
Claude Skills by oyi77
github.com/oyi77'Use when reverse engineer browser extensions: unpack CRX/XPIs or load
Use when chain multiple low-severity bugs into critical impact for maximum
Automated bug bounty hunting workflow — recon, hunt, validate, report.
Use when building an automated system to track adversary infrastructure
Use when extract and catalog attack patterns from cyber threat intelligence
'Use when builds an automated malware submission and analysis pipeline
Use when build and configure a resilient command-and-control infrastructure
Use when this skill covers deploying Microsoft Sentinel as a cloud-native
Use when build effective detection rules using Splunk Search Processing
'Use when builds vendor-agnostic detection rules using the Sigma rule
Use when design and implement a comprehensive DevSecOps pipeline in GitLab
Use when establish SAML 2.0 identity federation between on-premises Active
Use when builds comprehensive identity governance and lifecycle management
'Use when builds real-time incident response dashboards in Splunk, Elastic,
Use when designs and documents structured incident response playbooks
Use when build collaborative forensic incident timelines using Timesketch
Use when building an automated pipeline to defang indicators of compromise
Use when openCTI is an open-source platform for managing cyber threat
Use when build structured communication templates for malware incidents
Use when establish a structured operational process to triage, test,
Use when implementing a phishing report button in email clients with
Use when building a structured ransomware incident response playbook
Use when deploy and configure the Havoc C2 framework with teamserver,
Use when apply bottom-up and top-down role mining techniques to discover
Use when build a structured SOC escalation matrix defining severity tiers,
'Use when builds SOC performance metrics and KPI tracking dashboards
'Use when builds a structured SOC incident response playbook for ransomware
Use when build comprehensive threat actor profiles using open-source
Use when deploying MISP (Malware Information Sharing Platform) to aggregate,
Use when build a systematic threat hunt hypothesis framework that transforms
Use when building automated threat intelligence enrichment pipelines
'Use when builds automated threat intelligence feed integration pipelines
Use when building a Threat Intelligence Platform (TIP) involves deploying
Use when implement a vulnerability aging dashboard and SLA tracking system
Use when deploy DefectDojo as a centralized vulnerability management
Use when build a vulnerability exception and risk acceptance tracking
'Use when builds a structured vulnerability scanning workflow using tools
Use when discovering and accessing unprotected pages, APIs, and administrative
Use when cloud infrastructure misconfiguration hunting for AWS, GCP,
Use when systematically collects, categorizes, and distributes indicators
Use when mISP (Malware Information Sharing Platform) is an open-source
Use when collect volatile forensic evidence from a compromised system
Use when conducts security testing of REST, GraphQL, and gRPC APIs to
Use when responds to security incidents in cloud environments (AWS, Azure,
Use when this skill outlines methodologies for performing authorized
Use when perform DCSync attacks to replicate Active Directory credentials
Use when conducts external reconnaissance using Open Source Intelligence
Use when plan and execute a comprehensive red team engagement covering
Use when execute an internal network penetration test simulating an insider
Use when conduct internal Active Directory reconnaissance using BloodHound