prompt-injection Detect and defend against indirect prompt injection hidden in web pages, documents, and images consumed by an agent, …
mukul975/anthropic-cybersecurity-skills
102
41
reverse-engineering-rust-malware Reverse engineers Rust-compiled malware using IDA Pro and Ghidra, covering techniques for non-null-terminated fat-poi…
mukul975/anthropic-cybersecurity-skills
102
42
Brute Force: Password Cracking Detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft (e.g.
mukul975/anthropic-cybersecurity-skills
101
43
detecting-network-scanning-with-ids-signatures Detect network reconnaissance and port scanning using Suricata and Snort IDS signatures, threshold-based detection ru…
mukul975/anthropic-cybersecurity-skills
101
44
exploiting-ms17-010-eternalblue-vulnerability >- Detects and exploits MS17-010 (EternalBlue), a critical remote code execution flaw in Microsoft's SMBv1 implementa…
mukul975/anthropic-cybersecurity-skills
101
45
performing-wireless-security-assessment-with-kismet Conduct wireless network security assessments using Kismet to detect rogue access points, hidden SSIDs, weak encrypti…
mukul975/anthropic-cybersecurity-skills
101
46
detecting-aws-iam-privilege-escalation Detect AWS IAM privilege escalation paths using boto3 and Cloudsplaining policy analysis to identify overly permissiv…
mukul975/anthropic-cybersecurity-skills
100
47
hardening-windows-endpoint-with-cis-benchmark Hardens Windows endpoints using CIS (Center for Internet Security) Benchmark recommendations to reduce attack surface…
mukul975/anthropic-cybersecurity-skills
100
48
performing-docker-bench-security-assessment >- Runs Docker Bench for Security, the open-source CIS Docker Benchmark audit script, across host configuration, daem…
mukul975/anthropic-cybersecurity-skills
100
49
configuring-active-directory-tiered-model Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory, co…
mukul975/anthropic-cybersecurity-skills
99
50
Delete Relevant Emails Detect Business Email Compromise (BEC) fraud, where attackers impersonate executives or vendors to trick employees in…
mukul975/anthropic-cybersecurity-skills
99
Page 7 · 834 total Previous Next