All authors

Claude Skills by andycungkrinx91
github.com/andycungkrinx91126 skills0 installs17 views
- Exploiting Ms17 010 Eternalblue VulnerabilityMS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1Votes: 0GitHub stars: 9
- Exploiting Nosql Injection VulnerabilitiesDetect and exploit NoSQL injection vulnerabilities in MongoDB, CouchDB,Votes: 0GitHub stars: 9
- Exploiting Prototype Pollution In JavascriptDetect and exploit JavaScript prototype pollution vulnerabilities onVotes: 0GitHub stars: 9
- Exploiting Race Condition VulnerabilitiesDetect and exploit race condition vulnerabilities in web applicationsVotes: 0GitHub stars: 9
- Exploiting Zerologon Vulnerability Cve 2020 1472Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon RemoteVotes: 0GitHub stars: 9
- Extracting Credentials From Memory DumpExtract cached credentials, password hashes, Kerberos tickets, and authenticationVotes: 0GitHub stars: 9
- Generating Forensic Timelines With HayabusaProduce Sigma-based EVTX timelines and summaries with Hayabusa.Votes: 0GitHub stars: 9
- Hunting For Cobalt Strike BeaconsDetect Cobalt Strike beacon network activity using default TLS certificateVotes: 0GitHub stars: 9
- Hunting For Data Exfiltration IndicatorsHunt for data exfiltration through network traffic analysis, detectingVotes: 0GitHub stars: 9
- Implementing Anti Phishing Training ProgramSecurity awareness training is the human layer of phishing defense. AnVotes: 0GitHub stars: 9
- Implementing Anti Ransomware Group Policy'Configures Windows Group Policy Objects (GPO) to prevent ransomwareVotes: 0GitHub stars: 9
- Implementing Azure Ad Privileged Identity ManagementConfigure Microsoft Entra Privileged Identity Management to enforce just-in-timeVotes: 0GitHub stars: 9
- Implementing Delinea Secret Server For Pam'Implements Delinea Secret Server for privileged access management (PAM)Votes: 0GitHub stars: 9
- Implementing Google Workspace Admin Security'Implements comprehensive Google Workspace security hardening includingVotes: 0GitHub stars: 9
- Implementing Google Workspace Phishing ProtectionConfigure Google Workspace advanced phishing and malware protection settingsVotes: 0GitHub stars: 9
- Implementing Google Workspace Sso ConfigurationConfigure SAML 2.0 single sign-on for Google Workspace with a third-partyVotes: 0GitHub stars: 9
- Implementing Hashicorp Vault Dynamic Secrets'Implements HashiCorp Vault dynamic secrets engines for database credentials,Votes: 0GitHub stars: 9
- Implementing Identity Governance With SailpointDeploy SailPoint IdentityNow or IdentityIQ for identity governance andVotes: 0GitHub stars: 9
- Implementing Identity Verification For Zero TrustImplement continuous identity verification for zero trust using phishing-resistantVotes: 0GitHub stars: 9
- Implementing Mimecast Targeted Attack ProtectionDeploy Mimecast Targeted Threat Protection including URL Protect, AttachmentVotes: 0GitHub stars: 9
- Implementing Pam For Database AccessDeploy privileged access management for database systems including Oracle,Votes: 0GitHub stars: 9
- Implementing Passwordless Auth With Microsoft Entra'Implements passwordless authentication using Microsoft Entra ID withVotes: 0GitHub stars: 9
- Implementing Privileged Access Management With CyberarkDeploy CyberArk Privileged Access Management to discover, vault, rotate,Votes: 0GitHub stars: 9
- Implementing Ransomware Backup Strategy'Designs and implements a ransomware-resilient backup strategy followingVotes: 0GitHub stars: 9
- Implementing Ransomware Kill Switch Detection'Detects and exploits ransomware kill switch mechanisms including mutex-basedVotes: 0GitHub stars: 9
- Implementing Saml Sso With OktaImplement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity ProviderVotes: 0GitHub stars: 9
- Implementing Scim Provisioning With OktaImplement automated user provisioning and deprovisioning using SCIM 2.0Votes: 0GitHub stars: 9
- Implementing Soar Playbook For PhishingAutomate phishing incident response using Splunk SOAR REST API to createVotes: 0GitHub stars: 9
- Implementing Zero Trust With Hashicorp BoundaryImplement HashiCorp Boundary for identity-aware zero trust infrastructureVotes: 0GitHub stars: 9
- Managing Third Party Vendor RiskBuild and run a third-party / vendor risk management (TPRM) program aligned to NIST SP 800-161 C-SCRM and NIST CSF 2.0 GV.SC: inventory and tier vendors by risk, send the right due-diligence questionnaire (SIG, CAIQ), review evidence (SOC 2, ISO 27001, pen-test reports), set contractual security and right-to-audit clauses, monitor vendors continuously, manage Nth-party / subcontractor risk, and offboard securely. Use when an organization needs to assess a new vendor before onboarding, when st...Votes: 0GitHub stars: 9
- Mapping Attack Paths With Bloodhound CeCollect Active Directory data with SharpHound and Entra ID data with AzureHound, ingest into BloodHound Community Edition, and analyze on-prem, cloud, and hybrid attack paths with built-in queries and custom Cypher.Votes: 0GitHub stars: 9
- Migrating To Post Quantum CryptographyInventory cryptography, deploy hybrid X25519 and ML-KEM, and prioritize harvest-now-decrypt-later data.Votes: 0GitHub stars: 9
- Modeling Threats With OpenctiModel threat actors, intrusion sets, campaigns, and TTPs as a STIX 2.1 knowledge graph in OpenCTI (Filigran) using the pycti Python client, connectors, and import workers for structured cyber threat intelligence.Votes: 0GitHub stars: 9
- Moving Laterally With NetexecUse NetExec for SMB, WinRM, LDAP, and MSSQL enumeration, password spraying,Votes: 0GitHub stars: 9
- Operating Havoc C2Deploy a Havoc team server with Yaotl profiles, generate evasive Demon agents with indirect syscalls and sleep obfuscation, and run post-exploitation and pivoting for adversary emulation.Votes: 0GitHub stars: 9
- Operating Sliver C2Stand up a Sliver C2 server and listeners, generate cross-platform implants and beacons, and run post-exploitation, pivoting, and BOF/.NET tooling via the armory for adversary emulation.Votes: 0GitHub stars: 9
- Operationalizing Misp Threat FeedsRun MISP, curate feeds, and auto-generate detections for Wazuh, Sigma, and Suricata.Votes: 0GitHub stars: 9
- Performing Access Recertification With SaviyntConfigure and execute access recertification campaigns in Saviynt EnterpriseVotes: 0GitHub stars: 9
- Performing Adversary In The Middle Phishing DetectionDetect and respond to Adversary-in-the-Middle (AiTM) phishing attacksVotes: 0GitHub stars: 9
- Performing Entitlement Review With Sailpoint Iiq'Performs entitlement review and access certification campaigns usingVotes: 0GitHub stars: 9
- Performing Oauth Scope Minimization Review'Performs OAuth 2.0 scope minimization review to identify over-permissionedVotes: 0GitHub stars: 9
- Performing Paste Site Monitoring For CredentialsMonitor paste sites like Pastebin and GitHub Gists for leaked credentials,Votes: 0GitHub stars: 9
- Performing Phishing Simulation With GophishGoPhish is an open-source phishing simulation framework used by securityVotes: 0GitHub stars: 9
- Performing Ransomware Response'Executes a structured ransomware incident response from initial detectionVotes: 0GitHub stars: 9
- Performing Ransomware Tabletop Exercise'Plans and facilitates tabletop exercises simulating ransomware incidentsVotes: 0GitHub stars: 9
- Performing Red Team Phishing With GophishAutomate GoPhish phishing simulation campaigns using the Python gophishVotes: 0GitHub stars: 9
- Performing Service Account Credential RotationAutomate credential rotation for service accounts across Active Directory,Votes: 0GitHub stars: 9
- Post Exploiting Microsoft Graph With GraphrunnerPerform recon, persistence, privilege escalation, and data search via the Microsoft Graph API using GraphRunner.Votes: 0GitHub stars: 9
- Recovering From Ransomware Attack'Executes structured recovery from a ransomware incident following NISTVotes: 0GitHub stars: 9
- Relaying Ntlm For Adcs Esc8Run ntlmrelayx into ADCS web enrollment to obtain a domain controller certificate via ESC8.Votes: 0GitHub stars: 9