All authors
Undermybelt avatar

Claude Skills by Undermybelt

github.com/Undermybelt
1,299 skillsA× 1,156B× 103C× 18D× 12F× 101 installs404 views
Azur Ad Prvl Iden MgmtA

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows,

securitypythonrust
0
9
Azur Serv Prnc AbusA

Detect and investigate Azure service principal abuse including privilege escalation, credential compromise, admin

securityshellazure
0
9
Azur Stor Acco MscnA

Audit Azure Blob and ADLS storage accounts for public access exposure, weak or long-lived SAS tokens, missing

devopspythonazure
0
9
Azure Defender CloudA

'Implementing Microsoft Defender for Cloud to enable cloud security posture management, workload protection across

devopsgobash
0
9
Azure Lateral MovementA

Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel

securityazureapi
0
9
Azure Mcrsft DefenderA

'This skill instructs security practitioners on deploying Microsoft Defender for Cloud as a cloud-native application

securitygoshell
0
9
Bcnng Frqncy AnaA

Identify command-and-control beaconing patterns in network traffic by applying statistical frequency analysis,

datarustgo
0
9
Bcnng Patterns ZeekA

'Performs statistical analysis of Zeek conn.log connection intervals to detect C2 beaconing patterns. Uses the

datapythontesting
0
9
Bgp Hjckng VulnsB

'Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation,

devopspythonbash
0
9
Bgp Sec RpkiD

Implement BGP route origin validation using RPKI with Route Origin Authorizations, RPKI-to-Router protocol, and

devopspythonrust
0
9
Binary Expltt AnaB

'Analyze binary exploitation techniques including buffer overflows and ROP chains using pwntools Python library.

securitypythongo
0
9
Blind Ssrf ExplttA

Detect and exploit blind Server-Side Request Forgery vulnerabilities using out-of-band techniques, DNS interactions,

toolspythongo
0
9
Bltth Low Energy AttacksA

'Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration

securitypythongo
0
9
Bltth Sec AssssmA

Assess Bluetooth Low Energy device security by scanning, enumerating GATT services, and detecting vulnerabilities

securitypythontesting
0
9
Bndwdt Thrttl Attack SmlA

'Simulates bandwidth throttling and network degradation attacks using tc, iperf3, and Scapy in authorized environments

devopspythonbash
0
9
Bootkit Rootkit SamplesA

'Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot Record

securitypythongo
0
9
Br Frnscs HndsghA

Analyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cached

securitypythongo
0
9
Br Isltn Zero TrustA

'Deploys remote browser isolation (RBI) as a core component of a Zero Trust architecture. Implements isolation

devopsjavascriptpython
0
9
Brand Mon ImprsnA

Monitor for brand impersonation attacks across domains, social media, mobile apps, and dark web channels to detect

content-marketingpythonrust
0
9
Brok Func Leve AuthA

'Tests APIs for Broken Function Level Authorization (BFLA) vulnerabilities where regular users can invoke administrative

developmentjavascriptpython
0
9
Brok Obje Prop Leve AuthA

Detect and test for OWASP API3:2023 Broken Object Property Level Authorization vulnerabilities including excessive

securitypythontesting
0
9
Broken Access ControlA

Systematically testing web applications for broken access control vulnerabilities including privilege escalation,

securityrustgo
0
9
Broken Link HjckngA

Discover and exploit broken link hijacking vulnerabilities by identifying references to expired domains, decommissioned

securityjavascriptjava
0
9
Business Email Cmprms AiA

Deploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writing

datarustgo
0
9
Business Email CmprmsA

Business Email Compromise (BEC) is a sophisticated fraud scheme where attackers impersonate executives, vendors,

businessrustgo
0
9
Business Logic VulnsA

Identifying flaws in application business logic that allow price manipulation, workflow bypass, and privilege

securitypythonrust
0
9
Bynd Zero Trus Acce ModeA

'Implementing Google''s BeyondCorp zero trust access model to eliminate implicit trust from the network perimeter,

securityrustgo
0
9
Byps Auth Forc BrowB

Discovering and accessing unprotected pages, APIs, and administrative interfaces by enumerating URLs and bypassing

securitygojava
0
9
C2 Infrst Sliver FrmwrkB

Build and configure a resilient command-and-control infrastructure using BishopFox's Sliver C2 framework with

devopspythongo
0
9
Campaign Attrbt EvidenceA

Campaign attribution analysis involves systematically evaluating evidence to determine which threat actor or

devopspythongo
0
9
Canary Tokens Net IntrsnF

'Deploys DNS, HTTP, and AWS API key canary tokens across network infrastructure to detect unauthorized access

devopspythonsql
0
9
Cbltst Mllbl C2 ProfilesA

Parse and analyze Cobalt Strike Malleable C2 profiles using dissect.cobaltstrike and pyMalleableC2 to extract

devopspythongo
0
9
Cert Athrty OpensslA

A Certificate Authority (CA) is the trust anchor in a PKI hierarchy, responsible for issuing, signing, and revoking

securitypythonrust
0
9
Cert Trnspr PhishingA

Monitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates,

devopspythonrust
0
9
Cisa Zero Trus Matu ModeA

Implement the CISA Zero Trust Maturity Model v2.0 across the five pillars of identity, devices, networks, applications,

devopspythonrust
0
9
Clckjc Attack TestA

Testing web applications for clickjacking vulnerabilities by assessing frame embedding controls and crafting

securityjavascriptpython
0
9
Cldflr Access Zero TrustB

'Deploying Cloudflare Access with Cloudflare Tunnel to provide zero trust access to self-hosted and private applications,

devopsrustgo
0
9
Clou Nati Thre Hunt AwsA

Hunt for threats in AWS environments using Detective behavior graphs, entity investigation timelines, GuardDuty

researchpythonbash
0
9
Clou Stor Acce PattA

Detect abnormal access patterns in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS

devopspythonbash
0
9
Clou Stor Fore AcqsB

Perform forensic acquisition and analysis of cloud storage services including Google Drive, OneDrive, Dropbox,

securitypythongo
0
9
Cloud Asset Invntr CrtgrB

Perform comprehensive cloud asset inventory and relationship mapping using Cartography to build a Neo4j security

devopspythonrust
0
9
Cloud Dlp Data PrtctnA

'Implementing Cloud Data Loss Prevention (DLP) using Amazon Macie, Azure Information Protection, and Google Cloud

devopspythongo
0
9
Cloud Frnscs Aws CldtrlA

Perform forensic investigation of AWS environments using CloudTrail logs to reconstruct attacker activity, identify

businesspythonsql
0
9
Cloud Frnscs InvA

Conduct forensic investigations in cloud environments by collecting and analyzing logs, snapshots, and metadata

devopspythongo
0
9
Cloud Incident Cntnmn PrA

Execute cloud-native incident containment across AWS, Azure, and GCP by isolating compromised resources, revoking

securitypythonrust
0
9
Cloud Incident RespA

'Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment,

devopsgoshell
0
9
Cloud Log Frnscs AthenaB

'Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation.

devopspythongo
0
9
Cloud Native Frnscs FalcB

'Uses Falco YAML rules for runtime threat detection in containers and Kubernetes, monitoring syscalls for shell

devopspythonshell
0
9
Cloud Pntrtn Test PacuA

'Performing authorized AWS penetration testing using Pacu, the open-source AWS exploitation framework, to enumerate

securityrustgo
0
9
Cloud Pntrtn TestA

'This skill outlines methodologies for performing authorized penetration testing against AWS, Azure, and GCP

securityrustgo
0
9