Skip to main content
SCStelz
ملف منشئ GitHub

SCStelz

عرض على مستوى المستودعات لـ ٢٨ skills مجمعة عبر ١ مستودعات GitHub.

skills مجمعة
٢٨
مستودعات
١
محدث
٢٨ أغسطس ٢٠٢٦
خريطة المستودعات

أين توجد skills

أهم المستودعات حسب عدد skills المجمعة، مع حصتها من كتالوج هذا المنشئ وانتشارها المهني.

مستكشف المستودعات

المستودعات و skills الممثلة

context-memory-review
غير مصنف

Weekly review of an investigation tenant-context memory file against the most recent SOC scan reports (e.g. Threat Pulse) and the Mission Control findings log. Surfaces candidate ADD / MODIFY / FLAG changes to the context file as a propose-only review…

٢٨ أغسطس ٢٠٢٦
ai-agent-posture
غير مصنف

Audit or report on AI agent security posture across Copilot Studio, Microsoft 365 Copilot, Microsoft Foundry, and third-party agents. Triggers on "AI agent posture", "agent security audit", "Copilot Studio agents", "agent inventory", "broadly accessible…

٢٦ أغسطس ٢٠٢٦
sentinel-ingestion-report
غير مصنف

Sentinel Ingestion Report — YAML-driven PowerShell pipeline gathers all data via az monitor/az rest/Graph API, writes a deterministic scratchpad, LLM renders the report. Covers table-level volume breakdown, tier classification (Analytics/Basic/Data Lake),…

٢٦ أغسطس ٢٠٢٦
ai-agent-activity
غير مصنف

Report/investigate RUNTIME ACTIVITY of AI agents (Agent 365 / Copilot Studio / M365 Copilot / Work IQ) — agents used, tools/connectors, channels, tokens, prompt/reply content, and Prompt Shield jailbreak/XPIA verdicts. Triggers: "agent activity", "AI agent…

٢٦ أغسطس ٢٠٢٦
detection-authoring
محللو أمن المعلومات

Create, deploy, update, and manage custom detection rules in Microsoft Defender XDR via the Graph API (/beta/security/rules/detectionRules). Covers query adaptation from Sentinel KQL to custom detection format, deployment via PowerShell…

١٦ يوليو ٢٠٢٦
mitre-coverage-report
محللو أمن المعلومات

MITRE ATT&CK Coverage Report — YAML-driven PowerShell pipeline gathers analytic rule MITRE tags, custom detection techniques, SOC Optimization recommendations, and alert/incident operational data via az rest/az monitor/Graph API, writes a deterministic…

١ يوليو ٢٠٢٦
threat-intel-campaign
محللو أمن المعلومات

Turn a published threat-intelligence article into a tested threat-hunting campaign. Reads a platform-agnostic RSS/Atom feed (feed_url is a parameter — nothing vendor-specific is hardcoded), triages articles from a recent window, applies a huntability…

١١ يونيو ٢٠٢٦
threat-pulse
محللو أمن المعلومات

Recommended starting point for new users and daily SOC operations. 15-minute broad security scan across 7 domains (incidents, identity, NHI, endpoint, email, admin/cloud, exposure) producing a Threat Pulse Dashboard with drill-down recommendations to…

٢٩ مايو ٢٠٢٦
عرض 8 من أصل ٢٨ skills مجمعة.
عرض ١ من أصل ١ مستودعات
تم تحميل كل المستودعات