All authors

Claude Skills by Undermybelt
github.com/Undermybelt1,299 skills6 installs3,292 views
- Api Key Sec Controls'Implements secure API key generation, storage, rotation, and revocation controls to protect API authenticationVotes: 0GitHub stars: 9
- Api Mass Assgnm Vuln'Tests APIs for mass assignment (auto-binding) vulnerabilities where clients can modify object properties theyVotes: 0GitHub stars: 9
- Api Rate Limiting Bypass'Tests API rate limiting implementations for bypass vulnerabilities by manipulating request headers, IP addresses,Votes: 0GitHub stars: 9
- Api Rate Limiting Thrttl'Implements API rate limiting and throttling controls using token bucket, sliding window, and fixed window algorithmsVotes: 0GitHub stars: 9
- Api Schema Vldtn SecImplement API schema validation using OpenAPI specifications and JSON Schema to enforce input/output contractsVotes: 0GitHub stars: 9
- Api Sec Owasp Top 10Systematically assessing REST and GraphQL API endpoints against the OWASP API Security Top 10 risks using automatedVotes: 0GitHub stars: 9
- Api Sec Posture MgmtImplement API Security Posture Management to continuously discover, classify, and score APIs based on risk whileVotes: 0GitHub stars: 9
- Api Sec Test 42crunchImplement comprehensive API security testing using the 42Crunch platform to perform static audit and dynamicVotes: 0GitHub stars: 9
- Api Sec Test Postman'Uses Postman to perform structured API security testing by building collections that test for OWASP API SecurityVotes: 0GitHub stars: 9
- Api Sec Test'Conducts security testing of REST, GraphQL, and gRPC APIs to identify vulnerabilities in authentication, authorization,Votes: 0GitHub stars: 9
- Api Threat Prtctn ApigeeImplement API threat protection using Google Apigee policies including JSON/XML threat protection, OAuth 2.0,Votes: 0GitHub stars: 9
- App Whtlst Applck'Implements application whitelisting using Windows AppLocker to restrict unauthorized software execution on endpoints,Votes: 0GitHub stars: 9
- Apt Group Mitre NvgtrAnalyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmapsVotes: 0GitHub stars: 9
- Aqua Sec Cntnr ScanDeploy Aqua Security's Trivy scanner to detect vulnerabilities, misconfigurations, secrets, and license issuesVotes: 0GitHub stars: 9
- Arp Psnng Net TrafficDetect and prevent ARP spoofing attacks using ARPWatch, Dynamic ARP Inspection, Wireshark analysis, and customVotes: 0GitHub stars: 9
- Arp Spoo Atta Smlt'Simulates ARP spoofing attacks in authorized lab or pentest environments using arpspoof, Ettercap, and ScapyVotes: 0GitHub stars: 9
- Asse Crtc Scor VulnDevelop and apply a multi-factor asset criticality scoring model to weight vulnerability prioritization basedVotes: 0GitHub stars: 9
- Athntc Scan OpenvasConfigure and execute authenticated vulnerability scans using OpenVAS/Greenbone Vulnerability Management withVotes: 0GitHub stars: 9
- Athntc Vuln ScanAuthenticated (credentialed) vulnerability scanning uses valid system credentials to log into target hosts andVotes: 0GitHub stars: 9
- Atmt Malw Sbms Pipe'Builds an automated malware submission and analysis pipeline that collects suspicious files from endpoints andVotes: 0GitHub stars: 9
- Atmtd Malware Ana CapeDeploy and operate CAPEv2 sandbox for automated malware analysis with behavioral monitoring, payload extraction,Votes: 0GitHub stars: 9
- Atmtng Ioc Enrchm'Automates the enrichment of raw indicators of compromise with multi-source threat intelligence context usingVotes: 0GitHub stars: 9
- Atta Patt Libr Cti RepoExtract and catalog attack patterns from cyber threat intelligence reports into a structured STIX-based libraryVotes: 0GitHub stars: 9
- Attack Path Ana Xm CyberDeploy XM Cyber's continuous exposure management platform to map attack paths, identify choke points, and prioritizeVotes: 0GitHub stars: 9
- Attack Surface Mgmt'Implements external attack surface management (EASM) using Shodan, Censys, and ProjectDiscovery tools (subfinder,Votes: 0GitHub stars: 9
- Attacks Hstrn Servers'Detect cyber attacks targeting OT historian servers (OSIsoft PI, Ignition, Wonderware) that sit at the IT/OTVotes: 0GitHub stars: 9
- Attacks Scada Systems'This skill covers detecting cyber attacks targeting Supervisory Control and Data Acquisition (SCADA) systemsVotes: 0GitHub stars: 9
- Audi Aws S3 Buck Prms'Systematically audit AWS S3 bucket permissions to identify publicly accessible buckets, overly permissive ACLs,Votes: 0GitHub stars: 9
- Audi Azur Act Dir Cfg'Auditing Microsoft Entra ID (Azure Active Directory) configuration to identify risky authentication policies,Votes: 0GitHub stars: 9
- Audi Clou Cis Bnch'This skill details how to conduct cloud security audits using Center for Internet Security benchmarks for AWS,Votes: 0GitHub stars: 9
- Audi K8s Clus Rbac'Auditing Kubernetes cluster RBAC configurations to identify overly permissive roles, wildcard permissions, dangerousVotes: 0GitHub stars: 9
- Audi Tls Cert Trns Logs'Monitors Certificate Transparency (CT) logs to detect unauthorized certificate issuance, discover subdomainsVotes: 0GitHub stars: 9
- Audi Trrf Infr Sec'Auditing Terraform infrastructure-as-code for security misconfigurations using Checkov, tfsec, Terrascan, andVotes: 0GitHub stars: 9
- Auditing Gcp Iam Prmssn'Auditing Google Cloud Platform IAM permissions to identify overly permissive bindings, primitive role usage,Votes: 0GitHub stars: 9
- Aws Acco Enmr Scou SuitPerform comprehensive security posture assessment of AWS accounts using ScoutSuite to enumerate resources, identifyVotes: 0GitHub stars: 9
- Aws Cldtrl AnmlsDetect unusual API call patterns in AWS CloudTrail logs using boto3, statistical baselining, and behavioral analysisVotes: 0GitHub stars: 9
- Aws Config Rules Cmplnc'Implementing AWS Config rules for continuous compliance monitoring of AWS resources, deploying managed and customVotes: 0GitHub stars: 9
- Aws Crdn Expo Trff'Detecting exposed AWS credentials in source code repositories, CI/CD pipelines, and configuration files usingVotes: 0GitHub stars: 9
- Aws Grdd Find AtmtAutomate AWS GuardDuty threat detection findings processing using EventBridge and Lambda to enable real-timeVotes: 0GitHub stars: 9
- Aws Iam Prmssn BndrsConfigure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilegeVotes: 0GitHub stars: 9
- Aws Iam Prmssn'This skill guides practitioners through hardening AWS Identity and Access Management configurations to enforceVotes: 0GitHub stars: 9
- Aws Iam Prvlg EscltnDetect AWS IAM privilege escalation paths using boto3 and Cloudsplaining policy analysis to identify overly permissiveVotes: 0GitHub stars: 9
- Aws Lambda Exctn Roles'Securing AWS Lambda execution roles by implementing least-privilege IAM policies, applying permission boundaries,Votes: 0GitHub stars: 9
- Aws Macie Data ClssfcImplement Amazon Macie to automatically discover, classify, and protect sensitive data in S3 buckets using machineVotes: 0GitHub stars: 9
- Aws Nitro Enclave Sec'Implements AWS Nitro Enclave-based confidential computing environments with cryptographic attestation, KMS policyVotes: 0GitHub stars: 9
- Aws Prvlg Escltn Assssm'Performing authorized privilege escalation assessments in AWS environments to identify IAM misconfigurationsVotes: 0GitHub stars: 9
- Aws Sec Hub Cmplnc'Implementing AWS Security Hub to aggregate security findings across AWS accounts, enable compliance standardsVotes: 0GitHub stars: 9
- Aws Sec Hub'This skill covers deploying AWS Security Hub as a centralized cloud security posture management platform thatVotes: 0GitHub stars: 9
- Aws Verified Access ZtnaConfigure AWS Verified Access to provide VPN-less zero trust network access to internal applications using identityVotes: 0GitHub stars: 9
- Azur Acti Logs Thre'Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrativeVotes: 0GitHub stars: 9