AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Langue du texte source : anglais
Menu
Skills dans ce dépôt
SkillsMP a collecté 2 079 skills depuis a5c-ai/babysitter. Ouvrez un skill pour examiner sa source et ses détails.
a5c-ai/babysitterAffichage de 40 skills collectés sur 2 079.
AWS security configuration scanning and hardening using Prowler, Security Hub, and AWS Config
Langue du texte source : anglais
Azure security configuration scanning and hardening using Azure Security Center, Azure Policy, and ScoutSuite
Langue du texte source : anglais
Automated evidence collection across compliance frameworks from cloud providers, identity systems, and security tools
Langue du texte source : anglais
Container image and Kubernetes security scanning for CVEs, misconfigurations, and compliance
Langue du texte source : anglais
Cryptographic implementation analysis and validation for encryption algorithms, key sizes, and certificate management
Langue du texte source : anglais
Dynamic Application Security Testing execution and management. Configure and execute OWASP ZAP and Nuclei scans, run authenticated scanning, manage scan policies and scope, correlate findings with SAST results, and generate comprehensive vulnerability reports.
Langue du texte source : anglais
GCP security configuration scanning and hardening using Security Command Center, Forseti, and ScoutSuite
Langue du texte source : anglais
GDPR compliance assessment and automation for data mapping, consent management, DSAR handling, and privacy impact assessments
Langue du texte source : anglais
Git diff forensics for surfacing and classifying code changes for trojan detection
Langue du texte source : anglais
HIPAA security and privacy compliance automation for ePHI protection, safeguards assessment, and audit preparation
Langue du texte source : anglais
Byte-level Unicode homoglyph detection for identifying invisible character substitutions in code
Langue du texte source : anglais
Infrastructure as Code security scanning and policy enforcement for Terraform, CloudFormation, Kubernetes, and Pulumi
Langue du texte source : anglais
Cryptographic key lifecycle management orchestration including generation, rotation, and destruction across key management systems
Langue du texte source : anglais
Unified cloud security posture management across AWS, Azure, and GCP with normalized metrics and CIS benchmark comparison
Langue du texte source : anglais
Automated OWASP Top 10 vulnerability detection and assessment. Run OWASP ZAP automated scans, detect injection vulnerabilities, identify broken authentication patterns, check for sensitive data exposure, analyze security misconfigurations, and generate…
Langue du texte source : anglais
PCI DSS compliance assessment and reporting for cardholder data protection, SAQ automation, and ASV scan orchestration
Langue du texte source : anglais
Phishing simulation campaign execution and analysis for security awareness assessment
Langue du texte source : anglais
Detect secrets, credentials, and sensitive data in code and configurations. Scan git history for secrets, detect API keys, tokens, passwords, check environment files, monitor CI/CD logs for exposure, generate remediation steps, and track secret rotation…
Langue du texte source : anglais
Developer security training and assessment for secure coding practices and vulnerability prevention
Langue du texte source : anglais
LLM-powered semantic analysis of code diffs to detect business-logic trojans
Langue du texte source : anglais
SOC 2 Trust Services Criteria compliance automation for evidence collection, control mapping, and audit preparation
Langue du texte source : anglais
Continuous vendor security monitoring for security ratings, breach notifications, and risk change detection
Langue du texte source : anglais
Automated vendor security assessment through questionnaire generation, response parsing, and risk scoring
Langue du texte source : anglais
AI/ML model security testing and adversarial research capabilities. Generate adversarial examples, test model robustness, perform model extraction attacks, test for data poisoning, analyze model fairness, and support ART framework integration.
Langue du texte source : anglais
Advanced binary exploitation and mitigation bypass
Langue du texte source : anglais
Web application security testing with Burp Suite integration
Langue du texte source : anglais
Multi-cloud security assessment and penetration testing capabilities. Execute Prowler/ScoutSuite assessments, analyze IAM policies, identify cloud misconfigurations, test permissions, and enumerate cloud resources across AWS/GCP/Azure.
Langue du texte source : anglais
CVE and CWE database querying and management
Langue du texte source : anglais
Advanced debugging integration for vulnerability research
Langue du texte source : anglais
Comprehensive fuzzing operations with AFL++, libFuzzer, and OSS-Fuzz integration
Langue du texte source : anglais
Deep integration with Ghidra and IDA Pro for binary analysis and reverse engineering
Langue du texte source : anglais
Hardware and embedded security research capabilities. Interface with JTAG debuggers, analyze SPI/I2C communications, dump and analyze firmware, support fault injection, side-channel analysis, and hardware exploitation research.
Langue du texte source : anglais
Digital forensics and incident response capabilities. Analyze memory dumps with Volatility, parse filesystem artifacts, extract browser forensics, analyze Windows event logs, create forensic timelines, recover deleted files, and generate forensic reports.
Langue du texte source : anglais
MITRE ATT&CK framework mapping and analysis
Langue du texte source : anglais
Android and iOS application security testing
Langue du texte source : anglais
Offensive security tools and techniques integration
Langue du texte source : anglais
Network protocol capture, analysis, and fuzzing capabilities
Langue du texte source : anglais
Exploit development automation using pwntools framework
Langue du texte source : anglais
Isolated analysis environment management for malware and exploit testing. Create and manage isolated VMs, configure Cuckoo Sandbox, set up REMnux/FlareVM environments, manage Docker-based analysis containers, and capture filesystem and process changes.
Langue du texte source : anglais
Ethereum and blockchain smart contract security analysis
Langue du texte source : anglais