All authors

Claude Skills by Undermybelt
github.com/Undermybelt1,299 skills6 installs3,292 views
- Red Team CovenantConduct red team operations using the Covenant C2 framework for authorized adversary simulation, including listenerVotes: 0GitHub stars: 9
- Red Team Enggmn PlanningRed team engagement planning is the foundational phase that defines scope, objectives, rules of engagement (ROE),Votes: 0GitHub stars: 9
- Red Team Exercise'Executes comprehensive red team exercises that simulate real-world adversary operations against an organization''sVotes: 0GitHub stars: 9
- Red Team Phishing GophisAutomate GoPhish phishing simulation campaigns using the Python gophish library. Creates email templates withVotes: 0GitHub stars: 9
- Registry Prsstn MchnsmHunt for registry-based persistence mechanisms including Run keys, Winlogon modifications, IFEO injection, andVotes: 0GitHub stars: 9
- Registry Run Key PrsstnDetect MITRE ATT&CK T1547.001 registry Run key persistence by analyzing Sysmon Event ID 13 logs and registryVotes: 0GitHub stars: 9
- Remote Access Ot Envrnm'This skill covers implementing secure remote access to OT/ICS environments for operators, engineers, and vendorsVotes: 0GitHub stars: 9
- Reveng Android Malware J'Reverse engineers malicious Android APK files using JADX decompiler to analyze Java/Kotlin source code, identifyVotes: 0GitHub stars: 9
- Reveng Dotnet Malware Dn'Reverse engineers .NET malware using dnSpy decompiler and debugger to analyze C#/VB.NET source code, identifyVotes: 0GitHub stars: 9
- Reveng Ios App Frida'Reverse engineers iOS applications using Frida dynamic instrumentation to understand internal logic, extractVotes: 0GitHub stars: 9
- Reveng Malware Ghidra'Reverse engineers malware binaries using NSA''s Ghidra disassembler and decompiler to understand internal logic,Votes: 0GitHub stars: 9
- Reveng Rnsmwr Encryp RouReverse engineer ransomware encryption routines to identify cryptographic algorithms, key generation flaws, andVotes: 0GitHub stars: 9
- Reveng Rust MalwareReverse engineer Rust-compiled malware using IDA Pro and Ghidra with techniques for handling non-null-terminatedVotes: 0GitHub stars: 9
- Rnsm Play Cisa Frmw'Builds a structured ransomware incident response playbook aligned with the CISA StopRansomware Guide and NISTVotes: 0GitHub stars: 9
- Rnsmwr Attack'Executes structured recovery from a ransomware incident following NIST and CISA frameworks, including environmentVotes: 0GitHub stars: 9
- Rnsmwr Backup Strategy'Designs and implements a ransomware-resilient backup strategy following the 3-2-1-1-0 methodology (3 copies,Votes: 0GitHub stars: 9
- Rnsmwr Canary Files'Deploys and monitors ransomware canary files across critical directories using Python''s watchdog library forVotes: 0GitHub stars: 9
- Rnsmwr Encryp Behavior'Detects ransomware encryption activity in real time using entropy analysis, file system I/O monitoring, andVotes: 0GitHub stars: 9
- Rnsmwr Encryp Mchnsm'Analyzes encryption algorithms, key management, and file encryption routines used by ransomware families toVotes: 0GitHub stars: 9
- Rnsmwr Kill Switch Dtctn'Detects and exploits ransomware kill switch mechanisms including mutex-based execution guards, domain-basedVotes: 0GitHub stars: 9
- Rnsmwr Leak Site IntelMonitor and analyze ransomware group data leak sites (DLS) to track victim postings, extract threat intelligenceVotes: 0GitHub stars: 9
- Rnsmwr Net IndctrIdentify ransomware network indicators including C2 beaconing patterns, TOR exit node connections, data exfiltrationVotes: 0GitHub stars: 9
- Rnsmwr Payment Wallets'Traces ransomware cryptocurrency payment flows using blockchain analysis tools such as Chainalysis Reactor,Votes: 0GitHub stars: 9
- Rnsmwr Prcrsr Net'Detects early-stage ransomware indicators in network traffic before encryption begins, including initial accessVotes: 0GitHub stars: 9
- Rnsmwr Recv PrcdrsTest and validate ransomware recovery procedures including backup restore operations, RTO/RPO target verification,Votes: 0GitHub stars: 9
- Rnsmwr Resp'Executes a structured ransomware incident response from initial detection through containment, forensic analysis,Votes: 0GitHub stars: 9
- Rnsmwr Tabletop Exercise'Plans and facilitates tabletop exercises simulating ransomware incidents to test organizational readiness, decision-making,Votes: 0GitHub stars: 9
- Role Mining Rbac OptmztApply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permissionVotes: 0GitHub stars: 9
- Rootkit Activity'Detects rootkit presence on compromised systems by identifying hidden processes, hooked system calls, modifiedVotes: 0GitHub stars: 9
- Rsa Key Pair MgmtRSA (Rivest-Shamir-Adleman) is the most widely deployed asymmetric cryptographic algorithm, used for digitalVotes: 0GitHub stars: 9
- Runtime App Self PrtctnDeploy Runtime Application Self-Protection (RASP) agents to detect and block attacks from within applicationVotes: 0GitHub stars: 9
- Runtime Sec TetragonImplement eBPF-based runtime security observability and enforcement in Kubernetes clusters using Cilium TetragonVotes: 0GitHub stars: 9
- S3 Bucket Mscnfg'This skill provides step-by-step procedures for identifying and remediating Amazon S3 bucket misconfigurationsVotes: 0GitHub stars: 9
- S3 Data Exfltr Attempts'Detecting data exfiltration attempts from AWS S3 buckets by analyzing CloudTrail S3 data events, VPC Flow Logs,Votes: 0GitHub stars: 9
- S7comm Protocol Sec Ana'Perform security analysis of Siemens S7comm and S7CommPlus protocols used by SIMATIC S7 PLCs to identify vulnerabilitiesVotes: 0GitHub stars: 9
- Saml Sso OktaImplement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider (IdP). This skill covers end-to-endVotes: 0GitHub stars: 9
- Sast Gith Acti Pipe'This skill covers integrating Static Application Security Testing (SAST) tools—CodeQL and Semgrep—into GitHubVotes: 0GitHub stars: 9
- Sbdmn Enmrtn SbfndrEnumerate subdomains of target domains using ProjectDiscovery's Subfinder passive reconnaissance tool to mapVotes: 0GitHub stars: 9
- Sbom Supply Chain Vulns'Parses Software Bill of Materials (SBOM) in CycloneDX and SPDX JSON formats to identify supply chain vulnerabilitiesVotes: 0GitHub stars: 9
- Sca Dpndnc Scan Snyk'This skill covers implementing Software Composition Analysis (SCA) using Snyk to detect vulnerable open-sourceVotes: 0GitHub stars: 9
- Scad Modb Traf Anml'Monitors Modbus TCP traffic on SCADA and ICS networks to detect anomalous function code usage, unauthorizedVotes: 0GitHub stars: 9
- Scada Hmi Sec Assssm'Perform security assessments of SCADA Human-Machine Interface (HMI) systems to identify vulnerabilities in web-basedVotes: 0GitHub stars: 9
- Schdld Task PrsstnHunt for adversary persistence via Windows Scheduled Tasks by analyzing task creation events, suspicious taskVotes: 0GitHub stars: 9
- Scim Prvsnn OktaImplement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.Votes: 0GitHub stars: 9
- Sec Alerts Splunk'Triages security alerts in Splunk Enterprise Security by classifying severity, investigating notable events,Votes: 0GitHub stars: 9
- Sec Chaos Eng'Implements security chaos engineering experiments that deliberately disable or degrade security controls toVotes: 0GitHub stars: 9
- Sec Headers AuditAuditing HTTP security headers including CSP, HSTS, X-Frame-Options, and cookie attributes to identify missingVotes: 0GitHub stars: 9
- Sec Incident Ir PlaybookClassify and prioritize security incidents using structured IR playbooks to determine severity, assign responseVotes: 0GitHub stars: 9
- Sec Incident'Performs initial triage of security incidents to determine severity, scope, and required response actions usingVotes: 0GitHub stars: 9
- Sec Infrmt Sharing Stix2'Create, validate, and share STIX 2.1 threat intelligence objects using the stix2 Python library. Covers indicators,Votes: 0GitHub stars: 9