All authors

Claude Skills by Undermybelt
github.com/Undermybelt1,299 skills6 installs3,292 views
- Azur Ad Prvl Iden MgmtConfigure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows,Votes: 0GitHub stars: 9
- Azur Serv Prnc AbusDetect and investigate Azure service principal abuse including privilege escalation, credential compromise, adminVotes: 0GitHub stars: 9
- Azur Stor Acco MscnAudit Azure Blob and ADLS storage accounts for public access exposure, weak or long-lived SAS tokens, missingVotes: 0GitHub stars: 9
- Azure Defender Cloud'Implementing Microsoft Defender for Cloud to enable cloud security posture management, workload protection acrossVotes: 0GitHub stars: 9
- Azure Lateral MovementDetect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure SentinelVotes: 0GitHub stars: 9
- Azure Mcrsft Defender'This skill instructs security practitioners on deploying Microsoft Defender for Cloud as a cloud-native applicationVotes: 0GitHub stars: 9
- Bcnng Frqncy AnaIdentify command-and-control beaconing patterns in network traffic by applying statistical frequency analysis,Votes: 0GitHub stars: 9
- Bcnng Patterns Zeek'Performs statistical analysis of Zeek conn.log connection intervals to detect C2 beaconing patterns. Uses theVotes: 0GitHub stars: 9
- Bgp Hjckng Vulns'Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation,Votes: 0GitHub stars: 9
- Bgp Sec RpkiImplement BGP route origin validation using RPKI with Route Origin Authorizations, RPKI-to-Router protocol, andVotes: 0GitHub stars: 9
- Binary Expltt Ana'Analyze binary exploitation techniques including buffer overflows and ROP chains using pwntools Python library.Votes: 0GitHub stars: 9
- Blind Ssrf ExplttDetect and exploit blind Server-Side Request Forgery vulnerabilities using out-of-band techniques, DNS interactions,Votes: 0GitHub stars: 9
- Bltth Low Energy Attacks'Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumerationVotes: 0GitHub stars: 9
- Bltth Sec AssssmAssess Bluetooth Low Energy device security by scanning, enumerating GATT services, and detecting vulnerabilitiesVotes: 0GitHub stars: 9
- Bndwdt Thrttl Attack Sml'Simulates bandwidth throttling and network degradation attacks using tc, iperf3, and Scapy in authorized environmentsVotes: 0GitHub stars: 9
- Bootkit Rootkit Samples'Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot RecordVotes: 0GitHub stars: 9
- Br Frnscs HndsghAnalyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cachedVotes: 0GitHub stars: 9
- Br Isltn Zero Trust'Deploys remote browser isolation (RBI) as a core component of a Zero Trust architecture. Implements isolationVotes: 0GitHub stars: 9
- Brand Mon ImprsnMonitor for brand impersonation attacks across domains, social media, mobile apps, and dark web channels to detectVotes: 0GitHub stars: 9
- Brok Func Leve Auth'Tests APIs for Broken Function Level Authorization (BFLA) vulnerabilities where regular users can invoke administrativeVotes: 0GitHub stars: 9
- Brok Obje Prop Leve AuthDetect and test for OWASP API3:2023 Broken Object Property Level Authorization vulnerabilities including excessiveVotes: 0GitHub stars: 9
- Broken Access ControlSystematically testing web applications for broken access control vulnerabilities including privilege escalation,Votes: 0GitHub stars: 9
- Broken Link HjckngDiscover and exploit broken link hijacking vulnerabilities by identifying references to expired domains, decommissionedVotes: 0GitHub stars: 9
- Business Email Cmprms AiDeploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writingVotes: 0GitHub stars: 9
- Business Email CmprmsBusiness Email Compromise (BEC) is a sophisticated fraud scheme where attackers impersonate executives, vendors,Votes: 0GitHub stars: 9
- Business Logic VulnsIdentifying flaws in application business logic that allow price manipulation, workflow bypass, and privilegeVotes: 0GitHub stars: 9
- Bynd Zero Trus Acce Mode'Implementing Google''s BeyondCorp zero trust access model to eliminate implicit trust from the network perimeter,Votes: 0GitHub stars: 9
- Byps Auth Forc BrowDiscovering and accessing unprotected pages, APIs, and administrative interfaces by enumerating URLs and bypassingVotes: 0GitHub stars: 9
- C2 Infrst Sliver FrmwrkBuild and configure a resilient command-and-control infrastructure using BishopFox's Sliver C2 framework withVotes: 0GitHub stars: 9
- Campaign Attrbt EvidenceCampaign attribution analysis involves systematically evaluating evidence to determine which threat actor orVotes: 0GitHub stars: 9
- Canary Tokens Net Intrsn'Deploys DNS, HTTP, and AWS API key canary tokens across network infrastructure to detect unauthorized accessVotes: 0GitHub stars: 9
- Cbltst Mllbl C2 ProfilesParse and analyze Cobalt Strike Malleable C2 profiles using dissect.cobaltstrike and pyMalleableC2 to extractVotes: 0GitHub stars: 9
- Cert Athrty OpensslA Certificate Authority (CA) is the trust anchor in a PKI hierarchy, responsible for issuing, signing, and revokingVotes: 0GitHub stars: 9
- Cert Trnspr PhishingMonitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates,Votes: 0GitHub stars: 9
- Cisa Zero Trus Matu ModeImplement the CISA Zero Trust Maturity Model v2.0 across the five pillars of identity, devices, networks, applications,Votes: 0GitHub stars: 9
- Clckjc Attack TestTesting web applications for clickjacking vulnerabilities by assessing frame embedding controls and craftingVotes: 0GitHub stars: 9
- Cldflr Access Zero Trust'Deploying Cloudflare Access with Cloudflare Tunnel to provide zero trust access to self-hosted and private applications,Votes: 0GitHub stars: 9
- Clou Nati Thre Hunt AwsHunt for threats in AWS environments using Detective behavior graphs, entity investigation timelines, GuardDutyVotes: 0GitHub stars: 9
- Clou Stor Acce PattDetect abnormal access patterns in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCSVotes: 0GitHub stars: 9
- Clou Stor Fore AcqsPerform forensic acquisition and analysis of cloud storage services including Google Drive, OneDrive, Dropbox,Votes: 0GitHub stars: 9
- Cloud Asset Invntr CrtgrPerform comprehensive cloud asset inventory and relationship mapping using Cartography to build a Neo4j securityVotes: 0GitHub stars: 9
- Cloud Dlp Data Prtctn'Implementing Cloud Data Loss Prevention (DLP) using Amazon Macie, Azure Information Protection, and Google CloudVotes: 0GitHub stars: 9
- Cloud Frnscs Aws CldtrlPerform forensic investigation of AWS environments using CloudTrail logs to reconstruct attacker activity, identifyVotes: 0GitHub stars: 9
- Cloud Frnscs InvConduct forensic investigations in cloud environments by collecting and analyzing logs, snapshots, and metadataVotes: 0GitHub stars: 9
- Cloud Incident Cntnmn PrExecute cloud-native incident containment across AWS, Azure, and GCP by isolating compromised resources, revokingVotes: 0GitHub stars: 9
- Cloud Incident Resp'Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment,Votes: 0GitHub stars: 9
- Cloud Log Frnscs Athena'Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation.Votes: 0GitHub stars: 9
- Cloud Native Frnscs Falc'Uses Falco YAML rules for runtime threat detection in containers and Kubernetes, monitoring syscalls for shellVotes: 0GitHub stars: 9
- Cloud Pntrtn Test Pacu'Performing authorized AWS penetration testing using Pacu, the open-source AWS exploitation framework, to enumerateVotes: 0GitHub stars: 9
- Cloud Pntrtn Test'This skill outlines methodologies for performing authorized penetration testing against AWS, Azure, and GCPVotes: 0GitHub stars: 9