All authors
andycungkrinx91 avatar

Claude Skills by andycungkrinx91

github.com/andycungkrinx91
695 skillsA× 563B× 84C× 24D× 18F× 60 installs6 views
Extracting Credentials From Memory DumpA

Extract cached credentials, password hashes, Kerberos tickets, and authentication

securitypythongo
0
9
Generating Forensic Timelines With HayabusaA

Produce Sigma-based EVTX timelines and summaries with Hayabusa.

devopsrustgo
0
9
Hunting For Cobalt Strike BeaconsA

Detect Cobalt Strike beacon network activity using default TLS certificate

devopspythongit
0
9
Hunting For Data Exfiltration IndicatorsA

Hunt for data exfiltration through network traffic analysis, detecting

devopsgodatabase
0
9
Implementing Anti Phishing Training ProgramA

Security awareness training is the human layer of phishing defense. An

businesssecurityperformance
0
9
Implementing Anti Ransomware Group PolicyA

'Configures Windows Group Policy Objects (GPO) to prevent ransomware

developmentjavascriptpython
0
9
Implementing Azure Ad Privileged Identity ManagementA

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time

securitypythonrust
0
9
Implementing Delinea Secret Server For PamB

'Implements Delinea Secret Server for privileged access management (PAM)

devopsgoshell
0
9
Implementing Google Workspace Admin SecurityA

'Implements comprehensive Google Workspace security hardening including

securityrustgo
0
9
Implementing Google Workspace Phishing ProtectionA

Configure Google Workspace advanced phishing and malware protection settings

securityrustgo
0
9
Implementing Google Workspace Sso ConfigurationA

Configure SAML 2.0 single sign-on for Google Workspace with a third-party

securityrustgo
0
9
Implementing Hashicorp Vault Dynamic SecretsB

'Implements HashiCorp Vault dynamic secrets engines for database credentials,

devopspythonrust
0
9
Implementing Identity Governance With SailpointA

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and

securitypythongo
0
9
Implementing Identity Verification For Zero TrustA

Implement continuous identity verification for zero trust using phishing-resistant

securitypythonrust
0
9
Implementing Mimecast Targeted Attack ProtectionA

Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment

securitygogit
0
9
Implementing Pam For Database AccessA

Deploy privileged access management for database systems including Oracle,

devopspythonsql
0
9
Implementing Passwordless Auth With Microsoft EntraB

'Implements passwordless authentication using Microsoft Entra ID with

devopsrustgo
0
9
Implementing Privileged Access Management With CyberarkA

Deploy CyberArk Privileged Access Management to discover, vault, rotate,

securitypythonsql
0
9
Implementing Ransomware Backup StrategyA

'Designs and implements a ransomware-resilient backup strategy following

devopsrustgo
0
9
Implementing Ransomware Kill Switch DetectionA

'Detects and exploits ransomware kill switch mechanisms including mutex-based

devopspythongo
0
9
Implementing Saml Sso With OktaA

Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider

securitypythongo
0
9
Implementing Scim Provisioning With OktaA

Implement automated user provisioning and deprovisioning using SCIM 2.0

securitypythonreact
0
9
Implementing Soar Playbook For PhishingA

Automate phishing incident response using Splunk SOAR REST API to create

toolspythonapi
0
9
Implementing Zero Trust With Hashicorp BoundaryA

Implement HashiCorp Boundary for identity-aware zero trust infrastructure

devopsrustgo
0
9
Managing Third Party Vendor RiskA

Build and run a third-party / vendor risk management (TPRM) program aligned to NIST SP 800-161 C-SCRM and NIST CSF 2.0 GV.SC: inventory and tier vendors by risk, send the right due-diligence questionnaire (SIG, CAIQ), review evidence (SOC 2, ISO 27001, pen-test reports), set contractual security and right-to-audit clauses, monitor vendors continuously, manage Nth-party / subcontractor risk, and offboard securely. Use when an organization needs to assess a new vendor before onboarding, when st...

businessrustgo
0
9
Mapping Attack Paths With Bloodhound CeB

Collect Active Directory data with SharpHound and Entra ID data with AzureHound, ingest into BloodHound Community Edition, and analyze on-prem, cloud, and hybrid attack paths with built-in queries and custom Cypher.

devopspythonrust
0
9
Migrating To Post Quantum CryptographyA

Inventory cryptography, deploy hybrid X25519 and ML-KEM, and prioritize harvest-now-decrypt-later data.

securitypythonrust
0
9
Modeling Threats With OpenctiA

Model threat actors, intrusion sets, campaigns, and TTPs as a STIX 2.1 knowledge graph in OpenCTI (Filigran) using the pycti Python client, connectors, and import workers for structured cyber threat intelligence.

securitypythonbash
0
9
Moving Laterally With NetexecA

Use NetExec for SMB, WinRM, LDAP, and MSSQL enumeration, password spraying,

securityshellbash
0
9
Operating Havoc C2A

Deploy a Havoc team server with Yaotl profiles, generate evasive Demon agents with indirect syscalls and sleep obfuscation, and run post-exploitation and pivoting for adversary emulation.

securitypythonrust
0
9
Operating Sliver C2A

Stand up a Sliver C2 server and listeners, generate cross-platform implants and beacons, and run post-exploitation, pivoting, and BOF/.NET tooling via the armory for adversary emulation.

securitygoshell
0
9
Operationalizing Misp Threat FeedsA

Run MISP, curate feeds, and auto-generate detections for Wazuh, Sigma, and Suricata.

devopspythongo
0
9
Performing Access Recertification With SaviyntA

Configure and execute access recertification campaigns in Saviynt Enterprise

testingpythongo
0
9
Performing Adversary In The Middle Phishing DetectionA

Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks

securitygonode
0
9
Performing Entitlement Review With Sailpoint IiqA

'Performs entitlement review and access certification campaigns using

devopsgojava
0
9
Performing Oauth Scope Minimization ReviewA

'Performs OAuth 2.0 scope minimization review to identify over-permissioned

securitypythonrust
0
9
Performing Paste Site Monitoring For CredentialsA

Monitor paste sites like Pastebin and GitHub Gists for leaked credentials,

securitypythongo
0
9
Performing Phishing Simulation With GophishA

GoPhish is an open-source phishing simulation framework used by security

devopspythongo
0
9
Performing Ransomware ResponseA

'Executes a structured ransomware incident response from initial detection

securitygotesting
0
9
Performing Ransomware Tabletop ExerciseA

'Plans and facilitates tabletop exercises simulating ransomware incidents

businessgotesting
0
9
Performing Red Team Phishing With GophishA

Automate GoPhish phishing simulation campaigns using the Python gophish

devopspythongo
0
9
Performing Service Account Credential RotationA

Automate credential rotation for service accounts across Active Directory,

devopspythongo
0
9
Post Exploiting Microsoft Graph With GraphrunnerA

Perform recon, persistence, privilege escalation, and data search via the Microsoft Graph API using GraphRunner.

securityshellazure
0
9
Recovering From Ransomware AttackA

'Executes structured recovery from a ransomware incident following NIST

devopsrustgo
0
9
Relaying Ntlm For Adcs Esc8A

Run ntlmrelayx into ADCS web enrollment to obtain a domain controller certificate via ESC8.

securitypythongo
0
9
Reverse Engineering Ransomware Encryption RoutineA

Reverse engineer ransomware encryption routines to identify cryptographic

securitypythongo
0
9
Scanning Iac And Images With TrivyB

Scan container images, IaC, and SBOMs for vulnerabilities and misconfigurations in CI/CD with Trivy.

devopspythongo
0
9
Securing Aws Iam PermissionsA

'This skill guides practitioners through hardening AWS Identity and Access

securitygobash
0
9
Testing Ransomware Recovery ProceduresA

Test and validate ransomware recovery procedures including backup restore

securitygobash
0
9
Tracking Threat Actor InfrastructureA

Threat actor infrastructure tracking involves monitoring and mapping

developmentpythonrust
0
9