All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- T1087.003 Email AccountAdversaries may attempt to get a listing of email addresses and accounts.Votes: 0GitHub stars: 2,182
- T1087.004 Cloud AccountAdversaries may attempt to get a listing of cloud accounts.Votes: 0GitHub stars: 2,182
- T1087 Account DiscoveryAdversaries may attempt to get a listing of valid accounts, usernames, or email addresses on a system or within a compromised environment.Votes: 0GitHub stars: 2,182
- T1120 Peripheral Device DiscoveryAdversaries may attempt to gather information about attached peripheral devices and components connected to a computer system.Votes: 0GitHub stars: 2,182
- T1124 System Time DiscoveryAn adversary may gather the system time and/or time zone settings from a local or remote system.Votes: 0GitHub stars: 2,182
- T1135 Network Share DiscoveryAdversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of in...Votes: 0GitHub stars: 2,182
- T1201 Password Policy DiscoveryAdversaries may attempt to access detailed information about the password policy used within an enterprise network or cloud environment.Votes: 0GitHub stars: 2,182
- T1217 Browser Information DiscoveryAdversaries may enumerate information about browsers to learn more about compromised environments.Votes: 0GitHub stars: 2,182
- T1482 Domain Trust DiscoveryAdversaries may attempt to gather information on domain trust relationships that may be used to identify lateral movement opportunities in Windows multi-domain/forest environments.Votes: 0GitHub stars: 2,182
- T1518.001 Security Software DiscoveryAdversaries may attempt to get a listing of security software, configurations, defensive tools, and sensors that are installed on a system or in a cloud environment.Votes: 0GitHub stars: 2,182
- T1518.002 Backup Software DiscoveryAdversaries may attempt to get a listing of backup software or configurations that are installed on a system.Votes: 0GitHub stars: 2,182
- T1518 Software DiscoveryAdversaries may attempt to get a listing of software and software versions that are installed on a system or in a cloud environment.Votes: 0GitHub stars: 2,182
- T1526 Cloud Service DiscoveryAn adversary may attempt to enumerate the cloud services running on a system after gaining access.Votes: 0GitHub stars: 2,182
- T1538 Cloud Service DashboardAn adversary may use a cloud service dashboard GUI with stolen credentials to gain useful information from an operational cloud environment, such as specific services, resources, and features.Votes: 0GitHub stars: 2,182
- T1580 Cloud Infrastructure DiscoveryAn adversary may attempt to discover infrastructure and resources that are available within an infrastructure-as-a-service (IaaS) environment.Votes: 0GitHub stars: 2,182
- T1613 Container And Resource DiscoveryAdversaries may attempt to discover containers and other resources that are available within a containers environment.Votes: 0GitHub stars: 2,182
- T1614.001 System Language DiscoveryAdversaries may attempt to gather information about the system language of a victim in order to infer the geographical location of that host.Votes: 0GitHub stars: 2,182
- T1614 System Location DiscoveryAdversaries may gather information in an attempt to calculate the geographical location of a victim host.Votes: 0GitHub stars: 2,182
- T1615 Group Policy DiscoveryAdversaries may gather information on Group Policy settings to identify paths for privilege escalation, security measures applied within a domain, and to discover patterns in domain objects that ca...Votes: 0GitHub stars: 2,182
- T1619 Cloud Storage Object DiscoveryAdversaries may enumerate objects in cloud storage infrastructure.Votes: 0GitHub stars: 2,182
- T1652 Device Driver DiscoveryAdversaries may attempt to enumerate local device drivers on a victim host.Votes: 0GitHub stars: 2,182
- T1654 Log EnumerationAdversaries may enumerate system and service logs to find useful data.Votes: 0GitHub stars: 2,182
- T1673 Virtual Machine DiscoveryAn adversary may attempt to enumerate running virtual machines (VMs) after gaining access to a host or hypervisor.Votes: 0GitHub stars: 2,182
- T1680 Local Storage DiscoveryAdversaries may enumerate local drives, disks, and/or volumes and their attributes like total or free space and volume serial number.Votes: 0GitHub stars: 2,182
- T1016 System Network ConfigurationAdversaries may look for details about the network configuration and settings, such as IP and/or MAC addresses, of systems they access or through information discovery of remote systems.Votes: 0GitHub stars: 2,182
- T1049 System Network ConnectionsAdversaries may attempt to get a listing of network connections to or from the compromised system they are currently accessing or from remote systems by querying for information over the network.Votes: 0GitHub stars: 2,182
- T1021.001 Remote Desktop ProtocolAdversaries may use Valid Accounts to log into a computer using the Remote Desktop Protocol (RDP).Votes: 0GitHub stars: 2,182
- T1021.002 Smbwindows Admin SharesAdversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).Votes: 0GitHub stars: 2,182
- T1021.004 SshAdversaries may use Valid Accounts to log into remote machines using Secure Shell (SSH).Votes: 0GitHub stars: 2,182
- T1021.005 VncAdversaries may use Valid Accounts to remotely control machines using Virtual Network Computing (VNC).Votes: 0GitHub stars: 2,182
- T1021.006 Windows Remote ManagementAdversaries may use Valid Accounts to interact with remote systems using Windows Remote Management (WinRM).Votes: 0GitHub stars: 2,182
- T1021.007 Cloud ServicesAdversaries may log into accessible cloud services within a compromised environment using Valid Accounts that are synchronized with or federated to on-premises user identities.Votes: 0GitHub stars: 2,182
- T1021.008 Direct Cloud Vm ConnectionsAdversaries may leverage Valid Accounts to log directly into accessible cloud hosted compute infrastructure through cloud native methods.Votes: 0GitHub stars: 2,182
- T1021 Remote ServicesAdversaries may use Valid Accounts to log into a service that accepts remote connections, such as telnet, SSH, and VNC.Votes: 0GitHub stars: 2,182
- T1080 Taint Shared ContentAdversaries may deliver payloads to remote systems by adding content to shared storage locations, such as network drives or internal code repositories.Votes: 0GitHub stars: 2,182
- T1210 Exploitation Of Remote ServicesAdversaries may exploit remote services to gain unauthorized access to internal systems once inside of a network.Votes: 0GitHub stars: 2,182
- T1021 003 Distributed Component ObjectAdversaries may use Valid Accounts to interact with remote machines by taking advantage of Distributed Component Object Model (DCOM).Votes: 0GitHub stars: 2,182
- T1091 Replication Through RemovableAdversaries may move onto systems, possibly those on disconnected or air-gapped networks, by copying malware to removable media and taking advantage of Autorun features when the media is inserted i...Votes: 0GitHub stars: 2,182
- Windows PostexploitWindows post-exploitation — Active Directory attacks, Kerberos exploitation, ADCS abuse, lateral movement, persistence, privilege escalation, credential harvesting, stealth encoding (Base64/AMSI/obfuscate), and pwsh.exe supportVotes: 0GitHub stars: 2,182