All authors

Claude Skills by costrict-plugins-repo
github.com/costrict-plugins-repo753 skills0 installs1,069 views
- Implementing Epss Score For Vulnerability PrioritizationQueries FIRST's Exploit Prediction Scoring System (EPSS) API to fetch exploitation-probability and percentile scores for CVEs, then uses those scores to prioritize vulnerability remediation. Use when triaging or ranking a vulnerability backlog by real-world 30-day exploitation likelihood rather than CVSS severity alone.Votes: 0GitHub stars: 67
- Implementing File Integrity Monitoring With AideConfigures AIDE (Advanced Intrusion Detection Environment) for file integrity monitoring on Linux, covering baseline database creation, scheduled integrity checks via cron, change detection, and alerting on unauthorized modifications. Use when setting up host-based file integrity monitoring, detecting unauthorized file changes, or meeting compliance requirements for FIM on Linux systems.Votes: 0GitHub stars: 67
- Implementing Fuzz Testing In Cicd With AflplusplusIntegrates AFL++ coverage-guided fuzzing into CI/CD pipelines, covering harness construction, AFL++/AddressSanitizer/CmpLog instrumentation builds, and persistent-mode fuzzing to discover memory-corruption and input-handling vulnerabilities in C/C++ code. Use when adding automated fuzz testing to a build pipeline or hunting for memory-safety bugs in native/compiled applications.Votes: 0GitHub stars: 67
- Implementing Gcp Binary AuthorizationImplements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, deploy-time policies, and signing image attestations, so that only trusted, verified images deploy to GKE and Cloud Run. Use when enforcing container supply-chain integrity or deploy-time attestation checks on GCP.Votes: 0GitHub stars: 67
- Implementing Gcp Organization Policy ConstraintsImplements GCP Organization Policy constraints via gcloud and Terraform, such as restricting external IPs, resource locations, default service accounts, and service account keys, plus dry-run testing of policy impact before enforcement. Use when enforcing security guardrails across an org's resource hierarchy, or hardening GCP config at the org, folder, or project level.Votes: 0GitHub stars: 67
- Implementing Gcp Vpc Firewall RulesImplements and audits GCP VPC firewall rules using gcloud, covering auditing overly permissive rules, creating restrictive ingress/egress rules, hierarchical firewall policies, and monitoring rule effectiveness with VPC Flow Logs. Use when deploying GCP workloads needing network access controls, auditing firewall configs, or responding to Security Command Center findings; not for Cloud Armor or DNS-based filtering.Votes: 0GitHub stars: 67
- Implementing Gdpr Data Protection ControlsImplements GDPR (EU 2016/679) technical and organizational measures — privacy by design/default, DPIAs, data subject rights management, 72-hour breach notification, and cross-border transfer mechanisms (SCCs, BCRs, adequacy). Use when designing or auditing GDPR controls, building a DPIA, handling data subject access/erasure requests, or assessing cross-border data transfers.Votes: 0GitHub stars: 67
- Implementing Gdpr Data Subject Access Request'Automates GDPR Data Subject Access Request (DSAR) workflows includingVotes: 0GitHub stars: 67
- Implementing Github Advanced Security For Code ScanningConfigures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across repositories at enterprise scale, including custom CodeQL queries and CI workflow integration. Use when setting up or tuning code scanning, rolling out CodeQL across an organization, or shifting SAST left into pull request workflows.Votes: 0GitHub stars: 67
- Implementing Google Workspace Admin Security'Hardens a Google Workspace tenant via Admin Console configuration:Votes: 0GitHub stars: 67
- Implementing Google Workspace Phishing ProtectionConfigures Google Workspace advanced phishing and malware protection settings in the Admin Console — pre-delivery message scanning, attachment protection, spoofing/impersonation detection, and Enhanced Safe Browsing enforcement. Use when hardening Gmail against phishing, spoofing, and malware, or when tuning Workspace email security policies.Votes: 0GitHub stars: 67
- Implementing Google Workspace Sso ConfigurationConfigures SAML 2.0 single sign-on for Google Workspace against a third-partyVotes: 0GitHub stars: 67
- Implementing Hardware Security Key Authentication'Builds a FIDO2/WebAuthn relying party server with the python-fido2Votes: 0GitHub stars: 67
- Implementing Hashicorp Vault Dynamic Secrets'Configures HashiCorp Vault dynamic secrets engines for database credentials,Votes: 0GitHub stars: 67
- Implementing Honeypot For Ransomware Detection'Deploys canary files, honeypot shares, and decoy systems to detect ransomwareVotes: 0GitHub stars: 67
- Implementing Honeytokens For Breach Detection'Deploys canary tokens and honeytokens (fake AWS credentials, DNS canaries,Votes: 0GitHub stars: 67
- Implementing Ics Firewall With Tofino'Deploys and configures Tofino industrial firewalls (Belden/Hirschmann)Votes: 0GitHub stars: 67
- Implementing Identity Governance With SailpointDeploys SailPoint IdentityNow or IdentityIQ for identity governance andVotes: 0GitHub stars: 67
- Implementing Identity Verification For Zero TrustImplements continuous, risk-adaptive identity verification for zero trustVotes: 0GitHub stars: 67
- Implementing Iec 62443 Security Zones'Designs security zones and conduits for industrial control systemsVotes: 0GitHub stars: 67
- Implementing Image Provenance Verification With CosignSigns and verifies container image provenance with Sigstore Cosign, covering key-based and keyless OIDC signing (Fulcio, Rekor transparency log), SLSA attestations, and enforcing signature verification through Kubernetes admission control. Use when signing images for supply chain security, setting up keyless OIDC signing, attaching attestations, or enforcing a verified-images-only policy at admission. Keywords: Cosign, Sigstore, Fulcio, Rekor, keyless, attestation, cosign verify, admission po...Votes: 0GitHub stars: 67
- Implementing Immutable Backup With Restic'Implements ransomware-resistant backups using restic with S3-compatibleVotes: 0GitHub stars: 67
- Implementing Infrastructure As Code Security Scanning'Implements automated security scanning for Infrastructure as Code usingVotes: 0GitHub stars: 67
- Implementing Iso 27001 Information Security ManagementGuides implementation of an ISO/IEC 27001:2022 Information Security Management System (ISMS) end to end: gap analysis and scoping, risk assessment methodology, Annex A control selection, Statement of Applicability (SoA) creation, and continuous improvement. Use when scoping a new ISMS, preparing for ISO 27001 certification or audit, or selecting and documenting Annex A controls for a compliance program.Votes: 0GitHub stars: 67
- Implementing Just In Time Access ProvisioningImplements Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access, covering approval workflows, automatic expiration/revocation, and PAM/IGA integration. Use when designing access approval workflows or replacing standing privileged accounts with time-bound, zero-trust-aligned grants.Votes: 0GitHub stars: 67
- Implementing Jwt Signing And VerificationImplements secure JWT (RFC 7519) signing and verification using HMAC-SHA256, RSA-PSS, ES256, and EdDSA, including token expiration, claims validation, and defenses against algorithm-confusion, none-algorithm, and key-injection attacks. Use when adding or hardening JWT-based authentication/authorization, or when auditing token verification code for common JWT vulnerabilities.Votes: 0GitHub stars: 67
- Implementing Kubernetes Network Policy With CalicoInstalls Calico as the cluster CNI and writes standard Kubernetes NetworkPolicy under it, covering default-deny baselines, policy ordering and precedence, service-account-based selectors, and verifying that policy is genuinely being enforced. Use when adopting Calico as the enforcement CNI, establishing a default-deny baseline, or debugging why a NetworkPolicy is not taking effect under Calico. Keywords: Calico CNI, NetworkPolicy, default deny, policy order, Felix, service account selector. D...Votes: 0GitHub stars: 67
- Implementing Kubernetes Pod Security StandardsChooses and applies the correct Kubernetes Pod Security Standard (Privileged, Baseline, Restricted) for a workload: what each profile forbids, how to map existing workloads to a profile, which securityContext fields must change, and how to plan a PodSecurityPolicy-to-PSS migration without breaking running pods. Use when deciding which pod security profile a namespace or workload should run under, auditing which workloads would fail Restricted, planning a PSP migration, or mapping pod security...Votes: 0GitHub stars: 67
- Implementing Llm Guardrails For Security'Implements input/output validation guardrails for LLM applications usingVotes: 0GitHub stars: 67
- Implementing Log Forwarding With FluentdConfigures Fluent Bit as an endpoint log forwarder and Fluentd as the central aggregator for centralized log collection, routing, filtering, and enrichment, covering input plugins for syslog/file-tailing/application logs and output routing to Elasticsearch, S3, and Splunk. Use when setting up centralized log aggregation across distributed infrastructure or generating Fluent Bit/Fluentd configuration files for a new log pipeline.Votes: 0GitHub stars: 67
- Implementing Log Integrity With BlockchainBuilds an append-only log integrity chain using SHA-256 hash chaining, where each entry incorporates the previous entry's hash so tampering invalidates all subsequent hashes; covers log ingestion (syslog/JSON/plain text), chain verification, pinpoint tamper detection, and checkpoint anchoring to external timestamping services. Use for tamper-evident log storage for compliance or forensics, or to verify whether log entries were altered.Votes: 0GitHub stars: 67
- Implementing Memory Protection With Dep Aslr'Implements memory protection mechanisms including DEP (Data ExecutionVotes: 0GitHub stars: 67
- Implementing Microsegmentation With Guardicore'Implements microsegmentation with Akamai Guardicore Segmentation to mapVotes: 0GitHub stars: 67
- Implementing Mimecast Targeted Attack ProtectionDeploys and configures Mimecast Targeted Threat Protection (TTP) modules -- URL Protect (click-time URL rewriting/analysis), Attachment Protect (sandbox detonation), Impersonation Protect (BEC/whaling detection), and Internal Email Protect -- for Microsoft 365 or Google Workspace. Use when defending against phishing, spearphishing, or business email compromise, or configuring TTP policies in the Mimecast Administration Console.Votes: 0GitHub stars: 67
- Implementing Mitre Attack Coverage MappingImplement MITRE ATT&CK coverage mapping to identify detection gaps, prioritizeVotes: 0GitHub stars: 67
- Implementing Mobile Application Management'Implements Mobile Application Management (MAM) policies to protect enterpriseVotes: 0GitHub stars: 67
- Implementing Mtls For Zero Trust Services'Configures mutual TLS (mTLS) authentication between microservices usingVotes: 0GitHub stars: 67
- Implementing Nerc Cip Compliance Controls'Implements NERC CIP controls for Bulk Electric System (BES) cyber systems: assetVotes: 0GitHub stars: 67
- Implementing Network Access Control With Cisco IseDeploys Cisco Identity Services Engine (ISE) as a RADIUS policy server for 802.1XVotes: 0GitHub stars: 67
- Implementing Network Access Control'Implements 802.1X port-based network access control using RADIUS authentication,Votes: 0GitHub stars: 67
- Implementing Network Deception With HoneypotsDeploy and manage network honeypots using OpenCanary, T-Pot, or CowrieVotes: 0GitHub stars: 67
- Implementing Network Intrusion Prevention With SuricataDeploys and configures Suricata as an inline network intrusion prevention system,Votes: 0GitHub stars: 67
- Implementing Network Policies For KubernetesWrites portable upstream Kubernetes NetworkPolicy YAML - default-deny-all, DNS egress, namespace and pod selector rules - that works on any conformant CNI such as Calico or Cilium. Use when segmentation must stay CNI-portable, introducing a default-deny posture, or restricting east-west traffic between pods and namespaces without depending on a vendor CRD. Keywords: NetworkPolicy, default deny, podSelector, namespaceSelector, ingress, egress, CNI portable. Do not use for Calico-specific resou...Votes: 0GitHub stars: 67
- Implementing Network Segmentation For Ot'Implements OT network segmentation using VLANs, OT-aware firewalls, data diodes,Votes: 0GitHub stars: 67
- Implementing Network Segmentation With Firewall ZonesDesigns and implements network segmentation using firewall security zones, VLANs,Votes: 0GitHub stars: 67
- Implementing Network Traffic Analysis With ArkimeQueries Arkime (formerly Moloch) full packet capture via its API to search sessions,Votes: 0GitHub stars: 67
- Implementing Network Traffic BaseliningBuilds network traffic baselines from NetFlow/IPFIX CSV or JSON exports using PythonVotes: 0GitHub stars: 67
- Implementing Next Generation Firewall With Palo AltoConfigures and deploys Palo Alto Networks next-generation firewalls end-to-end,Votes: 0GitHub stars: 67
- Implementing Opa Gatekeeper For Policy EnforcementDeploys OPA Gatekeeper via Helm as a Kubernetes admission controller and writes ConstraintTemplates with Rego plus instantiated Constraints to validate, mutate, or deny resource requests at admission time. Use when enforcing custom policy-as-code at admission on Kubernetes v1.24+, blocking non-compliant workloads before scheduling, or expressing a rule that built-in controls cannot. Keywords: Gatekeeper, ConstraintTemplate, Constraint, Rego, admission webhook, audit, mutation. Do not use for ...Votes: 0GitHub stars: 67
- Implementing Ot Incident Response Playbook'Develops OT-specific incident response playbooks using a SANS PICERL-based PythonVotes: 0GitHub stars: 67