All authors
costrict-plugins-repo avatar

Claude Skills by costrict-plugins-repo

github.com/costrict-plugins-repo
818 skillsA× 697B× 83C× 17D× 12F× 90 installs56 views
Analyzing Persistence Mechanisms In LinuxC

Detect and analyze Linux persistence mechanisms including crontab entries,

content-marketingpythonshell
0
67
Analyzing Powershell Empire ArtifactsA

Detect PowerShell Empire framework artifacts in Windows event logs by

devopspythongo
0
67
Analyzing Powershell Script Block LoggingA

Parse Windows PowerShell Script Block Logs (Event ID 4104) from EVTX

devopspythonshell
0
67
Analyzing Prefetch Files For Execution HistoryA

Parse Windows Prefetch files to determine program execution history including

toolspythonshell
0
67
Analyzing Ransomware Encryption MechanismsA

'Analyzes encryption algorithms, key management, and file encryption

businesspythongo
0
67
Analyzing Ransomware Leak Site IntelligenceA

Monitor and analyze ransomware group data leak sites (DLS) to track victim

securitypythongit
0
67
Analyzing Ransomware Network IndicatorsA

Identify ransomware network indicators including C2 beaconing patterns,

securitypythonnode
0
67
Analyzing Ransomware Payment WalletsA

'Traces ransomware cryptocurrency payment flows using blockchain analysis

blockchainpythonreact
0
67
Analyzing Sbom For Supply Chain VulnerabilitiesA

'Parses Software Bill of Materials (SBOM) in CycloneDX and SPDX JSON

developmentpythongo
0
67
Analyzing Security Logs With SplunkA

'Leverages Splunk Enterprise Security and SPL (Search Processing Language)

devopsgoshell
0
67
Analyzing Slack Space And File System ArtifactsA

Examine file system slack space, MFT entries, USN journal, and alternate

researchpythonbash
0
67
Analyzing Supply Chain Malware ArtifactsA

Investigate supply chain attack artifacts including trojanized software

developmentpythonrust
0
67
Analyzing Threat Actor Ttps With Mitre AttackA

MITRE ATT&CK is a globally-accessible knowledge base of adversary tactics,

devopspythongit
0
67
Analyzing Threat Actor Ttps With Mitre NavigatorA

'Map advanced persistent threat (APT) group tactics, techniques, and

datapythonshell
0
67
Analyzing Threat Intelligence FeedsA

'Analyzes structured and unstructured threat intelligence feeds to extract

businesspythonrust
0
67
Analyzing Threat Landscape With MispA

Analyze the threat landscape using MISP (Malware Information Sharing

securitypythonbash
0
67
Analyzing Tls Certificate Transparency LogsA

'Queries Certificate Transparency logs via crt.sh and pycrtsh to detect

devopspythontesting
0
67
Analyzing Typosquatting Domains With DnstwistA

Detect typosquatting, homograph phishing, and brand impersonation domains

devopspythongo
0
67
Analyzing Uefi Bootkit PersistenceA

'Analyzes UEFI bootkit persistence mechanisms including firmware implants

securitypythonrust
0
67
Analyzing Usb Device Connection HistoryA

Investigate USB device connection history from Windows registry, event

researchpythonbash
0
67
Analyzing Web Server Logs For IntrusionC

Parse Apache and Nginx access logs to detect SQL injection attempts,

developmentjavascriptpython
0
67
Analyzing Windows Amcache ArtifactsA

'Parses and analyzes the Windows Amcache.hve registry hive to extract

developmentrustgo
0
67
Analyzing Windows Event Logs In SplunkA

'Analyzes Windows Security, System, and Sysmon event logs in Splunk to

securitygoswift
0
67
Analyzing Windows Lnk Files For ArtifactsA

Parse Windows LNK shortcut files to extract target paths, timestamps,

toolspythonshell
0
67
Analyzing Windows Prefetch With PythonA

Parse Windows Prefetch files using the windowsprefetch Python library

devopspythonshell
0
67
Analyzing Windows Registry For ArtifactsA

Extract and analyze Windows Registry hives to uncover user activity,

toolspythonshell
0
67
Analyzing Windows Shellbag ArtifactsA

Analyze Windows Shellbag registry artifacts to reconstruct folder browsing

developmentpythonshell
0
67
Auditing Aws S3 Bucket PermissionsA

'Systematically audit AWS S3 bucket permissions to identify publicly

securitypythonrust
0
67
Auditing Azure Active Directory ConfigurationA

'Auditing Microsoft Entra ID (Azure Active Directory) configuration to

securitypythongo
0
67
Auditing Cloud With Cis BenchmarksA

'This skill details how to conduct cloud security audits using Center

devopsrustgo
0
67
Auditing Gcp Iam PermissionsA

'Auditing Google Cloud Platform IAM permissions to identify overly permissive

securitypythongo
0
67
Auditing Kubernetes Cluster RbacB

'Auditing Kubernetes cluster RBAC configurations to identify overly permissive

devopspythonbash
0
67
Auditing Terraform Infrastructure For SecurityA

'Auditing Terraform infrastructure-as-code for security misconfigurations

devopspythongo
0
67
Auditing Tls Certificate Transparency LogsA

'Monitors Certificate Transparency (CT) logs to detect unauthorized certificate

devopspythonrust
0
67
Automating Ioc EnrichmentA

'Automates the enrichment of raw indicators of compromise with multi-source

devopspythonrust
0
67
Building Adversary Infrastructure Tracking SystemA

Build an automated system to track adversary infrastructure using passive

devopspythonrust
0
67
Building Attack Pattern Library From Cti ReportsA

Extract and catalog attack patterns from cyber threat intelligence reports

securitypythongo
0
67
Building Automated Malware Submission PipelineA

'Builds an automated malware submission and analysis pipeline that collects

toolspythonrust
0
67
Building C2 Infrastructure With Sliver FrameworkB

Build and configure a resilient command-and-control infrastructure using

devopspythongo
0
67
Building Cloud Siem With SentinelA

'This skill covers deploying Microsoft Sentinel as a cloud-native SIEM

devopsgoshell
0
67
Building Detection Rule With Splunk SplA

Build effective detection rules using Splunk Search Processing Language

securitygoshell
0
67
Building Detection Rules With SigmaA

'Builds vendor-agnostic detection rules using the Sigma rule format for

toolspythongo
0
67
Building Devsecops Pipeline With Gitlab CiA

Design and implement a comprehensive DevSecOps pipeline in GitLab CI/CD

securitygojava
0
67
Building Identity Federation With Saml Azure AdA

Establish SAML 2.0 identity federation between on-premises Active Directory

devopsrustshell
0
67
Building Identity Governance Lifecycle ProcessA

'Builds comprehensive identity governance and lifecycle management processes

securitypythonrust
0
67
Building Incident Response DashboardA

'Builds real-time incident response dashboards in Splunk, Elastic, or

businessgoazure
0
67
Building Incident Response PlaybookA

'Designs and documents structured incident response playbooks that define

devopsrustgit
0
67
Building Incident Timeline With TimesketchA

Build collaborative forensic incident timelines using Timesketch to ingest,

devopspythongo
0
67
Building Ioc Defanging And Sharing PipelineA

Build an automated pipeline to defang indicators of compromise (URLs,

devopspythongo
0
67
Building Ioc Enrichment Pipeline With OpenctiA

OpenCTI is an open-source platform for managing cyber threat intelligence

developmentpythonrust
0
67