All authors
Undermybelt avatar

Claude Skills by Undermybelt

github.com/Undermybelt
1,299 skillsA× 1,156B× 103C× 18D× 12F× 101 installs402 views
Patch Mgmt Ot SystemsA

'This skill covers implementing a structured patch management program for OT/ICS environments where traditional

securitypythontesting
0
9
Patch Tuesday Resp ProcA

Establish a structured operational process to triage, test, and deploy Microsoft Patch Tuesday security updates

devopspythongo
0
9
Pci Dss Cmplnc ControlsA

PCI DSS 4.0.1 establishes 12 requirements across 6 control objectives for organizations that store, process, or transmit cardholder data. With PCI DSS 3.2.1 retiring April 2024 and 51 new requirements

securitygotesting
0
9
Pdf Malware PdfidA

'Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode,

securityjavascriptpython
0
9
Pfsense Firewall RulesA

'Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic shaping to enforce network segmentation,

devopsgobash
0
9
Phis Rprt Butt FlowA

Implement a phishing report button in email clients with automated triage workflow that analyzes user-reported

devopsrustgo
0
9
Phishing Incident RespA

'Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise,

securityrustgo
0
9
Phishing Smltn CampaignA

'Executes authorized phishing simulation campaigns to assess an organization''s susceptibility to email-based

securitygotesting
0
9
Phishing Smltn GophishA

GoPhish is an open-source phishing simulation framework used by security teams to conduct authorized phishing

devopspythongo
0
9
Physical Intrsn AssssmA

Conduct authorized physical penetration testing using tailgating, badge cloning, lock bypassing, and rogue device

securityrustshell
0
9
Plc Firmware Sec AnaA

'This skill covers analyzing Programmable Logic Controller (PLC) firmware for security vulnerabilities including

securitypythongo
0
9
Pod Sec Admssn CntrllA

Implement Kubernetes Pod Security Admission to enforce baseline and restricted security profiles at namespace

devopsbashnode
0
9
Poli Code Open Poli AgenA

'This skill covers implementing Open Policy Agent (OPA) and Gatekeeper for policy-as-code enforcement in Kubernetes

devopsgobash
0
9
Port Scan Fail2banA

'Configures Fail2ban with custom filters and actions to detect port scanning activity, SSH brute force attempts,

devopsrustphp
0
9
Post Inci Less LearA

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce

devopspythonbash
0
9
Post Quantum Cryptg MgrtA

'Assesses organizational readiness for post-quantum cryptography migration per NIST FIPS 203/204/205 standards.

businesspythongo
0
9
Power Grid Cybrsc AssssmA

'This skill covers conducting cybersecurity assessments of electric power grid infrastructure including generation

securitypythongo
0
9
Pref File Exct HistA

Parse Windows Prefetch files to determine program execution history including run counts, timestamps, and referenced

toolspythonshell
0
9
Prfpnt Email Sec GatewayA

Deploy and configure Proofpoint Email Protection as a secure email gateway to detect and block phishing, malware,

securitygotesting
0
9
Privacy Impact AssssmA

'Automates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices,

securitypythongo
0
9
Proc Hllwng TchnqA

Detect process hollowing (T1055.012) by analyzing memory-mapped sections, hollowed process indicators, and parent-child

securityrustgit
0
9
Proc Injctn Tchnqs 1f7aA

'Detects and analyzes process injection techniques used by malware including classic DLL injection, process hollowing,

businesspythonrust
0
9
Proc Injctn TchnqsA

Detect process injection techniques (T1055) including CreateRemoteThread, process hollowing, and DLL injection

devopspythongit
0
9
Prrtzn Vulns Cvss ScorinA

The Common Vulnerability Scoring System (CVSS) is the industry standard framework maintained by FIRST (Forum

securityapidatabase
0
9
Prsstn Mchnsm LinC

Detect and analyze Linux persistence mechanisms including crontab entries, systemd service units, LD_PRELOAD

content-marketingpythonshell
0
9
Prsstn Mchnsm WinA

Systematically hunt for adversary persistence mechanisms across Windows endpoints including registry, services,

devopsgoshell
0
9
Prsstn Wmi SbscrpA

Hunt for adversary persistence through Windows Management Instrumentation event subscriptions by monitoring WMI

businessgoshell
0
9
Prttyp Plltn JsA

Detect and exploit JavaScript prototype pollution vulnerabilities on both client-side and server-side applications

developmentjavascriptjava
0
9
Prvl Acce Mgmt CybeA

Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across

securitypythonsql
0
9
Prvlg Escltn AssssmC

'Performs privilege escalation assessments on compromised Linux and Windows systems to identify paths from low-privilege

securitypythongo
0
9
Prvlg Escltn AttemptsA

Detect privilege escalation attempts including token manipulation, UAC bypass, unquoted service paths, kernel

researchsecurity
0
9
Prvlg Escltn K8s PodsB

Detect and prevent privilege escalation in Kubernetes pods by monitoring security contexts, capabilities, and

securitygobash
0
9
Prvlg Escltn LinA

Linux privilege escalation involves elevating from a low-privilege user account to root access on a compromised

securitypythonaws
0
9
Prvlgd Access WrksttA

Design and implement Privileged Access Workstations (PAWs) with device hardening, just-in-time access, and integration

securitypythonrust
0
9
Prvlgd Account Access ReA

Conduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions,

devopsrustgo
0
9
Prvlgd Account DscvryA

Discover and inventory all privileged accounts across enterprise infrastructure including domain admins, local

securitypythontesting
0
9
Prvlgd Session MonD

'Implements privileged session monitoring and recording using Privileged Access Management (PAM) solutions, focusing

securitypythonshell
0
9
Psswrd Auth Fido2A

Deploy FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators. Covers WebAuthn

devopspythongo
0
9
Psswrd Auth Mcrsft EntraB

'Implements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for

devopsrustgo
0
9
Purdue Model Net SgmnttA

'Implement network segmentation based on the Purdue Enterprise Reference Architecture (PERA) model to separate

businesspythonrust
0
9
Purple Team Atomic TestA

'Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the

devopspythongo
0
9
Purple Team ExerciseA

'Performs purple team exercises by coordinating red team adversary emulation with blue team detection validation

businesspythonshell
0
9
Pwrs Scri Bloc LoggA

Parse Windows PowerShell Script Block Logs (Event ID 4104) from EVTX files to detect obfuscated commands, encoded

devopspythonshell
0
9
Pwrshl Empire ArtfctA

Detect PowerShell Empire framework artifacts in Windows event logs by identifying Base64 encoded launcher patterns,

devopspythongo
0
9
Qr Code Phis Emai SecA

Detect and prevent QR code phishing (quishing) attacks that bypass traditional email security by embedding malicious

testingrustgo
0
9
Race Cndtn VulnsA

Detect and exploit race condition vulnerabilities in web applications using Turbo Intruder's single-packet attack

businesspythongo
0
9
Rapid7 Insght ScanA

Deploy and configure Rapid7 InsightVM Security Console and Scan Engines for authenticated and unauthenticated

securitypythonshell
0
9
Rbac Hrdnng K8sA

Harden Kubernetes Role-Based Access Control by implementing least-privilege policies, auditing role bindings,

securitygobash
0
9
Rdp Brute Force AttacksA

Detect RDP brute force attacks by analyzing Windows Security Event Logs for failed authentication patterns (Event

securitypythongo
0
9
Red Team C2 Infrst HavocA

Deploy and configure the Havoc C2 framework with teamserver, HTTPS listeners, redirectors, and Demon agents for

devopspythonrust
0
9