All authors

Claude Skills by MustafaKemal0146
github.com/MustafaKemal0146962 skills2 installs1,412 views
- Performing Endpoint Vulnerability RemediationPerforms vulnerability remediation on endpoints by prioritizing CVEs based on risk scoring, Dağıt:ing patches, applying configuration changes, and validating fixes. Use remediating yaparken Bul:ingsVotes: 0GitHub stars: 4
- Analyzing Uefi Bootkit PersistenceAnalyzes UEFI bootkit persistence mechanisms including firmware implants in SPI flash, EFI System Partition (ESP) modifications, Secure Boot bypass techniques, and UEFI variable manipulation.Votes: 0GitHub stars: 4
- Performing Firmware Extraction With BinwalkPerforms firmware image extraction and analysis using binwalk to identify embedded filesystems, compressed archives, bootloaders, kernel images, and cryptographic material. Covers entropy analysisVotes: 0GitHub stars: 4
- Analyzing Active Directory Acl Abusetespit etmedangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse pathsVotes: 0GitHub stars: 4
- Api Key ScannerScan code repositories for exposed API keys, credentials, and sensitive data patterns. Find secrets in config files, logs, and source code.Votes: 0GitHub stars: 4
- Building Identity Federation With Saml Azure AdEstablish SAML 2.0 identity federation between on-premises Active Directory and Azure AD (Microsoft Entra ID) for seamless cross-domain authentication and SSO to cloud applications.Votes: 0GitHub stars: 4
- Building Identity Governance Lifecycle ProcessBuilds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation, role mining, access request workflows, periodic recertification, and orphanedVotes: 0GitHub stars: 4
- Building Role Mining For Rbac OptimizationApply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.Votes: 0GitHub stars: 4
- Configuring Active Directory Tiered ModelImplement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrativeVotes: 0GitHub stars: 4
- Configuring Ldap Security HardeningHarden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding,Votes: 0GitHub stars: 4
- Configuring Multi Factor Authentication With DuoDağıt: Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. bu skill covers Duo integration methods, adaptive authentication policies, deviceVotes: 0GitHub stars: 4
- Configuring Oauth2 Authorization FlowConfigure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. bu skill covers flow selection, PKCE implementation,Votes: 0GitHub stars: 4
- Detecting Anomalous Authentication Patternstespit etme (s) anomalous authentication patterns using UEBA analytics, statistical baselines, and machine learning models to identify impossible travel, credential stuffing, brute force, passwordVotes: 0GitHub stars: 4
- Implementing Aws Iam Permission BoundariesConfigure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilege limits set by the security team.Votes: 0GitHub stars: 4
- Implementing Azure Ad Privileged Identity ManagementConfigure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.Votes: 0GitHub stars: 4
- Implementing Conditional Access Policies Azure AdConfigure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based policy design, device compliance requirements, risk-based authentication,Votes: 0GitHub stars: 4
- Implementing Delinea Secret Server For PamImplements Delinea Secret Server for privileged access management (PAM) including secret vault configuration, role-based access policies, automated password rotation, session recording, andVotes: 0GitHub stars: 4
- Implementing Google Workspace Admin SecurityImplements comprehensive Google Workspace security hardening including admin console configuration, phishing-resistant MFA enforcement, DLP policies, email authentication (SPF/DKIM/DMARC),Votes: 0GitHub stars: 4
- Implementing Google Workspace Sso ConfigurationConfigure SAML 2.0 single sign-on for Google Workspace with a third-party identity provider, enabling centralized authentication and enforcing organization-wide access policies.Votes: 0GitHub stars: 4
- Implementing Hardware Security Key AuthenticationImplements FIDO2/WebAuthn hardware security key authentication including registration ceremonies, authentication flows, YubiKey enrollment, and passkey migration strategies. Builds a completeVotes: 0GitHub stars: 4
- Implementing Hashicorp Vault Dynamic SecretsImplements HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates with automatic generation, lease management, and credential rotation to eliminateVotes: 0GitHub stars: 4
- Implementing Identity Governance With SailpointDağıt: SailPoint IdentityNow or IdentityIQ for identity governance and administration. Covers identity lifecycle management, access request workflows, certification campaigns, role mining,Votes: 0GitHub stars: 4
- Implementing Just In Time Access ProvisioningImplement Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access only when needed. bu skill covers JIT architecture design, approvalVotes: 0GitHub stars: 4
- Implementing Pam For Database AccessDağıt: privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamicVotes: 0GitHub stars: 4
- Implementing Passwordless Auth With Microsoft EntraImplements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business, Microsoft Authenticator passkeys, and certificate-based authenticationVotes: 0GitHub stars: 4
- Implementing Passwordless Authentication With Fido2Dağıt: FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators. Covers WebAuthn API integration, FIDO2 server configuration, passkey enrollment, biometricVotes: 0GitHub stars: 4
- Implementing Privileged Access Management With CyberarkDağıt: CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure. bu skill covers vault architecture, session isolation,Votes: 0GitHub stars: 4
- Implementing Privileged Access WorkstationDesign and implement Privileged Access Workstations (PAWs) with device hardening, just-in-time access, and integration with CyberArk or BeyondTrust for secure administrative operations.Votes: 0GitHub stars: 4
- Implementing Privileged Session MonitoringImplements privileged session monitoring and recording using Privileged Access Management (PAM) solutions, focusing on CyberArk Privileged Session Manager (PSM) and open-source alternatives.Votes: 0GitHub stars: 4
- Implementing Saml Sso With OktaImplement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider (IdP). bu skill covers end-to-end configuration of SAML authentication flows, attribute mapping, certificate management,Votes: 0GitHub stars: 4
- Implementing Scim Provisioning With OktaImplement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.Votes: 0GitHub stars: 4
- Implementing Zero Standing Privilege With CyberarkDağıt: CyberArk Secure Cloud Erişim: eliminate standing privileges in hybrid and multi-cloud environments using just-in-time access with time, entitlement, and approval controls.Votes: 0GitHub stars: 4
- Performing Access Recertification With SaviyntConfigure and execute access recertification campaigns in Saviynt Enterprise Identity Cloud to validate user entitlements, revoke excessive access, and maintain compliance with SOX, SOC2, andVotes: 0GitHub stars: 4
- Performing Access Review And CertificationConduct systematic access reviews and certifications to ensure users have appropriate access rights aligned with their roles. bu skill covers review campaign design, reviewer selection, risk-basedVotes: 0GitHub stars: 4
- Performing Entitlement Review With Sailpoint IiqPerforms entitlement review and access certification campaigns using SailPoint IdentityIQ including manager certifications, targeted entitlement reviews, role-based access validation, SOD violationVotes: 0GitHub stars: 4
- Performing Oauth Scope Minimization ReviewPerforms OAuth 2.0 scope minimization review to identify over-permissioned third-party application integrations, excessive API scopes, unused token grants, and risky OAuth consent patternsVotes: 0GitHub stars: 4
- Performing Privileged Account Access ReviewConduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions, and enforce least privilege across PAM infrastructure.Votes: 0GitHub stars: 4
- Performing Privileged Account DiscoveryDiscover and inventory all privileged accounts across enterprise infrastructure including domain admins, local admins, service accounts, database admins, cloud IAM roles, and application adminVotes: 0GitHub stars: 4
- Performing Service Account AuditAudit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. bu skill covers discovery of service accounts in Active Directory,Votes: 0GitHub stars: 4
- Performing Service Account Credential RotationAutomate credential rotation for service accounts across Active Directory, cloud platforms, and application databases to eliminate stale secrets and reduce compromise risk.Votes: 0GitHub stars: 4
- Seclists PasswordsSecLists-based security testing skillVotes: 0GitHub stars: 4
- Seclists UsernamesSecLists-based security testing skillVotes: 0GitHub stars: 4
- Analyzing Linux Audit Logs For IntrusionUses the Linux Audit framework (auditd) with ausearch and aureport utilities to tespit etmeintrusion attempts, unauthorized access, privilege escalation, and suspicious system activity. CoversVotes: 0GitHub stars: 4
- Analyzing Network Traffic For IncidentsAnalyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration,Votes: 0GitHub stars: 4
- Analyzing Security Logs With SplunkLeverages Splunk Enterprise Security and SPL (Search Processing Language) to Araştır: security incidents through log correlation, timeline reconstruction, and anomaly Tespit. Covers WindowsVotes: 0GitHub stars: 4
- Building Incident Response PlaybookDesigns and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. CoversVotes: 0GitHub stars: 4
- Building Incident Timeline With TimesketchBuild collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.Votes: 0GitHub stars: 4
- Building Malware Incident Communication TemplateBuild structured communication templates for malware incidents including stakeholder notifications, executive briefings, technical advisories, and regulatory disclosures with severity-basedVotes: 0GitHub stars: 4
- Collecting Indicators Of CompromiseSystematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable Tespit, blocking, and threat intelligence sharing. CoversVotes: 0GitHub stars: 4
- Collecting Volatile Evidence From Compromised HostCollect volatile forensic evidence from a compromised system following order of volatility, preserving memory, network connections, processes, and system state before they are lost.Votes: 0GitHub stars: 4