All authors
Undermybelt avatar

Claude Skills by Undermybelt

github.com/Undermybelt
1,299 skillsA× 1,156B× 103C× 18D× 12F× 101 installs404 views
Malw Fami Rltn MalpA

Use the Malpedia platform and API to research malware family relationships, track variant evolution, link families

devopspythongit
0
9
Malw Inci Cmmn TempA

Build structured communication templates for malware incidents including stakeholder notifications, executive

securitypythongo
0
9
Malw Sand Evas TchnA

Detect sandbox evasion techniques in malware samples by analyzing timing checks, VM artifact queries, user interaction

securitypythongo
0
9
Malware Hash Enrchm VrstA

Enrich malware file hashes using the VirusTotal API to retrieve detection rates, behavioral analysis, YARA matches,

securitypythonrust
0
9
Malware Incident RespA

'Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection

devopsrustgo
0
9
Malware Ioc ExtrctA

Malware IOC extraction is the process of analyzing malicious software to identify actionable indicators of compromise

securitypythonrust
0
9
Malware Prsstn AutorunsA

Use Sysinternals Autoruns to systematically identify and analyze malware persistence mechanisms across registry

testingpythonrust
0
9
Malware Prsstn InvB

Systematically investigate all persistence mechanisms on Windows and Linux systems to identify how malware survives

toolspythongo
0
9
Malware Tri YaraA

'Performs rapid malware triage and classification using YARA rules to match file patterns, strings, byte sequences,

devopspythongo
0
9
Man Middle Attack SmltnA

'Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept,

securitypythonrust
0
9
Mana Clou Iden OktaA

'This skill covers implementing Okta as a centralized identity provider for cloud environments, configuring SSO

securityrustgo
0
9
Managing Intel LfcyclA

'Manages the end-to-end cyber threat intelligence lifecycle from planning and direction through collection, processing,

securitygosecurity
0
9
Mass Assgnm Rest ApisA

Discover and exploit mass assignment vulnerabilities in REST APIs to escalate privileges, modify restricted fields,

securitypythongo
0
9
Mcrsgm GrdcrB

'Implementing microsegmentation using Akamai Guardicore Segmentation to map application dependencies, create

devopspythonrust
0
9
Mcrsgm Zero TrustA

Configure microsegmentation policies to enforce least-privilege workload-to-workload access using tools like

devopspythonrust
0
9
Memo Frns Lime VltlA

'Performs Linux memory acquisition using LiME (Linux Memory Extractor) kernel module and analysis with Volatility

toolspythonbash
0
9
Memory Dumps VltltyA

'Analyzes RAM memory dumps from compromised systems using the Volatility framework to identify malicious processes,

securityphpshell
0
9
Memory Frnscs Vltlt 4f44B

Analyze volatile memory dumps using Volatility 3 to extract running processes, network connections, loaded modules,

securitypythongo
0
9
Memory Frnscs Vltlty PluA

Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware

toolspythontesting
0
9
Memory Frnscs VltltyA

'Performs memory forensics analysis using Volatility 3 to extract evidence of malware execution, process injection,

securitypythonshell
0
9
Memory Prtctn Dep AslrA

'Implements memory protection mechanisms including DEP (Data Execution Prevention), ASLR (Address Space Layout

devopsshellsecurity
0
9
Mft Deleted File RecvA

Analyze the NTFS Master File Table ($MFT) to recover metadata and content of deleted files by examining MFT record

researchpythonshell
0
9
Mime Targ Atta PrtcA

Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment Protect, Impersonation Protect,

securitygogit
0
9
Mimikatz Exctn PatternsA

Detect Mimikatz execution through command-line patterns, LSASS access signatures, binary indicators, and in-memory

researchgoshell
0
9
Mitr Atta Cove MapA

Implement MITRE ATT&CK coverage mapping to identify detection gaps, prioritize rule development, and measure

devopspythongo
0
9
Mitre Attack TchnqsA

'Maps observed adversary behaviors, security alerts, and detection rules to MITRE ATT&CK techniques and sub-techniques

businesspythongo
0
9
Mlcs Pdf PeepdfA

Perform static analysis of malicious PDF documents using peepdf, pdfid, and pdf-parser to extract embedded JavaScript,

securityjavascriptpython
0
9
Mlcs Schdld Tasks SysmonA

'Detect malicious scheduled task creation and modification using Sysmon Event IDs 1 (Process Create for schtasks.exe),

devopsswiftshell
0
9
Mlcs Url UrlscanA

URLScan.io is a free service for scanning and analyzing suspicious URLs. It captures screenshots, DOM content,

developmentjavascriptpython
0
9
Mobi App Cert Pinn BypaA

'Bypasses SSL/TLS certificate pinning implementations in Android and iOS applications to enable traffic interception

developmentjavascriptrust
0
9
Mobile Api AuthB

'Tests authentication and authorization mechanisms in mobile application APIs to identify broken authentication,

securitypythongo
0
9
Mobile App MgmtA

'Implements Mobile Application Management (MAM) policies to protect enterprise data on managed and unmanaged

devopsrustbash
0
9
Mobile App Pntrtn TestA

'Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security

securityjavascriptpython
0
9
Mobile Device Frnscs CllA

Acquire and analyze mobile device data using Cellebrite UFED and open-source tools to extract communications,

developmentpythonrust
0
9
Mobile Malware BehaviorA

'Detects and analyzes malicious behavior in mobile applications through behavioral analysis, permission abuse

securityjavascriptrust
0
9
Modb Comm Injc AttaA

'Detect command injection attacks against Modbus TCP/RTU protocol in ICS environments by monitoring for unauthorized

securitypythongo
0
9
Modbus Protocol AnmlsA

'This skill covers detecting anomalies in Modbus/TCP and Modbus RTU communications in industrial control systems.

devopspythonreact
0
9
Ms17 010 Etrnlb VulnA

MS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1 implementation that allows remote code

securitypythongo
0
9
Mscnfg Azure StorageB

'Detecting misconfigured Azure Storage accounts including publicly accessible blob containers, missing encryption

securitygoshell
0
9
Mtls Zero Trust ServicesA

'Configures mutual TLS (mTLS) authentication between microservices using Python cryptography library for certificate

securitypythonrust
0
9
Multi Factor Auth DuoA

Deploy Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points.

securitypythonrust
0
9
Nerc Cip Cmplnc ControlsA

'This skill covers implementing North American Electric Reliability Corporation Critical Infrastructure Protection

securitypythongo
0
9
Net Acce Cont Cisc IseA

Deploy Cisco Identity Services Engine for 802.1X wired and wireless authentication, MAC Authentication Bypass,

securityrustbash
0
9
Net Access ControlA

'Implements 802.1X port-based network access control using RADIUS authentication, PacketFence NAC, and switch

securityrustgo
0
9
Net Anmls ZeekB

'Deploys and configures Zeek (formerly Bro) network security monitor to passively analyze network traffic, generate

devopsbashnode
0
9
Net Cove Chan MalwA

Detect and analyze covert communication channels used by malware including DNS tunneling, ICMP exfiltration,

devopspythongit
0
9
Net Dcptn HnyptsA

Deploy and manage network honeypots using OpenCanary, T-Pot, or Cowrie to detect unauthorized access, lateral

devopspythondocker
0
9
Net Flow Data NetflowA

Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing

securitypythonbash
0
9
Net Frnscs WrshrkB

Capture and analyze network traffic using Wireshark and tshark to reconstruct network events, extract artifacts,

securitypythonrust
0
9
Net Intr Prvn SuriB

Deploy and configure Suricata as a network intrusion prevention system with custom rules, Emerging Threats rulesets,

devopsrustgo
0
9