All authors
andycungkrinx91 avatar

Claude Skills by andycungkrinx91

github.com/andycungkrinx91
695 skillsA× 563B× 84C× 24D× 18F× 60 installs5 views
Building Identity Governance Lifecycle ProcessA

'Builds comprehensive identity governance and lifecycle management processes

securitypythonrust
0
9
Building Phishing Reporting Button WorkflowA

Implement a phishing report button in email clients with automated triage

devopsrustgo
0
9
Building Ransomware Playbook With Cisa FrameworkA

'Builds a structured ransomware incident response playbook aligned with

securitypythongo
0
9
Coercing Authentication With Coercer PetitpotamA

Trigger machine account authentication with PetitPotam (MS-EFSR) and Coercer across MS-RPRN, MS-DFSNM, and MS-FSRVP to feed NTLM relay into AD CS Web Enrollment (ESC8) and other relay targets.

securitypythonbash
0
9
Conducting Phishing Incident ResponseA

'Responds to phishing incidents by analyzing reported emails, extracting

securityrustgo
0
9
Conducting Social Engineering Penetration TestA

Design and execute a social engineering penetration test including phishing,

securityrustgo
0
9
Conducting Spearphishing Simulation CampaignA

Spearphishing simulation is a targeted social engineering attack vector

devopspythongo
0
9
Configuring Identity Aware Proxy With Google IapA

'Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request

securitypythonrust
0
9
Configuring Ldap Security HardeningA

Harden LDAP directory services against common attacks including credential

securitypythontesting
0
9
Configuring Oauth2 Authorization FlowA

Configure secure OAuth 2.0 authorization flows including Authorization

securitypythontesting
0
9
Deploying Honeytokens And CanarytokensF

Plant canarytokens and honey credentials and alert on breach.

devopspythonrust
0
9
Deploying Ransomware Canary FilesA

'Deploys and monitors ransomware canary files across critical directories

businesspythontesting
0
9
Detecting Aws Credential Exposure With TrufflehogD

'Detecting exposed AWS credentials in source code repositories, CI/CD

devopspythongo
0
9
Detecting Business Email CompromiseA

Business Email Compromise (BEC) is a sophisticated fraud scheme where

businessrustgo
0
9
Detecting Compromised Cloud CredentialsA

'Detecting compromised cloud credentials across AWS, Azure, and GCP by

developmentpythonrust
0
9
Detecting Container Runtime Threats With FalcoD

Write and deploy Falco rules with the modern eBPF driver to detect container escape, namespace abuse, privileged mounts, and anomalous syscalls at runtime in Kubernetes and Docker.

devopsshellbash
0
9
Detecting Credential Dumping TechniquesA

Detect LSASS credential dumping, SAM database extraction, and NTDS.dit

securitypythondatabase
0
9
Detecting Deepfake Audio In Vishing AttacksA

'Detects AI-generated deepfake audio used in voice phishing (vishing)

businesspythongo
0
9
Detecting Oauth Token TheftA

'Detects and responds to OAuth token theft and replay attacks in cloud

securityrustgo
0
9
Detecting Qr Code Phishing With Email SecurityA

Detect and prevent QR code phishing (quishing) attacks that bypass traditional

developmentrustgo
0
9
Detecting Ransomware Encryption BehaviorA

'Detects ransomware encryption activity in real time using entropy analysis,

devopspythonshell
0
9
Detecting Spearphishing With Email GatewayA

Spearphishing targets specific individuals using personalized, researched

securityrustsecurity
0
9
Detecting T1003 Credential Dumping With EdrA

Detect OS credential dumping techniques targeting LSASS memory, SAM database,

securitygogit
0
9
Emulating Cloud Attacks With Stratus Red TeamB

Detonate granular AWS, Azure, GCP, and Kubernetes attack techniques to validate

devopspythongo
0
9
Escaping Containers To HostD

Exploit privileged pods, host mounts, runC CVEs, and exposed Docker sockets to break out of a container and reach the underlying host during authorized container-security assessments.

securityshellbash
0
9
Exploiting Adcs With CertipyA

Enumerate and exploit Active Directory Certificate Services ESC1 through ESC16 misconfigurations with Certipy, including SAN abuse, NTLM relay to web enrollment (ESC8), and golden certificate forgery.

securitypythongo
0
9
Exploiting Aws With PacuC

Use Pacu modules for AWS privilege escalation, persistence, and backdooring.

securitypythonrust
0
9
Exploiting Http Request SmugglingA

Detecting and exploiting HTTP request smuggling vulnerabilities caused

securitypythongo
0
9
Exploiting Jwt Algorithm Confusion AttackB

'Exploits JWT algorithm confusion vulnerabilities where the server''s

securitypythonrust
0
9
Exploiting Kerberoasting With ImpacketA

Perform Kerberoasting attacks using Impacket's GetUserSPNs to extract

securityshellbash
0
9
Exploiting Ms17 010 Eternalblue VulnerabilityA

MS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1

securitypythongo
0
9
Exploiting Nosql Injection VulnerabilitiesB

Detect and exploit NoSQL injection vulnerabilities in MongoDB, CouchDB,

securityjavascriptpython
0
9
Exploiting Prototype Pollution In JavascriptA

Detect and exploit JavaScript prototype pollution vulnerabilities on

developmentjavascriptjava
0
9
Exploiting Race Condition VulnerabilitiesA

Detect and exploit race condition vulnerabilities in web applications

businesspythongo
0
9
Exploiting Zerologon Vulnerability Cve 2020 1472A

Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon Remote

securitypythongo
0
9
Extracting Credentials From Memory DumpA

Extract cached credentials, password hashes, Kerberos tickets, and authentication

securitypythongo
0
9
Generating Forensic Timelines With HayabusaA

Produce Sigma-based EVTX timelines and summaries with Hayabusa.

devopsrustgo
0
9
Hunting For Cobalt Strike BeaconsA

Detect Cobalt Strike beacon network activity using default TLS certificate

devopspythongit
0
9
Hunting For Data Exfiltration IndicatorsA

Hunt for data exfiltration through network traffic analysis, detecting

devopsgodatabase
0
9
Implementing Anti Phishing Training ProgramA

Security awareness training is the human layer of phishing defense. An

businesssecurityperformance
0
9
Implementing Anti Ransomware Group PolicyA

'Configures Windows Group Policy Objects (GPO) to prevent ransomware

developmentjavascriptpython
0
9
Implementing Azure Ad Privileged Identity ManagementA

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time

securitypythonrust
0
9
Implementing Delinea Secret Server For PamB

'Implements Delinea Secret Server for privileged access management (PAM)

devopsgoshell
0
9
Implementing Google Workspace Admin SecurityA

'Implements comprehensive Google Workspace security hardening including

securityrustgo
0
9
Implementing Google Workspace Phishing ProtectionA

Configure Google Workspace advanced phishing and malware protection settings

securityrustgo
0
9
Implementing Google Workspace Sso ConfigurationA

Configure SAML 2.0 single sign-on for Google Workspace with a third-party

securityrustgo
0
9
Implementing Hashicorp Vault Dynamic SecretsB

'Implements HashiCorp Vault dynamic secrets engines for database credentials,

devopspythonrust
0
9
Implementing Identity Governance With SailpointA

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and

securitypythongo
0
9
Implementing Identity Verification For Zero TrustA

Implement continuous identity verification for zero trust using phishing-resistant

securitypythonrust
0
9
Implementing Mimecast Targeted Attack ProtectionA

Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment

securitygogit
0
9