AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Quellsprache: Englisch
Menü
Skills in diesem Repository
SkillsMP hat 2.079 Skills aus a5c-ai/babysitter gesammelt. Öffne einen Skill, um Quelle und Details zu prüfen.
a5c-ai/babysitterEs werden 40 von 2.079 gesammelten Skills angezeigt.
AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Quellsprache: Englisch
Azure security configuration scanning and hardening using Azure Security Center, Azure Policy, and ScoutSuite
Quellsprache: Englisch
Automated evidence collection across compliance frameworks from cloud providers, identity systems, and security tools
Quellsprache: Englisch
Container image and Kubernetes security scanning for CVEs, misconfigurations, and compliance
Quellsprache: Englisch
Cryptographic implementation analysis and validation for encryption algorithms, key sizes, and certificate management
Quellsprache: Englisch
Dynamic Application Security Testing execution and management. Configure and execute OWASP ZAP and Nuclei scans, run authenticated scanning, manage scan policies and scope, correlate findings with SAST results, and generate comprehensive vulnerability reports.
Quellsprache: Englisch
GCP security configuration scanning and hardening using Security Command Center, Forseti, and ScoutSuite
Quellsprache: Englisch
GDPR compliance assessment and automation for data mapping, consent management, DSAR handling, and privacy impact assessments
Quellsprache: Englisch
Git diff forensics for surfacing and classifying code changes for trojan detection
Quellsprache: Englisch
HIPAA security and privacy compliance automation for ePHI protection, safeguards assessment, and audit preparation
Quellsprache: Englisch
Byte-level Unicode homoglyph detection for identifying invisible character substitutions in code
Quellsprache: Englisch
Infrastructure as Code security scanning and policy enforcement for Terraform, CloudFormation, Kubernetes, and Pulumi
Quellsprache: Englisch
Cryptographic key lifecycle management orchestration including generation, rotation, and destruction across key management systems
Quellsprache: Englisch
Unified cloud security posture management across AWS, Azure, and GCP with normalized metrics and CIS benchmark comparison
Quellsprache: Englisch
Automated OWASP Top 10 vulnerability detection and assessment. Run OWASP ZAP automated scans, detect injection vulnerabilities, identify broken authentication patterns, check for sensitive data exposure, analyze security misconfigurations, and generate…
Quellsprache: Englisch
PCI DSS compliance assessment and reporting for cardholder data protection, SAQ automation, and ASV scan orchestration
Quellsprache: Englisch
Phishing simulation campaign execution and analysis for security awareness assessment
Quellsprache: Englisch
Detect secrets, credentials, and sensitive data in code and configurations. Scan git history for secrets, detect API keys, tokens, passwords, check environment files, monitor CI/CD logs for exposure, generate remediation steps, and track secret rotation…
Quellsprache: Englisch
Developer security training and assessment for secure coding practices and vulnerability prevention
Quellsprache: Englisch
LLM-powered semantic analysis of code diffs to detect business-logic trojans
Quellsprache: Englisch
SOC 2 Trust Services Criteria compliance automation for evidence collection, control mapping, and audit preparation
Quellsprache: Englisch
Continuous vendor security monitoring for security ratings, breach notifications, and risk change detection
Quellsprache: Englisch
Automated vendor security assessment through questionnaire generation, response parsing, and risk scoring
Quellsprache: Englisch
AI/ML model security testing and adversarial research capabilities. Generate adversarial examples, test model robustness, perform model extraction attacks, test for data poisoning, analyze model fairness, and support ART framework integration.
Quellsprache: Englisch
Advanced binary exploitation and mitigation bypass
Quellsprache: Englisch
Web application security testing with Burp Suite integration
Quellsprache: Englisch
Multi-cloud security assessment and penetration testing capabilities. Execute Prowler/ScoutSuite assessments, analyze IAM policies, identify cloud misconfigurations, test permissions, and enumerate cloud resources across AWS/GCP/Azure.
Quellsprache: Englisch
CVE and CWE database querying and management
Quellsprache: Englisch
Advanced debugging integration for vulnerability research
Quellsprache: Englisch
Comprehensive fuzzing operations with AFL++, libFuzzer, and OSS-Fuzz integration
Quellsprache: Englisch
Deep integration with Ghidra and IDA Pro for binary analysis and reverse engineering
Quellsprache: Englisch
Hardware and embedded security research capabilities. Interface with JTAG debuggers, analyze SPI/I2C communications, dump and analyze firmware, support fault injection, side-channel analysis, and hardware exploitation research.
Quellsprache: Englisch
Digital forensics and incident response capabilities. Analyze memory dumps with Volatility, parse filesystem artifacts, extract browser forensics, analyze Windows event logs, create forensic timelines, recover deleted files, and generate forensic reports.
Quellsprache: Englisch
MITRE ATT&CK framework mapping and analysis
Quellsprache: Englisch
Android and iOS application security testing
Quellsprache: Englisch
Offensive security tools and techniques integration
Quellsprache: Englisch
Network protocol capture, analysis, and fuzzing capabilities
Quellsprache: Englisch
Exploit development automation using pwntools framework
Quellsprache: Englisch
Isolated analysis environment management for malware and exploit testing. Create and manage isolated VMs, configure Cuckoo Sandbox, set up REMnux/FlareVM environments, manage Docker-based analysis containers, and capture filesystem and process changes.
Quellsprache: Englisch
Ethereum and blockchain smart contract security analysis
Quellsprache: Englisch