All authors
MustafaKemal0146 avatar

Claude Skills by MustafaKemal0146

github.com/MustafaKemal0146
960 skillsA× 817B× 97C× 26D× 12F× 80 installs252 views
Performing Endpoint Vulnerability RemediationA

Performs vulnerability remediation on endpoints by prioritizing CVEs based on risk scoring, Dağıt:ing patches, applying configuration changes, and validating fixes. Use remediating yaparken Bul:ings

securitygoshell
0
4
Analyzing Uefi Bootkit PersistenceA

Analyzes UEFI bootkit persistence mechanisms including firmware implants in SPI flash, EFI System Partition (ESP) modifications, Secure Boot bypass techniques, and UEFI variable manipulation.

securitypythonrust
0
4
Performing Firmware Extraction With BinwalkF

Performs firmware image extraction and analysis using binwalk to identify embedded filesystems, compressed archives, bootloaders, kernel images, and cryptographic material. Covers entropy analysis

securitypythongo
0
4
Analyzing Active Directory Acl AbuseA

tespit etmedangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse paths

securitypythonrust
0
4
Api Key ScannerA

Scan code repositories for exposed API keys, credentials, and sensitive data patterns. Find secrets in config files, logs, and source code.

securitypythongo
0
4
Building Identity Federation With Saml Azure AdA

Establish SAML 2.0 identity federation between on-premises Active Directory and Azure AD (Microsoft Entra ID) for seamless cross-domain authentication and SSO to cloud applications.

securityrustgo
0
4
Building Identity Governance Lifecycle ProcessA

Builds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation, role mining, access request workflows, periodic recertification, and orphaned

securitypythonrust
0
4
Building Role Mining For Rbac OptimizationA

Apply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.

securitypythongo
0
4
Configuring Active Directory Tiered ModelA

Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative

securitypythongo
0
4
Configuring Ldap Security HardeningA

Harden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding,

securitypythongo
0
4
Configuring Multi Factor Authentication With DuoA

Dağıt: Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. bu skill covers Duo integration methods, adaptive authentication policies, device

securitypythonrust
0
4
Configuring Oauth2 Authorization FlowA

Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. bu skill covers flow selection, PKCE implementation,

securitypythongo
0
4
Detecting Anomalous Authentication PatternsA

tespit etme (s) anomalous authentication patterns using UEBA analytics, statistical baselines, and machine learning models to identify impossible travel, credential stuffing, brute force, password

securitypythongo
0
4
Implementing Aws Iam Permission BoundariesA

Configure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilege limits set by the security team.

securityrustgo
0
4
Implementing Azure Ad Privileged Identity ManagementA

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.

securitypythonrust
0
4
Implementing Conditional Access Policies Azure AdA

Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based policy design, device compliance requirements, risk-based authentication,

securitypythonrust
0
4
Implementing Delinea Secret Server For PamB

Implements Delinea Secret Server for privileged access management (PAM) including secret vault configuration, role-based access policies, automated password rotation, session recording, and

securitygoshell
0
4
Implementing Google Workspace Admin SecurityA

Implements comprehensive Google Workspace security hardening including admin console configuration, phishing-resistant MFA enforcement, DLP policies, email authentication (SPF/DKIM/DMARC),

securityrustgo
0
4
Implementing Google Workspace Sso ConfigurationA

Configure SAML 2.0 single sign-on for Google Workspace with a third-party identity provider, enabling centralized authentication and enforcing organization-wide access policies.

securityrustgo
0
4
Implementing Hardware Security Key AuthenticationA

Implements FIDO2/WebAuthn hardware security key authentication including registration ceremonies, authentication flows, YubiKey enrollment, and passkey migration strategies. Builds a complete

securitypythongo
0
4
Implementing Hashicorp Vault Dynamic SecretsB

Implements HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates with automatic generation, lease management, and credential rotation to eliminate

securitypythonrust
0
4
Implementing Identity Governance With SailpointA

Dağıt: SailPoint IdentityNow or IdentityIQ for identity governance and administration. Covers identity lifecycle management, access request workflows, certification campaigns, role mining,

securitypythongo
0
4
Implementing Just In Time Access ProvisioningA

Implement Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access only when needed. bu skill covers JIT architecture design, approval

securitypythonrust
0
4
Implementing Pam For Database AccessA

Dağıt: privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic

securitypythongo
0
4
Implementing Passwordless Auth With Microsoft EntraB

Implements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business, Microsoft Authenticator passkeys, and certificate-based authentication

securityrustgo
0
4
Implementing Passwordless Authentication With Fido2A

Dağıt: FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators. Covers WebAuthn API integration, FIDO2 server configuration, passkey enrollment, biometric

securitypythongo
0
4
Implementing Privileged Access Management With CyberarkA

Dağıt: CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure. bu skill covers vault architecture, session isolation,

securitypythongo
0
4
Implementing Privileged Access WorkstationA

Design and implement Privileged Access Workstations (PAWs) with device hardening, just-in-time access, and integration with CyberArk or BeyondTrust for secure administrative operations.

securitypythonrust
0
4
Implementing Privileged Session MonitoringD

Implements privileged session monitoring and recording using Privileged Access Management (PAM) solutions, focusing on CyberArk Privileged Session Manager (PSM) and open-source alternatives.

securitypythongo
0
4
Implementing Saml Sso With OktaA

Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider (IdP). bu skill covers end-to-end configuration of SAML authentication flows, attribute mapping, certificate management,

securitypythongo
0
4
Implementing Scim Provisioning With OktaA

Implement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.

securitypythongo
0
4
Implementing Zero Standing Privilege With CyberarkA

Dağıt: CyberArk Secure Cloud Erişim: eliminate standing privileges in hybrid and multi-cloud environments using just-in-time access with time, entitlement, and approval controls.

securityrustgo
0
4
Performing Access Recertification With SaviyntA

Configure and execute access recertification campaigns in Saviynt Enterprise Identity Cloud to validate user entitlements, revoke excessive access, and maintain compliance with SOX, SOC2, and

securitypythongo
0
4
Performing Access Review And CertificationA

Conduct systematic access reviews and certifications to ensure users have appropriate access rights aligned with their roles. bu skill covers review campaign design, reviewer selection, risk-based

securitypythongo
0
4
Performing Entitlement Review With Sailpoint IiqA

Performs entitlement review and access certification campaigns using SailPoint IdentityIQ including manager certifications, targeted entitlement reviews, role-based access validation, SOD violation

securitygojava
0
4
Performing Oauth Scope Minimization ReviewA

Performs OAuth 2.0 scope minimization review to identify over-permissioned third-party application integrations, excessive API scopes, unused token grants, and risky OAuth consent patterns

securitypythonrust
0
4
Performing Privileged Account Access ReviewA

Conduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions, and enforce least privilege across PAM infrastructure.

securityrustgo
0
4
Performing Privileged Account DiscoveryA

Discover and inventory all privileged accounts across enterprise infrastructure including domain admins, local admins, service accounts, database admins, cloud IAM roles, and application admin

securitypythongo
0
4
Performing Service Account AuditA

Audit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. bu skill covers discovery of service accounts in Active Directory,

securitypythongo
0
4
Performing Service Account Credential RotationA

Automate credential rotation for service accounts across Active Directory, cloud platforms, and application databases to eliminate stale secrets and reduce compromise risk.

securitypythongo
0
4
Seclists PasswordsA

SecLists-based security testing skill

securitypythongo
0
4
Seclists UsernamesA

SecLists-based security testing skill

securitypythongo
0
4
Analyzing Linux Audit Logs For IntrusionD

Uses the Linux Audit framework (auditd) with ausearch and aureport utilities to tespit etmeintrusion attempts, unauthorized access, privilege escalation, and suspicious system activity. Covers

securitygobash
0
4
Analyzing Network Traffic For IncidentsA

Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration,

securitygoshell
0
4
Analyzing Security Logs With SplunkA

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to Araştır: security incidents through log correlation, timeline reconstruction, and anomaly Tespit. Covers Windows

securitygoshell
0
4
Building Incident Response PlaybookA

Designs and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. Covers

securityrustgo
0
4
Building Incident Timeline With TimesketchA

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.

securitypythongo
0
4
Building Malware Incident Communication TemplateA

Build structured communication templates for malware incidents including stakeholder notifications, executive briefings, technical advisories, and regulatory disclosures with severity-based

securitypythongo
0
4
Collecting Indicators Of CompromiseA

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable Tespit, blocking, and threat intelligence sharing. Covers

securityrustgo
0
4
Collecting Volatile Evidence From Compromised HostB

Collect volatile forensic evidence from a compromised system following order of volatility, preserving memory, network connections, processes, and system state before they are lost.

securityrustgo
0
4