All authors
nuroctane avatar

Claude Skills by nuroctane

github.com/nuroctane
1,173 skillsA× 1,031B× 97C× 20D× 16F× 90 installs219 views
Performing Container Security Scanning With TrivyA

Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clusters - for OS and dependency vulnerabilities, IaC misconfiguration, exposed secrets, and licences, generating CycloneDX or SPDX SBOMs. Use when integrating Trivy into CI/CD, deploying the Trivy Kubernetes operator, scanning non-image targets, or triaging results at scale. Keywords: Trivy, trivy k8s, operator, SBOM, CycloneDX, SPDX, misconfig, secret scanning. Do not use for a ...

ai-agentsdockerkubernetes
0
3
Performing Content Security Policy BypassA

Analyze Content-Security-Policy headers and bypass them to achieve cross-site

ai-agentsjavascriptgo
0
3
Performing Credential Access With LazagneA

Extract stored credentials from compromised endpoints using the LaZagne

ai-agentspythongo
0
3
Performing Cryptographic Audit Of ApplicationA

A cryptographic audit systematically reviews an application's use of

ai-agentspythongo
0
3
Performing Cve Prioritization With Kev CatalogA

Fetch and parse the CISA Known Exploited Vulnerabilities (KEV) catalog,

ai-agentspythongo
0
3
Performing Directory Traversal TestingC

Test web applications for path traversal and Local/Remote File Inclusion

ai-agentsgophp
0
3
Performing Disk Forensics InvestigationA

'Conduct disk forensics investigations using forensic imaging, file system

ai-agentsgoshell
0
3
Performing Dmarc Policy Enforcement RolloutA

Execute a phased DMARC rollout by inventorying sending sources, configuring

ai-agentsgotesting
0
3
Performing Docker Bench Security AssessmentA

Runs Docker Bench for Security, the open-source CIS Docker Benchmark audit script, across host configuration, daemon settings, images, and runtime configuration, then interprets pass/fail/warn output and remediates the common failures. Use when auditing Docker hosts for CIS compliance, scheduling recurring container assessments, or validating runtime hardening controls after a change. Keywords: docker-bench-security, CIS Docker Benchmark, audit script, pass fail warn, host configuration, reme...

ai-agentsrustbash
0
3
Performing Dynamic Analysis With Any RunA

'Perform interactive dynamic malware analysis using the ANY.RUN cloud sandbox

ai-agentsrustgo
0
3
Performing Entitlement Review With Sailpoint IiqA

'Runs entitlement review and access certification campaigns in SailPoint

ai-agentsgojava
0
3
Performing False Positive Reduction In SiemA

Reduces SIEM false positives through systematic rule tuning, threshold

ai-agentspythongo
0
3
Performing File Carving With ForemostA

Recovers files from disk images and unallocated space using Foremost's

ai-agentspythongo
0
3
Performing Firmware Extraction With BinwalkF

'Performs firmware image extraction and analysis using binwalk to identify

ai-agentspythongo
0
3
Performing Firmware Malware AnalysisD

'Analyzes firmware images for embedded malware, backdoors, and unauthorized

ai-agentspythongo
0
3
Performing Fuzzing With AflplusplusA

'Performs coverage-guided fuzzing of compiled binaries with AFL++, instrumenting

ai-agentsgotesting
0
3
Performing Gcp Penetration Testing With GcpbucketbruteA

Performs authorized GCP security testing using GCPBucketBrute to enumerate

ai-agentspythongo
0
3
Performing Graphql Introspection AttackA

'Performs GraphQL introspection attacks that extract the full API schema

ai-agentspythongo
0
3
Performing Hardware Security Module IntegrationA

Integrates Hardware Security Modules (HSMs) via the PKCS#11 interface

ai-agentspythongo
0
3
Performing Hash Cracking With HashcatB

Cracks password hashes with Hashcat, covering hash-type identification,

ai-agentspythontesting
0
3
Performing Http Parameter Pollution AttackA

Executes HTTP Parameter Pollution attacks that inject duplicate request

ai-agentspythonrust
0
3
Performing Ics Asset Discovery With ClarotyA

'Performs ICS/OT asset discovery with Claroty xDome, combining passive

ai-agentspythongo
0
3
Performing Indicator Lifecycle ManagementA

Tracks IOCs through discovery, enrichment/validation (VirusTotal, Shodan,

ai-agentspythonrust
0
3
Performing Initial Access With Evilginx3A

Perform authorized initial access using EvilGinx3 adversary-in-the-middle

ai-agentspythongo
0
3
Performing Insider Threat InvestigationA

'Investigates insider threat incidents involving employees, contractors,

ai-agentsrustgo
0
3
Performing Jwt None Algorithm AttackA

Execute and test the JWT none algorithm attack, crafting tokens with

ai-agentspythongo
0
3
Performing Kerberoasting AttackA

Perform Kerberoasting, a post-exploitation technique that enumerates

ai-agentspythonshell
0
3
Performing Kubernetes Cis Benchmark With Kube BenchA

Turns kube-bench output into a finished CIS Kubernetes Benchmark audit: interpreting PASS/FAIL/WARN per control, judging which failures are genuine on a managed cluster, writing remediation, and packaging evidence for SOC 2 or PCI DSS. Use when conducting a scheduled compliance audit, triaging kube-bench results, deciding which controls are not applicable on EKS, GKE, or AKS, or producing hardening evidence for an auditor. Keywords: CIS Kubernetes Benchmark, control plane, remediation, compli...

ai-agentsgobash
0
3
Performing Kubernetes Etcd Security AssessmentA

Assesses the security posture of the etcd cluster backing Kubernetes: encryption at rest, TLS peer and client transport, access control, backup encryption, and network isolation. Use when auditing or hardening a control plane, reviewing whether Secrets are encrypted at rest, or protecting etcd backups, since etcd stores Secrets, RBAC policy, and ConfigMaps in plaintext by default. Keywords: etcd, EncryptionConfiguration, encryption at rest, peer TLS, snapshot, backup, control plane. Do not us...

ai-agentsrustgo
0
3
Performing Kubernetes Penetration TestingC

Evaluates Kubernetes cluster security by actively simulating attacker techniques against the API server, kubelet, etcd, pods, RBAC, network policy, and secrets, using kube-hunter, Kubescape, peirates, and manual kubectl exploitation to find paths to cluster compromise. Use for an authorized penetration test or hands-on validation that controls actually stop an attacker. Keywords: kube-hunter, Kubescape, peirates, kubelet 10250, anonymous auth, token theft, lateral movement, cluster takeover. ...

ai-agentsbashnode
0
3
Performing Lateral Movement DetectionA

'Detects lateral movement techniques including Pass-the-Hash, PsExec,

ai-agentsgoshell
0
3
Performing Linux Log Forensics InvestigationB

Perform forensic investigation of Linux system logs including syslog,

ai-agentspythongo
0
3
Performing Log Analysis For Forensic InvestigationB

Collect, parse, and correlate system, application, and security logs

ai-agentspythongo
0
3
Performing Log Source Onboarding In SiemA

Perform structured log source onboarding into SIEM platforms (Splunk,

ai-agentsgoshell
0
3
Performing Malware Hash Enrichment With VirustotalA

Enrich malware file hashes (MD5, SHA-1, SHA-256) using the VirusTotal

ai-agentspythonrust
0
3
Performing Malware Persistence InvestigationB

Systematically investigate all persistence mechanisms on Windows and

ai-agentspythongo
0
3
Performing Malware Triage With YaraA

'Performs rapid malware triage and classification using YARA rules that

ai-agentspythongo
0
3
Performing Memory Forensics With Volatility3B

Analyze volatile memory (RAM) dumps using the Volatility 3 framework

ai-agentspythongo
0
3
Performing Mobile Device Forensics With CellebriteA

Acquire and analyze mobile device data using Cellebrite UFED Touch/4PC, UFED Physical Analyzer, and open-source alternatives (ALEAPP, iLEAPP, MEAT, libimobiledevice) to extract communications, call logs, location data, and application artifacts. Use when extracting or recovering deleted evidence from smartphones or tablets during criminal, corporate, or employee-misuse investigations.

ai-agentspythonrust
0
3
Performing Network Forensics With WiresharkB

Capture and analyze network traffic using Wireshark and tshark to reconstruct network events from PCAP/PCAPNG files, extract transferred files and credentials, and identify command-and-control communications. Use when analyzing captured traffic from a security incident, reconstructing data exfiltration, or finding network indicators of compromise during malware analysis.

ai-agentspythonrust
0
3
Performing Network Packet Capture AnalysisA

Perform forensic analysis of network packet captures (PCAP/PCAPNG) using Wireshark, tshark, and tcpdump to reconstruct network communications, extract transferred files, identify malicious traffic, and establish evidence of data exfiltration or command-and-control activity. Use when a PCAP file from an incident needs to be examined to prove lateral movement, malware delivery, or unauthorized access.

ai-agentspythonbash
0
3
Performing Network Traffic Analysis With TsharkA

Automate network traffic analysis using tshark (Wireshark CLI) and pyshark to compute protocol distribution statistics, detect suspicious flows such as port scans and beaconing, extract IOCs (IPs, domains, URLs), and identify DNS tunneling patterns from PCAP files. Use when scripted or repeatable analysis of packet captures is needed rather than interactive inspection.

ai-agentspythontesting
0
3
Performing Network Traffic Analysis With ZeekA

Deploy Zeek (formerly Bro) as a passive network security monitor to generate structured logs of protocol metadata (HTTP, DNS, TLS, SSH, SMTP, FTP, and more), write custom detection scripts, and integrate outputs with SIEM platforms. Use when standing up continuous, high-fidelity network traffic monitoring for threat detection, anomaly identification, or forensic investigation beyond what raw PCAP analysis provides.

ai-agentsgobash
0
3
Performing Nist Csf Maturity AssessmentA

Conduct a NIST Cybersecurity Framework (CSF) 2.0 maturity assessment across the six core Functions (Govern, Identify, Protect, Detect, Respond, Recover), scoring organizational posture against the four Implementation Tiers (Partial, Risk-Informed, Repeatable, Adaptive) and producing an improvement roadmap. Use when benchmarking an organization's cybersecurity program maturity or preparing a CSF-based gap analysis and remediation plan.

ai-agentsgoreact
0
3
Performing Oauth Scope Minimization ReviewA

'Performs OAuth 2.0 scope minimization review to identify over-permissioned

ai-agentspythonrust
0
3
Performing Oil Gas Cybersecurity AssessmentA

Conduct cybersecurity assessments of upstream, midstream, and downstream oil and gas operations, covering pipeline SCADA, refinery DCS, safety instrumented systems, and remote wellhead RTUs, and evaluate compliance with API 1164, TSA Pipeline Security Directives, and IEC 62443. Use when assessing a refinery, pipeline, or production facility or preparing for TSA/API compliance audits; not for IT-only or purely physical-security assessments.

ai-agentspythonrust
0
3
Performing Osint With SpiderfootA

Automate OSINT collection with the SpiderFoot REST API and CLI (sf.py/spiderfoot-cli) across 200+ modules, selecting scan modes (footprint, investigate, passive) and parsing results for domains, IPs, emails, leaked credentials, and DNS records into a target intelligence profile. Use when mapping an organization's attack surface or profiling a target for threat intelligence.

ai-agentspythonrust
0
3
Performing Ot Vulnerability Assessment With ClarotyA

Perform OT vulnerability assessments using the Claroty xDome platform for asset discovery, risk scoring, and vulnerability correlation, combining passive traffic-based identification and active safe device querying with CVE/ICS-CERT advisory correlation for remediation prioritization. Use for scheduled IEC 62443 or NERC CIP OT vulnerability assessments, initial xDome deployment, or generating CIP-010-4 compliance evidence; not for active PLC scanning or penetration testing.

ai-agentspythongo
0
3
Performing Paste Site Monitoring For CredentialsA

Monitor paste sites like Pastebin and GitHub Gists for leaked credentials,

ai-agentspythongo
0
3
Performing Phishing Simulation With GophishA

Deploy and run authorized phishing awareness campaigns with GoPhish, covering admin panel setup, SMTP sending profiles, email template and landing page creation, target user groups, and campaign reporting to measure click and credential-submission rates. Use when planning or executing a phishing simulation for employee security-awareness testing or measuring susceptibility to social engineering.

ai-agentspythongo
0
3