All authors

Claude Skills by mukul975
github.com/mukul9751,113 skills6 installs1,639 views
- Detecting Service Account AbuseDetect abuse of service accounts through anomalous interactive logons, privilege escalation, lateral movement,Votes: 0GitHub stars: 31,965
- Detecting Shadow Api EndpointsDiscover and inventory shadow API endpoints that operate outside documented specifications using traffic analysis,Votes: 0GitHub stars: 31,965
- Detecting Shadow It Cloud UsageDetect unauthorized SaaS and cloud service usage (shadow IT) by analyzing proxy logs, DNS query logs, and netflowVotes: 0GitHub stars: 31,965
- Detecting Spearphishing With Email GatewaySpearphishing targets specific individuals using personalized, researched content that bypasses generic spamVotes: 0GitHub stars: 31,965
- Detecting Sql Injection Via Waf LogsAnalyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns. Parses ModSecurityVotes: 0GitHub stars: 31,965
- Detecting Stuxnet Style Attacks'This skill covers detecting sophisticated cyber-physical attacks that follow the Stuxnet attack pattern of modifyingVotes: 0GitHub stars: 31,965
- Detecting Supply Chain Attacks In Ci Cd'Scans GitHub Actions workflows and CI/CD pipeline configurations for supply chain attack vectors including unpinnedVotes: 0GitHub stars: 31,965
- Detecting Suspicious Oauth Application ConsentDetect risky OAuth application consent grants in Azure AD / Microsoft Entra ID using Microsoft Graph API, auditVotes: 0GitHub stars: 31,965
- Detecting Suspicious Powershell ExecutionDetect suspicious PowerShell execution patterns including encoded commands, download cradles, AMSI bypass attempts,Votes: 0GitHub stars: 31,965
- Detecting T1003 Credential Dumping With EdrDetect OS credential dumping techniques targeting LSASS memory, SAM database, NTDS.dit, and cached credentialsVotes: 0GitHub stars: 31,965
- Detecting T1055 Process Injection With SysmonDetect process injection techniques (T1055) including classic DLL injection, process hollowing, and APC injectionVotes: 0GitHub stars: 31,965
- Detecting T1548 Abuse Elevation Control MechanismDetect abuse of elevation control mechanisms including UAC bypass, sudo exploitation, and setuid/setgid manipulationVotes: 0GitHub stars: 31,965
- Detecting Typosquatting Packages In Npm Pypi'Detects typosquatting attacks in npm and PyPI package registries by analyzing package name similarity usingVotes: 0GitHub stars: 31,965
- Detecting Wmi PersistenceDetect WMI event subscription persistence by analyzing Sysmon Event IDs 19, 20, and 21 for malicious EventFilter,Votes: 0GitHub stars: 31,965
- Eradicating Malware From Infected SystemsSystematically remove malware, backdoors, and attacker persistence mechanisms from infected systems while ensuringVotes: 0GitHub stars: 31,965
- Evaluating Threat Intelligence Platforms'Evaluates and selects Threat Intelligence Platform (TIP) products based on organizational requirements includingVotes: 0GitHub stars: 31,965
- Executing Active Directory Attack Simulation'Executes authorized attack simulations against Active Directory environments to identify misconfigurations,Votes: 0GitHub stars: 31,965
- Executing Phishing Simulation Campaign'Executes authorized phishing simulation campaigns to assess an organization''s susceptibility to email-basedVotes: 0GitHub stars: 31,965
- Executing Red Team Engagement PlanningRed team engagement planning is the foundational phase that defines scope, objectives, rules of engagement (ROE),Votes: 0GitHub stars: 31,965
- Executing Red Team Exercise'Executes comprehensive red team exercises that simulate real-world adversary operations against an organization''sVotes: 0GitHub stars: 31,965
- Exploiting Active Directory Certificate Services Esc1Exploit misconfigured Active Directory Certificate Services (AD CS) ESC1 vulnerability to request certificatesVotes: 0GitHub stars: 31,965
- Exploiting Active Directory With BloodhoundBloodHound is a graph-based Active Directory reconnaissance tool that uses graph theory to reveal hidden andVotes: 0GitHub stars: 31,965
- Exploiting Api Injection Vulnerabilities'Tests APIs for injection vulnerabilities including SQL injection, NoSQL injection, OS command injection, LDAPVotes: 0GitHub stars: 31,965
- Exploiting Bgp Hijacking Vulnerabilities'Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation,Votes: 0GitHub stars: 31,965
- Exploiting Broken Function Level Authorization'Tests APIs for Broken Function Level Authorization (BFLA) vulnerabilities where regular users can invoke administrativeVotes: 0GitHub stars: 31,965
- Exploiting Broken Link HijackingDiscover and exploit broken link hijacking vulnerabilities by identifying references to expired domains, decommissionedVotes: 0GitHub stars: 31,965
- Exploiting Constrained Delegation AbuseExploit Kerberos Constrained Delegation misconfigurations in Active Directory to impersonate privileged usersVotes: 0GitHub stars: 31,965
- Exploiting Deeplink Vulnerabilities'Tests and exploits deep link (URL scheme and App Link) vulnerabilities in Android and iOS mobile applicationsVotes: 0GitHub stars: 31,965
- Exploiting Excessive Data Exposure In Api'Tests APIs for excessive data exposure where endpoints return more data than the client application needs, relyingVotes: 0GitHub stars: 31,965
- Exploiting Http Request SmugglingDetecting and exploiting HTTP request smuggling vulnerabilities caused by Content-Length and Transfer-EncodingVotes: 0GitHub stars: 31,965
- Exploiting Idor VulnerabilitiesIdentifying and exploiting Insecure Direct Object Reference vulnerabilities to access unauthorized resourcesVotes: 0GitHub stars: 31,965
- Exploiting Insecure Data Storage In Mobile'Identifies and exploits insecure local data storage vulnerabilities in Android and iOS mobile applications includingVotes: 0GitHub stars: 31,965
- Exploiting Insecure DeserializationIdentifying and exploiting insecure deserialization vulnerabilities in Java, PHP, Python, and .NET applicationsVotes: 0GitHub stars: 31,965
- Exploiting Ipv6 Vulnerabilities'Identifies and exploits IPv6-specific vulnerabilities including SLAAC spoofing, Router Advertisement flooding,Votes: 0GitHub stars: 31,965
- Exploiting Jwt Algorithm Confusion Attack'Exploits JWT algorithm confusion vulnerabilities where the server''s token verification library accepts theVotes: 0GitHub stars: 31,965
- Exploiting Kerberoasting With ImpacketPerform Kerberoasting attacks using Impacket's GetUserSPNs to extract and crack Kerberos TGS tickets for ActiveVotes: 0GitHub stars: 31,965
- Exploiting Mass Assignment In Rest ApisDiscover and exploit mass assignment vulnerabilities in REST APIs to escalate privileges, modify restricted fields,Votes: 0GitHub stars: 31,965
- Exploiting Ms17 010 Eternalblue VulnerabilityMS17-010 (EternalBlue) is a critical vulnerability in Microsoft's SMBv1 implementation that allows remote codeVotes: 0GitHub stars: 31,965
- Exploiting Nopac Cve 2021 42278 42287Exploit the noPac vulnerability chain (CVE-2021-42278 sAMAccountName spoofing and CVE-2021-42287 KDC PAC confusion)Votes: 0GitHub stars: 31,965
- Exploiting Nosql Injection VulnerabilitiesDetect and exploit NoSQL injection vulnerabilities in MongoDB, CouchDB, and other NoSQL databases to demonstrateVotes: 0GitHub stars: 31,965
- Exploiting Oauth MisconfigurationIdentifying and exploiting OAuth 2.0 and OpenID Connect misconfigurations including redirect URI manipulation,Votes: 0GitHub stars: 31,965
- Exploiting Prototype Pollution In JavascriptDetect and exploit JavaScript prototype pollution vulnerabilities on both client-side and server-side applicationsVotes: 0GitHub stars: 31,965
- Exploiting Race Condition VulnerabilitiesDetect and exploit race condition vulnerabilities in web applications using Turbo Intruder's single-packet attackVotes: 0GitHub stars: 31,965
- Exploiting Server Side Request ForgeryIdentifying and exploiting SSRF vulnerabilities to access internal services, cloud metadata, and restricted networkVotes: 0GitHub stars: 31,965
- Exploiting Smb Vulnerabilities With Metasploit'Identifies and exploits SMB protocol vulnerabilities using Metasploit Framework during authorized penetrationVotes: 0GitHub stars: 31,965
- Exploiting Sql Injection Vulnerabilities'Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration testsVotes: 0GitHub stars: 31,965
- Exploiting Sql Injection With SqlmapDetecting and exploiting SQL injection vulnerabilities using sqlmap to extract database contents during authorizedVotes: 0GitHub stars: 31,965
- Exploiting Template Injection VulnerabilitiesDetecting and exploiting Server-Side Template Injection (SSTI) vulnerabilities across Jinja2, Twig, Freemarker,Votes: 0GitHub stars: 31,965
- Exploiting Type Juggling VulnerabilitiesExploit PHP type juggling vulnerabilities caused by loose comparison operators to bypass authentication, circumventVotes: 0GitHub stars: 31,965
- Exploiting Vulnerabilities With Metasploit FrameworkThe Metasploit Framework is the world's most widely used penetration testing platform, maintained by Rapid7.Votes: 0GitHub stars: 31,965