All authors
oyi77 avatar

Claude Skills by oyi77

github.com/oyi77
1,345 skillsA× 1,261B× 62C× 12D× 8F× 20 installs1 views
Detecting Ntlm Relay With Event CorrelationA

Use when detect NTLM relay attacks through Windows Security Event correlation

ai-agentsgoshell
0
12
Detecting Oauth Token TheftA

Use when detecting and responding to OAuth token theft and replay attacks

ai-agentspythongo
0
12
Detecting Pass The Hash AttacksA

Use when detect Pass-the-Hash attacks by analyzing NTLM authentication

ai-agentspythongo
0
12
Detecting Pass The Ticket AttacksA

Use when detect Kerberos Pass-the-Ticket (PtT) attacks by analyzing Windows

ai-agentspythongo
0
12
Detecting Port Scanning With Fail2banA

Use when configures Fail2ban with custom filters and actions to detect

ai-agentspythongo
0
12
Detecting Privilege Escalation AttemptsA

Use when detect privilege escalation attempts including token manipulation,

ai-agentspythongo
0
12
Detecting Privilege Escalation In Kubernetes PodsB

Use when detect and prevent privilege escalation in Kubernetes pods by

ai-agentsgobash
0
12
Detecting Process Hollowing TechniqueA

Use when detect process hollowing (T1055.012) by analyzing memory-mapped

ai-agentspythongo
0
12
Detecting Process Injection TechniquesA

Use when detects and analyzes process injection techniques used by malware

ai-agentspythonrust
0
12
Detecting Qr Code Phishing With Email SecurityA

Use when detect and prevent QR code phishing (quishing) attacks that

ai-agentspythonrust
0
12
Detecting Ransomware Encryption BehaviorA

'Use when detects ransomware encryption activity in real time using entropy

ai-agentspythongo
0
12
Detecting Ransomware Precursors In NetworkA

Use when detects early-stage ransomware indicators in network traffic

ai-agentspythongo
0
12
Detecting Rdp Brute Force AttacksA

Use when detect RDP brute force attacks by analyzing Windows Security

ai-agentspythongo
0
12
Detecting Rootkit ActivityA

Use when detects rootkit presence on compromised systems by identifying

ai-agentspythongo
0
12
Detecting S3 Data Exfiltration AttemptsA

Use when detecting data exfiltration attempts from AWS S3 buckets by

ai-agentspythongo
0
12
Detecting Serverless Function InjectionA

Use when detects and prevents code injection attacks targeting serverless

ai-agentspythongo
0
12
Detecting Service Account AbuseA

Use when detect abuse of service accounts through anomalous interactive

ai-agentspythongo
0
12
Detecting Shadow Api EndpointsA

Use when discover and inventory shadow API endpoints that operate outside

ai-agentspythongo
0
12
Detecting Shadow It Cloud UsageA

Use when detect unauthorized SaaS and cloud service usage (shadow IT)

ai-agentspythongo
0
12
Detecting Spearphishing With Email GatewayA

Use when spearphishing targets specific individuals using personalized,

ai-agentsrustgo
0
12
Detecting Sql Injection Via Waf LogsA

Use when analyzing WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect

ai-agentspythongo
0
12
Detecting Stuxnet Style AttacksA

Use when this skill covers detecting sophisticated cyber-physical attacks

ai-agentspythongo
0
12
Detecting Supply Chain Attacks In Ci CdA

'Use when scans GitHub Actions workflows and CI/CD pipeline configurations

ai-agentspythongo
0
12
Detecting Suspicious Oauth Application ConsentA

Use when detect risky OAuth application consent grants in Azure AD /

ai-agentspythongo
0
12
Detecting Suspicious Powershell ExecutionA

Use when detect suspicious PowerShell execution patterns including encoded

ai-agentspythongo
0
12
Detecting T1003 Credential Dumping With EdrA

Use when detect OS credential dumping techniques targeting LSASS memory,

ai-agentspythongo
0
12
Detecting T1055 Process Injection With SysmonA

Use when detect process injection techniques (T1055) including classic

ai-agentspythongo
0
12
Detecting T1548 Abuse Elevation Control MechanismA

Use when detect abuse of elevation control mechanisms including UAC bypass,

ai-agentspythongo
0
12
Detecting Typosquatting Packages In Npm PypiA

Use when detects typosquatting attacks in npm and PyPI package registries

ai-agentspythongo
0
12
Detecting Wmi PersistenceA

Use when detect WMI event subscription persistence by analyzing Sysmon

ai-agentspythongo
0
12
Dsl Vm ReverseA

Use when reverse JavaScript-based custom DSL/VM interpreters, non-standard

ai-agentsjavascriptpython
0
12
Eradicating Malware From Infected SystemsA

Use when systematically remove malware, backdoors, and attacker persistence

ai-agentspythongo
0
12
Evaluating Threat Intelligence PlatformsA

Use when evaluates and selects Threat Intelligence Platform (TIP) products

ai-agentspythongo
0
12
Executing Active Directory Attack SimulationA

Use when executes authorized attack simulations against Active Directory

ai-agentspythonrust
0
12
Executing Phishing Simulation CampaignA

Use when executes authorized phishing simulation campaigns to assess

ai-agentspythongo
0
12
Executing Red Team Engagement PlanningA

Use when red team engagement planning is the foundational phase that

ai-agentspythongo
0
12
Executing Red Team ExerciseA

Use when executes comprehensive red team exercises that simulate real-world

ai-agentspythonrust
0
12
Exploiting Active Directory Certificate Services Esc1A

Use when exploit misconfigured Active Directory Certificate Services

ai-agentspythongo
0
12
Exploiting Active Directory With BloodhoundA

Use when bloodHound is a graph-based Active Directory reconnaissance

ai-agentspythonrust
0
12
Exploiting Api Injection VulnerabilitiesA

Use when tests APIs for injection vulnerabilities including SQL injection,

ai-agentspythongo
0
12
Exploiting Bgp Hijacking VulnerabilitiesA

Use when analyzes and simulates BGP hijacking scenarios in authorized

ai-agentspythongo
0
12
Exploiting Broken Function Level AuthorizationA

Use when tests APIs for Broken Function Level Authorization (BFLA) vulnerabilities

ai-agentspythongo
0
12
Exploiting Broken Link HijackingA

Use when discover and exploit broken link hijacking vulnerabilities by

ai-agentspythongo
0
12
Exploiting Constrained Delegation AbuseA

Use when exploit Kerberos Constrained Delegation misconfigurations in

ai-agentspythonrust
0
12
Exploiting Deeplink VulnerabilitiesA

'Use when tests and exploits deep link (URL scheme and App Link) vulnerabilities

ai-agentspythongo
0
12
Exploiting Excessive Data Exposure In ApiA

Use when tests APIs for excessive data exposure where endpoints return

ai-agentspythongo
0
12
Exploiting Http Request SmugglingA

Use when detecting and exploiting HTTP request smuggling vulnerabilities

ai-agentspythongo
0
12
Exploiting Idor VulnerabilitiesA

Use when identifying and exploiting Insecure Direct Object Reference

ai-agentspythongo
0
12
Exploiting Insecure Data Storage In MobileA

Use when identifies and exploits insecure local data storage vulnerabilities

ai-agentspythongo
0
12
Exploiting Insecure DeserializationA

Use when identifying and exploiting insecure deserialization vulnerabilities

ai-agentspythongo
0
12