AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Idioma del texto original: inglés
Menú
Skills en este repositorio
SkillsMP ha recopilado 2079 skills de a5c-ai/babysitter. Abre una skill para revisar su origen y sus detalles.
a5c-ai/babysitterMostrando 40 de 2079 skills recopiladas.
AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Idioma del texto original: inglés
Azure security configuration scanning and hardening using Azure Security Center, Azure Policy, and ScoutSuite
Idioma del texto original: inglés
Automated evidence collection across compliance frameworks from cloud providers, identity systems, and security tools
Idioma del texto original: inglés
Container image and Kubernetes security scanning for CVEs, misconfigurations, and compliance
Idioma del texto original: inglés
Cryptographic implementation analysis and validation for encryption algorithms, key sizes, and certificate management
Idioma del texto original: inglés
Dynamic Application Security Testing execution and management. Configure and execute OWASP ZAP and Nuclei scans, run authenticated scanning, manage scan policies and scope, correlate findings with SAST results, and generate comprehensive vulnerability reports.
Idioma del texto original: inglés
GCP security configuration scanning and hardening using Security Command Center, Forseti, and ScoutSuite
Idioma del texto original: inglés
GDPR compliance assessment and automation for data mapping, consent management, DSAR handling, and privacy impact assessments
Idioma del texto original: inglés
Git diff forensics for surfacing and classifying code changes for trojan detection
Idioma del texto original: inglés
HIPAA security and privacy compliance automation for ePHI protection, safeguards assessment, and audit preparation
Idioma del texto original: inglés
Byte-level Unicode homoglyph detection for identifying invisible character substitutions in code
Idioma del texto original: inglés
Infrastructure as Code security scanning and policy enforcement for Terraform, CloudFormation, Kubernetes, and Pulumi
Idioma del texto original: inglés
Cryptographic key lifecycle management orchestration including generation, rotation, and destruction across key management systems
Idioma del texto original: inglés
Unified cloud security posture management across AWS, Azure, and GCP with normalized metrics and CIS benchmark comparison
Idioma del texto original: inglés
Automated OWASP Top 10 vulnerability detection and assessment. Run OWASP ZAP automated scans, detect injection vulnerabilities, identify broken authentication patterns, check for sensitive data exposure, analyze security misconfigurations, and generate…
Idioma del texto original: inglés
PCI DSS compliance assessment and reporting for cardholder data protection, SAQ automation, and ASV scan orchestration
Idioma del texto original: inglés
Phishing simulation campaign execution and analysis for security awareness assessment
Idioma del texto original: inglés
Detect secrets, credentials, and sensitive data in code and configurations. Scan git history for secrets, detect API keys, tokens, passwords, check environment files, monitor CI/CD logs for exposure, generate remediation steps, and track secret rotation…
Idioma del texto original: inglés
Developer security training and assessment for secure coding practices and vulnerability prevention
Idioma del texto original: inglés
LLM-powered semantic analysis of code diffs to detect business-logic trojans
Idioma del texto original: inglés
SOC 2 Trust Services Criteria compliance automation for evidence collection, control mapping, and audit preparation
Idioma del texto original: inglés
Continuous vendor security monitoring for security ratings, breach notifications, and risk change detection
Idioma del texto original: inglés
Automated vendor security assessment through questionnaire generation, response parsing, and risk scoring
Idioma del texto original: inglés
AI/ML model security testing and adversarial research capabilities. Generate adversarial examples, test model robustness, perform model extraction attacks, test for data poisoning, analyze model fairness, and support ART framework integration.
Idioma del texto original: inglés
Advanced binary exploitation and mitigation bypass
Idioma del texto original: inglés
Web application security testing with Burp Suite integration
Idioma del texto original: inglés
Multi-cloud security assessment and penetration testing capabilities. Execute Prowler/ScoutSuite assessments, analyze IAM policies, identify cloud misconfigurations, test permissions, and enumerate cloud resources across AWS/GCP/Azure.
Idioma del texto original: inglés
CVE and CWE database querying and management
Idioma del texto original: inglés
Advanced debugging integration for vulnerability research
Idioma del texto original: inglés
Comprehensive fuzzing operations with AFL++, libFuzzer, and OSS-Fuzz integration
Idioma del texto original: inglés
Deep integration with Ghidra and IDA Pro for binary analysis and reverse engineering
Idioma del texto original: inglés
Hardware and embedded security research capabilities. Interface with JTAG debuggers, analyze SPI/I2C communications, dump and analyze firmware, support fault injection, side-channel analysis, and hardware exploitation research.
Idioma del texto original: inglés
Digital forensics and incident response capabilities. Analyze memory dumps with Volatility, parse filesystem artifacts, extract browser forensics, analyze Windows event logs, create forensic timelines, recover deleted files, and generate forensic reports.
Idioma del texto original: inglés
MITRE ATT&CK framework mapping and analysis
Idioma del texto original: inglés
Android and iOS application security testing
Idioma del texto original: inglés
Offensive security tools and techniques integration
Idioma del texto original: inglés
Network protocol capture, analysis, and fuzzing capabilities
Idioma del texto original: inglés
Exploit development automation using pwntools framework
Idioma del texto original: inglés
Isolated analysis environment management for malware and exploit testing. Create and manage isolated VMs, configure Cuckoo Sandbox, set up REMnux/FlareVM environments, manage Docker-based analysis containers, and capture filesystem and process changes.
Idioma del texto original: inglés
Ethereum and blockchain smart contract security analysis
Idioma del texto original: inglés