All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- T1137.003 Outlook FormsAdversaries may abuse Microsoft Outlook forms to obtain persistence on a compromised system.Votes: 0GitHub stars: 2,182
- T1137.004 Outlook Home PageAdversaries may abuse Microsoft Outlook's Home Page feature to obtain persistence on a compromised system.Votes: 0GitHub stars: 2,182
- T1137.005 Outlook RulesAdversaries may abuse Microsoft Outlook rules to obtain persistence on a compromised system.Votes: 0GitHub stars: 2,182
- T1137.006 Add InsAdversaries may abuse Microsoft Office add-ins to obtain persistence on a compromised system.Votes: 0GitHub stars: 2,182
- T1137 Office Application StartupAdversaries may leverage Microsoft Office-based applications for persistence between startups.Votes: 0GitHub stars: 2,182
- T1176.001 Browser ExtensionsAdversaries may abuse internet browser extensions to establish persistent access to victim systems.Votes: 0GitHub stars: 2,182
- T1176.002 Ide ExtensionsAdversaries may abuse an integrated development environment (IDE) extension to establish persistent access to victim systems.Votes: 0GitHub stars: 2,182
- T1176 Software ExtensionsAdversaries may abuse software extensions to establish persistent access to victim systems.Votes: 0GitHub stars: 2,182
- T1505.001 Sql Stored ProceduresAdversaries may abuse SQL stored procedures to establish persistent access to systems.Votes: 0GitHub stars: 2,182
- T1505.002 Transport AgentAdversaries may abuse Microsoft transport agents to establish persistent access to systems.Votes: 0GitHub stars: 2,182
- T1505.003 Web ShellAdversaries may backdoor web servers with web shells to establish persistent access to systems.Votes: 0GitHub stars: 2,182
- T1505.004 Iis ComponentsAdversaries may install malicious components that run on Internet Information Services (IIS) web servers to establish persistence.Votes: 0GitHub stars: 2,182
- T1505.005 Terminal Services DllAdversaries may abuse components of Terminal Services to enable persistent access to systems.Votes: 0GitHub stars: 2,182
- T1505.006 Vsphere Installation BundlesAdversaries may abuse vSphere Installation Bundles (VIBs) to establish persistent access to ESXi hypervisors.Votes: 0GitHub stars: 2,182
- T1505 Server Software ComponentAdversaries may abuse legitimate extensible development features of servers to establish persistent access to systems.Votes: 0GitHub stars: 2,182
- T1525 Implant Internal ImageAdversaries may implant cloud or container images with malicious code to establish persistence after gaining access to an environment.Votes: 0GitHub stars: 2,182
- T1542.001 System FirmwareAdversaries may modify system firmware to persist on systems.The BIOS (Basic Input/Output System) and The Unified Extensible Firmware Interface (UEFI) or Extensible Firmware Interface (EFI) are exa...Votes: 0GitHub stars: 2,182
- T1542.002 Component FirmwareAdversaries may modify component firmware to persist on systems.Votes: 0GitHub stars: 2,182
- T1542.003 BootkitAdversaries may use bootkits to persist on systems.Votes: 0GitHub stars: 2,182
- T1543.001 Launch AgentAdversaries may create or modify launch agents to repeatedly execute malicious payloads as part of persistence.Votes: 0GitHub stars: 2,182
- T1543.002 Systemd ServiceAdversaries may create or modify systemd services to repeatedly execute malicious payloads as part of persistence.Votes: 0GitHub stars: 2,182
- T1543.003 Windows ServiceAdversaries may create or modify Windows services to repeatedly execute malicious payloads as part of persistence.Votes: 0GitHub stars: 2,182
- T1543.004 Launch DaemonAdversaries may create or modify Launch Daemons to execute malicious payloads as part of persistence.Votes: 0GitHub stars: 2,182
- T1543.005 Container ServiceAdversaries may create or modify container or container cluster management tools that run as daemons, agents, or services on individual hosts.Votes: 0GitHub stars: 2,182
- T1543 Create Or Modify System ProcessAdversaries may create or modify system-level processes to repeatedly execute malicious payloads as part of persistence.Votes: 0GitHub stars: 2,182
- T1546.017 Udev RulesAdversaries may maintain persistence through executing malicious content triggered using udev rules.Votes: 0GitHub stars: 2,182
- T1546.018 Python Startup HooksAdversaries may achieve persistence by leveraging Python’s startup mechanisms, including path configuration (`.pth`) files and the `sitecustomize.py` or `usercustomize.py` modules.Votes: 0GitHub stars: 2,182
- T1547.002 Authentication PackageAdversaries may abuse authentication packages to execute DLLs when the system boots.Votes: 0GitHub stars: 2,182
- T1547.003 Time ProvidersAdversaries may abuse time providers to execute DLLs when the system boots.Votes: 0GitHub stars: 2,182
- T1547.004 Winlogon Helper DllAdversaries may abuse features of Winlogon to execute DLLs and/or executables when a user logs in.Votes: 0GitHub stars: 2,182
- T1547.005 Security Support ProviderAdversaries may abuse security support providers (SSPs) to execute DLLs when the system boots.Votes: 0GitHub stars: 2,182
- T1547.006 Kernel Modules And ExtensionsAdversaries may modify the kernel to automatically execute programs on system boot.Votes: 0GitHub stars: 2,182
- T1547.007 Re Opened ApplicationsAdversaries may modify plist files to automatically run an application when a user logs in.Votes: 0GitHub stars: 2,182
- T1547.008 Lsass DriverAdversaries may modify or add LSASS drivers to obtain persistence on compromised systems.Votes: 0GitHub stars: 2,182
- T1547.009 Shortcut ModificationAdversaries may create or modify shortcuts that can execute a program during system boot or user login.Votes: 0GitHub stars: 2,182
- T1547.010 Port MonitorsAdversaries may use port monitors to run an adversary supplied DLL during system boot for persistence or privilege escalation.Votes: 0GitHub stars: 2,182
- T1547.012 Print ProcessorsAdversaries may abuse print processors to run malicious DLLs during system boot for persistence and/or privilege escalation.Votes: 0GitHub stars: 2,182
- T1547.013 Xdg Autostart EntriesAdversaries may add or modify XDG Autostart Entries to execute malicious programs or commands when a user’s desktop environment is loaded at login.Votes: 0GitHub stars: 2,182
- T1547.014 Active SetupAdversaries may achieve persistence by adding a Registry key to the Active Setup of the local machine.Votes: 0GitHub stars: 2,182
- T1547.015 Login ItemsAdversaries may add login items to execute upon user login to gain persistence or escalate privileges.Votes: 0GitHub stars: 2,182
- T1547 Boot Or Logon Autostart ExecutionAdversaries may configure system settings to automatically execute a program during system boot or logon to maintain persistence or gain higher-level privileges on compromised systems.Votes: 0GitHub stars: 2,182
- T1554 Compromise Host Software BinaryAdversaries may modify host software binaries to establish persistent access to systems.Votes: 0GitHub stars: 2,182
- T1574.001 DllAdversaries may abuse dynamic-link library files (DLLs) in order to achieve persistence, escalate privileges, and evade defenses.Votes: 0GitHub stars: 2,182
- T1574.004 Dylib HijackingAdversaries may execute their own payloads by placing a malicious dynamic library (dylib) with an expected name in a path a victim application searches at runtime.Votes: 0GitHub stars: 2,182
- T1574.006 Dynamic Linker HijackingAdversaries may execute their own malicious payloads by hijacking environment variables the dynamic linker uses to load shared libraries.Votes: 0GitHub stars: 2,182
- T1574.012 CorprofilerAdversaries may leverage the COR_PROFILER environment variable to hijack the execution flow of programs that load the .NET CLR.Votes: 0GitHub stars: 2,182
- T1574.013 KernelcallbacktableAdversaries may abuse the <code>KernelCallbackTable</code> of a process to hijack its execution flow in order to run their own payloads.Votes: 0GitHub stars: 2,182
- T1574.014 AppdomainmanagerAdversaries may execute their own malicious payloads by hijacking how the .NET `AppDomainManager` loads assemblies.Votes: 0GitHub stars: 2,182
- T1574 Hijack Execution FlowAdversaries may execute their own malicious payloads by hijacking the way operating systems run programs.Votes: 0GitHub stars: 2,182
- T1653 Power SettingsAdversaries may impair a system's ability to hibernate, reboot, or shut down in order to extend access to infected machines.Votes: 0GitHub stars: 2,182