
Claude Skills by CyberStrikeus
github.com/CyberStrikeusAdversaries may buy, steal, or download exploits that can be used during targeting.
Adversaries may acquire information about vulnerabilities that can be used during targeting.
Adversaries may obtain access to generative artificial intelligence tools, such as large language models (LLMs), to aid various techniques during targeting.
Adversaries may buy and/or steal capabilities that can be used during targeting.
Adversaries may upload malware to third-party or adversary controlled infrastructure to make it accessible during targeting.
Adversaries may upload tools to third-party or adversary controlled infrastructure to make it accessible during targeting.
Adversaries may install SSL/TLS certificates that can be used during targeting.
Adversaries may prepare an operational environment to infect systems that visit a website over the normal course of browsing.
Adversaries may put in place resources that are referenced by a link that can be used during targeting.
Adversaries may poison mechanisms that influence search engine optimization (SEO) to further lure staged capabilities towards potential victims.
Adversaries may upload, install, or otherwise set up capabilities that can be used during targeting.
Adversaries may purchase or otherwise acquire an existing access to a target system or network.
Adversaries may gather credentials that can be used during targeting.
Adversaries may gather email addresses that can be used during targeting.
Adversaries may gather employee names that can be used during targeting.
Adversaries may gather information about the victim's identity that can be used during targeting.
Adversaries may gather information about the victim's network domain(s) that can be used during targeting.
Adversaries may gather information about the victim's DNS that can be used during targeting.
Adversaries may gather information about the victim's network trust dependencies that can be used during targeting.
Adversaries may gather information about the victim's network topology that can be used during targeting.
Adversaries may gather the victim's IP addresses that can be used during targeting.
Adversaries may gather information about the victim's network security appliances that can be used during targeting.
Adversaries may gather information about the victim's networks that can be used during targeting.
Adversaries may gather the victim's physical location(s) that can be used during targeting.
Adversaries may gather information about the victim's business relationships that can be used during targeting.
Adversaries may gather information about the victim's business tempo that can be used during targeting.
Adversaries may gather information about identities and roles within the victim organization that can be used during targeting.
Adversaries may gather information about the victim's organization that can be used during targeting.
Adversaries may gather information about the victim's host hardware that can be used during targeting.
Adversaries may gather information about the victim's host software that can be used during targeting.
Adversaries may gather information about the victim's host firmware that can be used during targeting.
Adversaries may gather information about the victim's client configurations that can be used during targeting.
Adversaries may gather information about the victim's hosts that can be used during targeting.
Adversaries may search social media for information about victims that can be used during targeting.
Adversaries may use search engines to collect information about victims that can be used during targeting.
Adversaries may search public code repositories for information about victims that can be used during targeting.
Adversaries may search freely available websites and/or domains for information about victims that can be used during targeting.
Adversaries may search websites owned by the victim for information that can be used during targeting.
Adversaries may scan victim IP blocks to gather information that can be used during targeting.
Adversaries may scan victims for vulnerabilities that can be used during targeting.
Adversaries may iteratively probe infrastructure using brute-forcing and crawling techniques.
Adversaries may execute active reconnaissance scans to gather information that can be used during targeting.
Adversaries may search DNS data for information about victims that can be used during targeting.
Adversaries may search public WHOIS data for information about victims that can be used during targeting.
Adversaries may search public digital certificate data for information about victims that can be used during targeting.
Adversaries may search content delivery network (CDN) data about victims that can be used during targeting.
Adversaries may search within public scan databases for information about victims that can be used during targeting.
Adversaries may search freely available technical databases for information about victims that can be used during targeting.
Adversaries may search private data from threat intelligence vendors for information that can be used during targeting.
Adversaries may purchase technical information about victims that can be used during targeting.