Skip to main content
تشغيل أي مهارة في Manus
بنقرة واحدة
مستودع GitHub

Anthropic-Cybersecurity-Skills

يحتوي Anthropic-Cybersecurity-Skills على 817 من skills المجمعة من mukul975، مع تغطية مهنية على مستوى المستودع وصفحات skill داخل الموقع.

skills مجمعة
817
Stars
20.0k
محدث
2026-06-22
Forks
2.3k
التغطية المهنية
8 فئات مهنية · 81% مصنفة
مستكشف المستودعات

Skills في هذا المستودع

abusing-dpapi-for-credential-access
غير مصنف

Extract DPAPI-protected secrets such as credentials and browser data offline and online.

2026-06-22
abusing-shadow-credentials-for-privesc
غير مصنف

Take over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.

2026-06-22
assessing-vector-and-embedding-weaknesses
غير مصنف

Test vector stores for embedding inversion, cross-tenant leakage, and poisoning.

2026-06-22
attacking-entra-id-with-roadtools
غير مصنف

Enumerate Entra ID with ROADrecon and acquire and exchange tokens with roadtx.

2026-06-22
attacking-oauth-with-device-code-phishing
غير مصنف

Run OAuth 2.0 device-code and illicit-consent phishing against Microsoft Entra ID to steal access and refresh tokens, bypass MFA, and pivot across Microsoft 365 services.

2026-06-22
auditing-entra-id-with-aadinternals
غير مصنف

Run Microsoft Entra ID tenant reconnaissance, token acquisition and manipulation, and federation backdoor testing with the AADInternals PowerShell toolkit to validate identity-attack resilience.

2026-06-22
auditing-kubernetes-rbac-privilege-escalation
غير مصنف

Find over-permissive RBAC roles and service-account token abuse paths in Kubernetes using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess during authorized cluster security reviews.

2026-06-22
auditing-mcp-servers-for-tool-poisoning
غير مصنف

Scan Model Context Protocol servers and tool metadata for poisoning, SSRF, and unauthenticated exposure.

2026-06-22
auditing-uefi-firmware-with-chipsec
غير مصنف

Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Secure Boot variable state, dump SPI flash, and triage UEFI variables for firmware-level threats.

2026-06-22
benchmarking-kubernetes-with-kube-bench
غير مصنف

Run CIS Kubernetes Benchmark checks and remediate findings with kube-bench.

2026-06-22
building-c2-redirector-infrastructure
غير مصنف

Architect redirectors with nginx and Apache, malleable profiles, and OPSEC for resilient C2.

2026-06-22
building-super-timelines-with-plaso
غير مصنف

Generate log2timeline and Plaso super-timelines and triage them in Timesketch.

2026-06-22
coercing-authentication-with-coercer-petitpotam
غير مصنف

Trigger machine account authentication with PetitPotam (MS-EFSR) and Coercer across MS-RPRN, MS-DFSNM, and MS-FSRVP to feed NTLM relay into AD CS Web Enrollment (ESC8) and other relay targets.

2026-06-22
continuous-llm-red-teaming-with-promptfoo
غير مصنف

Wire Promptfoo and DeepTeam into CI/CD for automated regression red-teaming of LLM apps against OWASP LLM Top 10 and OWASP Agentic presets, failing the build when jailbreak or injection vulnerabilities regress.

2026-06-22
defending-llms-with-guardrails
غير مصنف

Deploy Llama Guard, NeMo Guardrails, and LLM Guard input/output scanners as runtime defenses.

2026-06-22
deploying-honeytokens-and-canarytokens
غير مصنف

Plant canarytokens and honey credentials and alert on breach.

2026-06-22
detecting-container-runtime-threats-with-falco
غير مصنف

Write and deploy Falco rules with the modern eBPF driver to detect container escape, namespace abuse, privileged mounts, and anomalous syscalls at runtime in Kubernetes and Docker.

2026-06-22
detecting-data-and-model-poisoning
غير مصنف

Identify poisoned training data and backdoored models across the ML pipeline.

2026-06-22
detecting-dependency-confusion
غير مصنف

Detect and prevent public-over-private name resolution in npm, PyPI, and Maven.

2026-06-22
detecting-entra-offensive-tools-in-graph-logs
غير مصنف

Hunt AADGraphActivityLogs and MicrosoftGraphActivityLogs in Microsoft Sentinel/Log Analytics for fingerprints of offensive Entra ID tools such as ROADtools, AADInternals, and AzureHound.

2026-06-22
detecting-indirect-prompt-injection
غير مصنف

Detect and defend against prompt injection hidden in documents, web pages, and images consumed by an agent.

2026-06-22
detecting-malicious-npm-packages
غير مصنف

Triage npm packages for install-script malware, exfiltration, and worming behavior.

2026-06-22
detecting-model-extraction-attacks
غير مصنف

Detect model stealing, model inversion, and membership inference performed through inference-API abuse by monitoring query patterns, applying output perturbation, and red-teaming your own model's extractability.

2026-06-22
detecting-secure-boot-bypass
غير مصنف

Detect bootkits such as BlackLotus and Bootkitty and Secure Boot bypass via DBX and binary checks.

2026-06-22
detecting-typosquatting-packages
غير مصنف

Flag misspelled, brandjacked, and typosquatted package names across npm, PyPI, and crates.io before installation using edit-distance, keyboard-proximity, and known-target corpus matching with typomania, OSSGadget, and pypi-scan.

2026-06-22
emulating-cloud-attacks-with-stratus-red-team
غير مصنف

Detonate granular AWS, Azure, GCP, and Kubernetes attack techniques to validate detections with Stratus Red Team.

2026-06-22
enumerating-cloud-with-cloudfox
غير مصنف

Map AWS and Azure attack paths and find exploitable misconfigurations with CloudFox.

2026-06-22
escaping-containers-to-host
غير مصنف

Exploit privileged pods, host mounts, runC CVEs, and exposed Docker sockets to break out of a container and reach the underlying host during authorized container-security assessments.

2026-06-22
exploiting-adcs-with-certipy
غير مصنف

Enumerate and exploit Active Directory Certificate Services ESC1 through ESC16 misconfigurations with Certipy, including SAN abuse, NTLM relay to web enrollment (ESC8), and golden certificate forgery.

2026-06-22
exploiting-aws-with-pacu
غير مصنف

Use Pacu modules for AWS privilege escalation, persistence, and backdooring.

2026-06-22
fleet-hunting-with-velociraptor
غير مصنف

Deploy a Velociraptor server and agents and write VQL hunts across a fleet.

2026-06-22
generating-and-analyzing-sboms
غير مصنف

Produce and ingest CycloneDX and SPDX SBOMs and correlate them to vulnerability intelligence.

2026-06-22
generating-forensic-timelines-with-hayabusa
غير مصنف

Produce Sigma-based EVTX timelines and summaries with Hayabusa.

2026-06-22
hunting-bootkits-in-efi-system-partition
غير مصنف

Baseline the EFI System Partition and hunt malicious EFI binaries (ESPecter, BlackLotus, Bootkitty, Glupteba) by mounting the ESP, hashing and verifying boot loaders, scanning with YARA, and detecting anomalous non-EFI files.

2026-06-22
hunting-evtx-with-chainsaw
غير مصنف

Perform rapid Sigma and keyword hunting across Windows event logs with Chainsaw.

2026-06-22
hunting-saas-sso-token-abuse
غير مصنف

Detect SSO and OAuth token replay and SaaS lateral movement.

2026-06-22
mapping-attack-paths-with-bloodhound-ce
غير مصنف

Collect Active Directory data with SharpHound and Entra ID data with AzureHound, ingest into BloodHound Community Edition, and analyze on-prem, cloud, and hybrid attack paths with built-in queries and custom Cypher.

2026-06-22
migrating-to-post-quantum-cryptography
غير مصنف

Inventory cryptography, deploy hybrid X25519 and ML-KEM, and prioritize harvest-now-decrypt-later data.

2026-06-22
modeling-threats-with-opencti
غير مصنف

Model threat actors, intrusion sets, campaigns, and TTPs as a STIX 2.1 knowledge graph in OpenCTI (Filigran) using the pycti Python client, connectors, and import workers for structured cyber threat intelligence.

2026-06-22
moving-laterally-with-netexec
غير مصنف

Use NetExec for SMB, WinRM, LDAP, and MSSQL enumeration, password spraying, and execution.

2026-06-22
عرض أهم 40 من أصل 817 skills مجمعة في هذا المستودع.