Skip to main content
Jeden Skill in Manus ausführen
mit einem Klick
kyssta-exe
GitHub-Creator-Profil

kyssta-exe

Repository-Ansicht von 889 gesammelten Skills in 3 GitHub-Repositories.

gesammelte Skills
889
Repositories
3
aktualisiert
2026-07-21
Repository-Explorer

Repositories und repräsentative Skills

abusing-dpapi-for-credential-access
Informationssicherheitsanalysten

Extract DPAPI-protected secrets such as credentials and browser data offline and online.

2026-07-21
abusing-shadow-credentials-for-privesc
Informationssicherheitsanalysten

Take over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.

2026-07-21
achieving-cmmc-level-2-compliance
Informationssicherheitsanalysten

Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score with the DoD Assessment Methodology, manage a compliant POA&M, and ready the organization for a C3PAO assessment. Use when an organization handles Controlled Unclassified Information (CUI) under a DoD contract, when a contract carries DFARS clause 252.204-7012/7019/7020/7021, when preparing for or responding to a CMMC assessment, when computing or improving an SPRS score, when building a System Security Plan or POA&M for 800-171, or when scoping which systems are in the CUI boundary. Keywords: CMMC, CMMC Level 2, NIST 800-171, SP 800-171 Rev 2, CUI, FCI, SPRS, DFARS 7012, C3PAO, POA&M, System Security Plan, DoD Assessment Methodology, 110 controls, defense industrial base, DIB, FedRAMP equivalency.

2026-07-21
acquiring-disk-image-with-dd-and-dcfldd
Informationssicherheitsanalysten

Create forensically sound bit-for-bit disk images using dd and dcfldd while preserving evidence integrity through hash verification.

2026-07-21
analyzing-active-directory-acl-abuse
Informationssicherheitsanalysten

Detect dangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse paths

2026-07-21
analyzing-android-malware-with-apktool
Informationssicherheitsanalysten

Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source recovery, and androguard for permission analysis, manifest inspection, and suspicious API call detection.

2026-07-21
analyzing-api-gateway-access-logs
Informationssicherheitsanalysten

Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect BOLA/IDOR attacks, rate limit bypass, credential scanning, and injection attempts. Uses pandas for statistical analysis of request patterns and anomaly detection. Use when investigating API abuse or building API-specific threat detection rules.

2026-07-21
analyzing-apt-group-with-mitre-navigator
Informationssicherheitsanalysten

Analyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmaps of adversary TTPs for detection gap analysis and threat-informed defense.

2026-07-21
Zeigt die Top 8 von 886 gesammelten Skills in diesem Repository.
3 von 3 Repositories angezeigt
Alle Repositories angezeigt