All authors
Undermybelt avatar

Claude Skills by Undermybelt

github.com/Undermybelt
1,299 skillsA× 1,156B× 103C× 18D× 12F× 101 installs404 views
Cloud Sec Posture MgmtA

'Implementing Cloud Security Posture Management (CSPM) to continuously monitor multi-cloud environments for misconfigurations,

securitypythongo
0
9
Cloud Siem SentinelA

'This skill covers deploying Microsoft Sentinel as a cloud-native SIEM and SOAR platform for centralized security

devopsgoshell
0
9
Cloud Threats GrddtyA

'This skill teaches security teams how to deploy and operationalize Amazon GuardDuty for continuous threat detection

devopspythongo
0
9
Cloud Trail Log AnaA

'Implementing AWS CloudTrail log analysis for security monitoring, threat detection, and forensic investigation

devopsgobash
0
9
Cloud Vuln Posture MgmtA

Implement Cloud Security Posture Management using AWS Security Hub, Azure Defender for Cloud, and open-source

securitypythongo
0
9
Cloud Waf RulesA

'This skill covers deploying and tuning Web Application Firewall rules on AWS WAF, Azure WAF, and Cloudflare

securitybashsql
0
9
Cloud Workload PrtctnA

'Implements cloud workload protection using boto3 and google-cloud APIs for runtime security monitoring, process

devopspythongo
0
9
Cmprms Cloud CrdntlA

'Detecting compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity, impossible

securitypythonrust
0
9
Cndt Acce Poli Azur AdA

Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based

securitypythonrust
0
9
Cnstrn Dlgtn AbuseA

Exploit Kerberos Constrained Delegation misconfigurations in Active Directory to impersonate privileged users

securitypythonrust
0
9
Cntn Imag Mini Base DstrA

Reduce container attack surface by building application images on Google distroless base images that contain

securitypythonrust
0
9
Cntn Net Poli CaliA

Enforce Kubernetes network segmentation using Calico CNI network policies and global network policies to control

devopspythonrust
0
9
Cntnng Act BreachA

'Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed

securitygoshell
0
9
Cntnr Drift RuntimeA

Detect unauthorized modifications to running containers by monitoring for binary execution drift, file system

devopsgoshell
0
9
Cntnr Escape AttemptsA

Container escape is a critical attack technique where an adversary breaks out of container isolation to access

devopsbashdocker
0
9
Cntnr Escape DtctnA

'Detects container escape attempts by analyzing namespace configurations, privileged container checks, dangerous

devopspythondocker
0
9
Cntnr Escape Falco RulesD

Detect container escape attempts in real-time using Falco runtime security rules that monitor syscalls, file

devopsgobash
0
9
Cntnr Image HrdnngB

'This skill covers hardening container images by minimizing attack surface, removing unnecessary packages, implementing

devopspythongo
0
9
Cntnr Images GrypeD

Scan container images for known vulnerabilities using Anchore Grype with SBOM-based matching and configurable

devopsjavascriptpython
0
9
Cntnr Registry HarborB

Harbor is an open-source container registry that provides security features including vulnerability scanning

securityrustgo
0
9
Cntnr Registry ImagesF

'Securing container registry images by implementing vulnerability scanning with Trivy and Grype, enforcing image

devopsgobash
0
9
Cntnr Sec Scan TrivyA

Scan container images, filesystems, and Kubernetes manifests for vulnerabilities, misconfigurations, exposed

devopsdockerkubernetes
0
9
Cntnrs Trivy CicdA

'This skill covers integrating Aqua Security''s Trivy scanner into CI/CD pipelines for comprehensive container

devopspythongo
0
9
Cntns Sec Vldtn BasA

Deploy Breach and Attack Simulation tools to continuously validate security control effectiveness by safely emulating

devopspythongo
0
9
Cobalt Strike Beacon CfgA

Extract and analyze Cobalt Strike beacon configuration from PE files and memory dumps to identify C2 infrastructure,

securitypythonshell
0
9
Cobalt Strike BeaconsA

Detect Cobalt Strike beacon network activity using default TLS certificate signatures (serial 8BB00EE), JA3/JA3S/JARM

devopspythongit
0
9
Code Signing ArtfctA

'This skill covers implementing code signing for build artifacts to ensure integrity and authenticity throughout

devopsrustbash
0
9
Command Control BcnngA

Detect C2 beaconing patterns in network traffic using frequency analysis, jitter detection, and domain reputation

devopsrustgo
0
9
Command Control CmmnctA

'Analyzes malware command-and-control (C2) communication protocols to understand beacon patterns, command structures,

developmentpythonrust
0
9
Command Control Over DnsA

'Detects command-and-control (C2) communications tunneled through DNS protocol including DNS tunneling tools

devopspythongo
0
9
Cond Sec Ot Remo AcceA

'Implement secure conduit architecture for OT remote access following IEC 62443 zones and conduits model, deploying

securitypythonrust
0
9
Content Sec Policy BypasA

Analyze and bypass Content Security Policy implementations to achieve cross-site scripting by exploiting misconfigurations,

developmentjavascriptgo
0
9
Cors MscnfgA

Identifying and exploiting Cross-Origin Resource Sharing misconfigurations that allow unauthorized cross-domain

securitypythonrust
0
9
Crdntl Access LazagneA

Extract stored credentials from compromised endpoints using the LaZagne post-exploitation tool to recover passwords

securitypythongo
0
9
Crdntl Dumping TchnqsA

Detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft using Sysmon Event ID 10, Windows

securitypythondatabase
0
9
Crdntl Stuffing AttacksA

'Detects credential stuffing attacks by analyzing authentication logs for login velocity anomalies, ASN diversity,

securitypythontesting
0
9
Crrltn Sec Events QradarA

'Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks,

devopsgobash
0
9
Crrltn Threat CmpgnsA

'Correlates disparate security incidents, IOCs, and adversary behaviors across time and organizations to identify

datapythongo
0
9
Cryptg Audit AppA

A cryptographic audit systematically reviews an application's use of cryptographic primitives, protocols, and

securitypythongo
0
9
Cryptm CloudA

'This skill teaches security teams how to detect and respond to unauthorized cryptocurrency mining operations

devopspythongo
0
9
Csrf Attack SmltnA

Testing web applications for Cross-Site Request Forgery vulnerabilities by crafting forged requests that exploit

securityjavascriptpython
0
9
Cve Prrtzt Kev CatalogA

Leverage the CISA Known Exploited Vulnerabilities catalog alongside EPSS and CVSS to prioritize CVE remediation

securitypythongo
0
9
Cyber Kill ChainA

'Analyzes intrusion activity against the Lockheed Martin Cyber Kill Chain framework to identify which phases

securitygoshell
0
9
Dark Web Mon ThreatsA

Dark web monitoring involves systematically scanning Tor hidden services, underground forums, paste sites, and

securityjavascriptpython
0
9
Darkweb SourcesA

'Monitors dark web forums, marketplaces, paste sites, and ransomware leak sites for mentions of organizational

securitybashreact
0
9
Dast Owasp Zap PipelineA

'This skill covers integrating OWASP ZAP (Zed Attack Proxy) for Dynamic Application Security Testing in CI/CD

devopssqldocker
0
9
Data Exfltr IndctrA

Hunt for data exfiltration through network traffic analysis, detecting unusual data flows, DNS tunneling, cloud

devopsgodatabase
0
9
Data Loss Prvn Mcrs PurvA

'Implements data loss prevention policies using Microsoft Purview to protect sensitive information across Exchange

businesspythonrust
0
9
Data Staging Pre ExfltrA

Detect data staging activity before exfiltration by monitoring for archive creation with 7-Zip/RAR, unusual temp

testingpythondatabase
0
9
Dbfs Pwrs Obfs MalwA

Systematically deobfuscate multi-layer PowerShell malware using AST analysis, dynamic tracing, and tools like

securitypythonshell
0
9