All authors
andycungkrinx91 avatar

Claude Skills by andycungkrinx91

github.com/andycungkrinx91
695 skillsA× 563B× 84C× 24D× 18F× 60 installs5 views
Operating Sliver C2A

Stand up a Sliver C2 server and listeners, generate cross-platform implants and beacons, and run post-exploitation, pivoting, and BOF/.NET tooling via the armory for adversary emulation.

securitygoshell
0
9
Operationalizing Misp Threat FeedsA

Run MISP, curate feeds, and auto-generate detections for Wazuh, Sigma, and Suricata.

devopspythongo
0
9
Performing Access Recertification With SaviyntA

Configure and execute access recertification campaigns in Saviynt Enterprise

testingpythongo
0
9
Performing Adversary In The Middle Phishing DetectionA

Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks

securitygonode
0
9
Performing Entitlement Review With Sailpoint IiqA

'Performs entitlement review and access certification campaigns using

devopsgojava
0
9
Performing Oauth Scope Minimization ReviewA

'Performs OAuth 2.0 scope minimization review to identify over-permissioned

securitypythonrust
0
9
Performing Paste Site Monitoring For CredentialsA

Monitor paste sites like Pastebin and GitHub Gists for leaked credentials,

securitypythongo
0
9
Performing Phishing Simulation With GophishA

GoPhish is an open-source phishing simulation framework used by security

devopspythongo
0
9
Performing Ransomware ResponseA

'Executes a structured ransomware incident response from initial detection

securitygotesting
0
9
Performing Ransomware Tabletop ExerciseA

'Plans and facilitates tabletop exercises simulating ransomware incidents

businessgotesting
0
9
Performing Red Team Phishing With GophishA

Automate GoPhish phishing simulation campaigns using the Python gophish

devopspythongo
0
9
Performing Service Account Credential RotationA

Automate credential rotation for service accounts across Active Directory,

devopspythongo
0
9
Post Exploiting Microsoft Graph With GraphrunnerA

Perform recon, persistence, privilege escalation, and data search via the Microsoft Graph API using GraphRunner.

securityshellazure
0
9
Recovering From Ransomware AttackA

'Executes structured recovery from a ransomware incident following NIST

devopsrustgo
0
9
Relaying Ntlm For Adcs Esc8A

Run ntlmrelayx into ADCS web enrollment to obtain a domain controller certificate via ESC8.

securitypythongo
0
9
Reverse Engineering Ransomware Encryption RoutineA

Reverse engineer ransomware encryption routines to identify cryptographic

securitypythongo
0
9
Scanning Iac And Images With TrivyB

Scan container images, IaC, and SBOMs for vulnerabilities and misconfigurations in CI/CD with Trivy.

devopspythongo
0
9
Securing Aws Iam PermissionsA

'This skill guides practitioners through hardening AWS Identity and Access

securitygobash
0
9
Testing Ransomware Recovery ProceduresA

Test and validate ransomware recovery procedures including backup restore

securitygobash
0
9
Tracking Threat Actor InfrastructureA

Threat actor infrastructure tracking involves monitoring and mapping

developmentpythonrust
0
9
Triaging Windows With KapeA

Run targeted forensic artifact collection and module parsing with KAPE.

devopsgitdatabase
0
9
Validating Backup Integrity For RecoveryA

Validate backup integrity through cryptographic hash verification, automated

devopspythonrust
0
9
Chunin SkillA

Standard Operating Procedures for web research, documentation lookup, evidence synthesis with citations.

researchapidocumentation
0
9
Genin SkillA

Standard Operating Procedures for read-only codebase exploration, symbol search, dependency mapping, code tracing, code review, architecture analysis, technical research, source evaluation, and evidence-based reporting.

code-qualityrustshell
0
9
Jonin SkillA

Standard Operating Procedures and router for premium UI development, design match comparison, component architecture, and 3D web experiences.

developmentgoreact
0
9
Kage SkillB

Standard Operating Procedures for architecture decisions, security audits, deep code analysis, risk assessment, and critical problem solving.

securitygorails
0
9
ReferencesC

Use when the user requests diagrams, flowcharts, architecture diagrams, ER diagrams, UML / sequence / class diagrams, SysML / MBSE diagrams (block definition, internal block, requirement, parametric), BPMN business process diagrams, swimlane / cross-functional flowcharts, network topology, cloud architecture from Terraform or Kubernetes manifests, ML/DL model figures (Transformer/CNN/LSTM), mind maps, or any visualization. Also use proactively when explaining systems with 3+ components, compl...

devopspythonrust
0
9
KonohaB

Guidelines and instructions for maintaining, extending, and debugging the Konoha MCP Tools Orchestrator, MCP middleware, and multi-archetype website builder across 7 coding clients (Antigravity IDE/CLI, Cursor, Claude Code, OpenCode, Command Code, Codex, Pi/pi.dev).

developmentjavascripttypescript
0
9
Sannin SkillA

Standard Operating Procedures and router for MCP task triage, subagent selection, and orchestration.

developmentgoreact
0
9
Tokubetsu Jonin SkillA

Standard Operating Procedures for technical writing, README creation, API specifications, runbooks, and documentation updates.

documentationpythongo
0
9
Anbu SkillB

Standard Operating Procedures for backend development, bug fixing, DevOps, infrastructure deployment, and security hardening.

devopspythonrust
0
9
Abusing Dpapi For Credential AccessA

Extract DPAPI-protected secrets such as credentials and browser data offline and online.

securitypythongo
0
9
Abusing Shadow Credentials For PrivescA

Take over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.

securitypythonrust
0
9
Analyzing Certificate Transparency For PhishingA

Monitor Certificate Transparency logs using crt.sh and Certstream to

devopspythonrust
0
9
Analyzing Email Headers For Phishing InvestigationB

Parse and analyze email headers to trace the origin of phishing emails,

developmentjavascriptpython
0
9
Analyzing Indicators Of CompromiseA

'Analyzes indicators of compromise (IOCs) including IP addresses, domains,

devopspythonrust
0
9
Analyzing Linux Elf MalwareC

'Analyzes malicious Linux ELF (Executable and Linkable Format) binaries

devopspythongo
0
9
Analyzing Ransomware Encryption MechanismsA

'Analyzes encryption algorithms, key management, and file encryption

businesspythongo
0
9
Analyzing Ransomware Leak Site IntelligenceA

Monitor and analyze ransomware group data leak sites (DLS) to track victim

securitypythongit
0
9
Analyzing Ransomware Payment WalletsA

'Traces ransomware cryptocurrency payment flows using blockchain analysis

blockchainpythonreact
0
9
Analyzing Tls Certificate Transparency LogsA

'Queries Certificate Transparency logs via crt.sh and pycrtsh to detect

devopspythontesting
0
9
Analyzing Typosquatting Domains With DnstwistA

Detect typosquatting, homograph phishing, and brand impersonation domains

devopspythongo
0
9
Attacking Entra Id With RoadtoolsA

Enumerate Entra ID with ROADrecon and acquire and exchange tokens with roadtx.

securitypythonbash
0
9
Attacking Oauth With Device Code PhishingB

Run OAuth 2.0 device-code and illicit-consent phishing against Microsoft Entra ID to steal access and refresh tokens, bypass MFA, and pivot across Microsoft 365 services.

securitypythonrust
0
9
Auditing Entra Id With AadinternalsA

Run Microsoft Entra ID tenant reconnaissance, token acquisition and manipulation, and federation backdoor testing with the AADInternals PowerShell toolkit to validate identity-attack resilience.

securityrustgo
0
9
Auditing Kubernetes Cluster RbacB

'Auditing Kubernetes cluster RBAC configurations to identify overly permissive

devopspythonbash
0
9
Auditing Kubernetes Rbac Privilege EscalationC

Find over-permissive RBAC roles and service-account token abuse paths in Kubernetes using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess during authorized cluster security reviews.

securitygobash
0
9
Benchmarking Kubernetes With Kube BenchA

Run CIS Kubernetes Benchmark checks and remediate findings with kube-bench.

devopsgobash
0
9
Building C2 Redirector InfrastructureA

Architect redirectors with nginx and Apache, malleable profiles, and OPSEC

devopspythonrust
0
9
Building Identity Federation With Saml Azure AdA

Establish SAML 2.0 identity federation between on-premises Active Directory

devopsrustshell
0
9