All authors
andycungkrinx91 avatar

Claude Skills by andycungkrinx91

github.com/andycungkrinx91
695 skillsA× 563B× 84C× 24D× 18F× 60 installs5 views
Detecting Ransomware Encryption BehaviorA

'Detects ransomware encryption activity in real time using entropy analysis,

devopspythonshell
0
9
Detecting Spearphishing With Email GatewayA

Spearphishing targets specific individuals using personalized, researched

securityrustsecurity
0
9
Detecting T1003 Credential Dumping With EdrA

Detect OS credential dumping techniques targeting LSASS memory, SAM database,

securitygogit
0
9
Emulating Cloud Attacks With Stratus Red TeamB

Detonate granular AWS, Azure, GCP, and Kubernetes attack techniques to validate

devopspythongo
0
9
Escaping Containers To HostD

Exploit privileged pods, host mounts, runC CVEs, and exposed Docker sockets to break out of a container and reach the underlying host during authorized container-security assessments.

securityshellbash
0
9
Exploiting Adcs With CertipyA

Enumerate and exploit Active Directory Certificate Services ESC1 through ESC16 misconfigurations with Certipy, including SAN abuse, NTLM relay to web enrollment (ESC8), and golden certificate forgery.

securitypythongo
0
9
Exploiting Aws With PacuC

Use Pacu modules for AWS privilege escalation, persistence, and backdooring.

securitypythonrust
0
9
Exploiting Http Request SmugglingA

Detecting and exploiting HTTP request smuggling vulnerabilities caused

securitypythongo
0
9
Exploiting Jwt Algorithm Confusion AttackB

'Exploits JWT algorithm confusion vulnerabilities where the server''s

securitypythonrust
0
9
Exploiting Kerberoasting With ImpacketA

Perform Kerberoasting attacks using Impacket's GetUserSPNs to extract

securityshellbash
0
9
Exploiting Ms17 010 Eternalblue VulnerabilityA

MS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1

securitypythongo
0
9
Exploiting Nosql Injection VulnerabilitiesB

Detect and exploit NoSQL injection vulnerabilities in MongoDB, CouchDB,

securityjavascriptpython
0
9
Exploiting Prototype Pollution In JavascriptA

Detect and exploit JavaScript prototype pollution vulnerabilities on

developmentjavascriptjava
0
9
Exploiting Race Condition VulnerabilitiesA

Detect and exploit race condition vulnerabilities in web applications

businesspythongo
0
9
Exploiting Zerologon Vulnerability Cve 2020 1472A

Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon Remote

securitypythongo
0
9
Extracting Credentials From Memory DumpA

Extract cached credentials, password hashes, Kerberos tickets, and authentication

securitypythongo
0
9
Generating Forensic Timelines With HayabusaA

Produce Sigma-based EVTX timelines and summaries with Hayabusa.

devopsrustgo
0
9
Hunting For Cobalt Strike BeaconsA

Detect Cobalt Strike beacon network activity using default TLS certificate

devopspythongit
0
9
Hunting For Data Exfiltration IndicatorsA

Hunt for data exfiltration through network traffic analysis, detecting

devopsgodatabase
0
9
Implementing Anti Phishing Training ProgramA

Security awareness training is the human layer of phishing defense. An

businesssecurityperformance
0
9
Implementing Anti Ransomware Group PolicyA

'Configures Windows Group Policy Objects (GPO) to prevent ransomware

developmentjavascriptpython
0
9
Implementing Azure Ad Privileged Identity ManagementA

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time

securitypythonrust
0
9
Implementing Delinea Secret Server For PamB

'Implements Delinea Secret Server for privileged access management (PAM)

devopsgoshell
0
9
Implementing Google Workspace Admin SecurityA

'Implements comprehensive Google Workspace security hardening including

securityrustgo
0
9
Implementing Google Workspace Phishing ProtectionA

Configure Google Workspace advanced phishing and malware protection settings

securityrustgo
0
9
Implementing Google Workspace Sso ConfigurationA

Configure SAML 2.0 single sign-on for Google Workspace with a third-party

securityrustgo
0
9
Implementing Hashicorp Vault Dynamic SecretsB

'Implements HashiCorp Vault dynamic secrets engines for database credentials,

devopspythonrust
0
9
Implementing Identity Governance With SailpointA

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and

securitypythongo
0
9
Implementing Identity Verification For Zero TrustA

Implement continuous identity verification for zero trust using phishing-resistant

securitypythonrust
0
9
Implementing Mimecast Targeted Attack ProtectionA

Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment

securitygogit
0
9
Implementing Pam For Database AccessA

Deploy privileged access management for database systems including Oracle,

devopspythonsql
0
9
Implementing Passwordless Auth With Microsoft EntraB

'Implements passwordless authentication using Microsoft Entra ID with

devopsrustgo
0
9
Implementing Privileged Access Management With CyberarkA

Deploy CyberArk Privileged Access Management to discover, vault, rotate,

securitypythonsql
0
9
Implementing Ransomware Backup StrategyA

'Designs and implements a ransomware-resilient backup strategy following

devopsrustgo
0
9
Implementing Ransomware Kill Switch DetectionA

'Detects and exploits ransomware kill switch mechanisms including mutex-based

devopspythongo
0
9
Implementing Saml Sso With OktaA

Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider

securitypythongo
0
9
Implementing Scim Provisioning With OktaA

Implement automated user provisioning and deprovisioning using SCIM 2.0

securitypythonreact
0
9
Implementing Soar Playbook For PhishingA

Automate phishing incident response using Splunk SOAR REST API to create

toolspythonapi
0
9
Implementing Zero Trust With Hashicorp BoundaryA

Implement HashiCorp Boundary for identity-aware zero trust infrastructure

devopsrustgo
0
9
Managing Third Party Vendor RiskA

Build and run a third-party / vendor risk management (TPRM) program aligned to NIST SP 800-161 C-SCRM and NIST CSF 2.0 GV.SC: inventory and tier vendors by risk, send the right due-diligence questionnaire (SIG, CAIQ), review evidence (SOC 2, ISO 27001, pen-test reports), set contractual security and right-to-audit clauses, monitor vendors continuously, manage Nth-party / subcontractor risk, and offboard securely. Use when an organization needs to assess a new vendor before onboarding, when st...

businessrustgo
0
9
Mapping Attack Paths With Bloodhound CeB

Collect Active Directory data with SharpHound and Entra ID data with AzureHound, ingest into BloodHound Community Edition, and analyze on-prem, cloud, and hybrid attack paths with built-in queries and custom Cypher.

devopspythonrust
0
9
Migrating To Post Quantum CryptographyA

Inventory cryptography, deploy hybrid X25519 and ML-KEM, and prioritize harvest-now-decrypt-later data.

securitypythonrust
0
9
Modeling Threats With OpenctiA

Model threat actors, intrusion sets, campaigns, and TTPs as a STIX 2.1 knowledge graph in OpenCTI (Filigran) using the pycti Python client, connectors, and import workers for structured cyber threat intelligence.

securitypythonbash
0
9
Moving Laterally With NetexecA

Use NetExec for SMB, WinRM, LDAP, and MSSQL enumeration, password spraying,

securityshellbash
0
9
Operating Havoc C2A

Deploy a Havoc team server with Yaotl profiles, generate evasive Demon agents with indirect syscalls and sleep obfuscation, and run post-exploitation and pivoting for adversary emulation.

securitypythonrust
0
9
Operating Sliver C2A

Stand up a Sliver C2 server and listeners, generate cross-platform implants and beacons, and run post-exploitation, pivoting, and BOF/.NET tooling via the armory for adversary emulation.

securitygoshell
0
9
Operationalizing Misp Threat FeedsA

Run MISP, curate feeds, and auto-generate detections for Wazuh, Sigma, and Suricata.

devopspythongo
0
9
Performing Access Recertification With SaviyntA

Configure and execute access recertification campaigns in Saviynt Enterprise

testingpythongo
0
9
Performing Adversary In The Middle Phishing DetectionA

Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks

securitygonode
0
9
Performing Entitlement Review With Sailpoint IiqA

'Performs entitlement review and access certification campaigns using

devopsgojava
0
9