Skip to main content

Skills dans ce dépôt

nexuslinkproductions/yuri-os - Page 12

SkillsMP a collecté 1 033 skills depuis nexuslinkproductions/yuri-os. Ouvrez un skill pour examiner sa source et ses détails.

nexuslinkproductions/yuri-os

Affichage de 40 skills collectés sur 1 033.

métier
Analystes en sécurité de l'information
description

Deploy Llama Guard, NeMo Guardrails, and LLM Guard input/output scanners as runtime defenses.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing encoding layers, eval chains, string manipulation, and control flow obfuscation to reveal the original malicious logic. Activates for requests…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Systematically deobfuscate multi-layer PowerShell malware using AST analysis, dynamic tracing, and tools like PSDecode and PowerDecode to reveal hidden payloads and C2 infrastructure.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys deception-based honeytokens in Active Directory including fake privileged accounts with AdminCount=1, fake SPNs for Kerberoasting detection (honeyroasting), decoy GPOs with cpassword traps, and fake BloodHound paths. Monitors Windows Security Event…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

>- Deploy cloud-native deception across AWS, Azure, and GCP using decoy (honey) resources whose only purpose is to generate a high-fidelity alert the instant an attacker touches them: canary IAM access keys, permission-less decoy users/roles/service…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploying Cloudflare Access with Cloudflare Tunnel to provide zero trust access to self-hosted and private applications, configuring identity-aware access policies, device posture checks, and WARP client enrollment for VPN replacement.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys canary files (honeytokens) across file systems to detect ransomware encryption activity in real time. Uses strategically placed decoy documents monitored via file integrity monitoring or OS-level watchdogs to trigger alerts when ransomware modifies or…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys and configures CrowdStrike Falcon EDR agents across enterprise endpoints to enable real-time threat detection, behavioral analysis, and automated response. Use when onboarding endpoints to EDR coverage, configuring detection policies, or integrating…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys and configures osquery for real-time endpoint monitoring using SQL-based queries to inspect running processes, open ports, installed software, and system configuration. Use when building visibility into endpoint state, threat hunting across fleet, or…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploying Palo Alto Networks Prisma Access for SASE-based zero trust network access using GlobalProtect agents, ZTNA Connectors, security policy enforcement, and integration with Strata Cloud Manager for unified security management.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys and monitors ransomware canary files across critical directories using Python''s watchdog library for real-time filesystem event detection. Places strategically named decoy files that mimic high-value targets (financial records, credentials, database…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploy a Software-Defined Perimeter using the CSA v2.0 specification with Single Packet Authorization, mutual TLS, and SDP controller/gateway configuration to enforce zero trust network access.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploy and configure Tailscale as a WireGuard-based zero trust mesh VPN with identity-aware access controls, ACLs, and exit nodes for secure peer-to-peer connectivity.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

>- Plan, run, and measure an adversary engagement operation using the MITRE Engage framework so that deployed deception is driven by strategy instead of deployed ad hoc. Covers the Engage Matrix (Prepare, Expose, Affect, Elicit, Understand), the 10-Step…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detects prompt injection attacks targeting LLM-based applications using a multi-layered defense combining regex pattern matching for known attack signatures, heuristic scoring for structural anomalies, and transformer-based classification with DeBERTa models.…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

This skill covers deploying anomaly detection systems for industrial control environments using machine learning models trained on OT network baselines, physics-based process models, and behavioral analysis of industrial protocol communications. It addresses…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detects anomalous authentication patterns using UEBA analytics, statistical baselines, and machine learning models to identify impossible travel, credential stuffing, brute force, password spraying, and compromised account behaviors across authentication…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect and prevent API enumeration attacks including BOLA and IDOR exploitation by monitoring sequential identifier access patterns and authorization failures.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect and prevent ARP spoofing attacks using ARPWatch, Dynamic ARP Inspection, Wireshark analysis, and custom monitoring scripts to protect against man-in-the-middle interception.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect cyber attacks targeting OT historian servers (OSIsoft PI, Ignition, Wonderware) that sit at the IT/OT boundary and serve as pivot points for lateral movement between enterprise and control networks, including data manipulation, unauthorized queries,…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

This skill covers detecting cyber attacks targeting Supervisory Control and Data Acquisition (SCADA) systems including man-in-the-middle attacks on industrial protocols, unauthorized command injection into PLCs, HMI compromise, historian data manipulation,…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect unusual API call patterns in AWS CloudTrail logs using boto3, statistical baselining, and behavioral analysis to identify credential compromise, privilege escalation, and unauthorized resource access.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detecting exposed AWS credentials in source code repositories, CI/CD pipelines, and configuration files using TruffleHog, git-secrets, and AWS-native detection mechanisms to prevent credential theft and unauthorized account access.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Automate AWS GuardDuty threat detection findings processing using EventBridge and Lambda to enable real-time incident response, automatic quarantine of compromised resources, and security notification workflows.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect AWS IAM privilege escalation paths using boto3 and Cloudsplaining policy analysis to identify overly permissive policies, dangerous permission combinations, and least-privilege violations

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel KQL hunting queries, and sign-in anomaly correlation to identify privilege escalation, token theft, and cross-tenant pivoting.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect and investigate Azure service principal abuse including privilege escalation, credential compromise, admin consent bypass, and unauthorized enumeration in Microsoft Entra ID environments.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Audit Azure Blob and ADLS storage accounts for public access exposure, weak or long-lived SAS tokens, missing encryption at rest, disabled HTTPS-only traffic, and outdated TLS versions using the azure-mgmt-storage Python SDK.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Performs statistical analysis of Zeek conn.log connection intervals to detect C2 beaconing patterns. Uses the ZAT library to load Zeek logs into Pandas DataFrames, calculates inter-arrival time standard deviation, and flags periodic connections with low…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration abuse, and Man-in-the-Middle interception. Uses Ubertooth One and nRF52840 sniffers for packet capture, the bleak Python library for GATT…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detect and test for OWASP API3:2023 Broken Object Property Level Authorization vulnerabilities including excessive data exposure and mass assignment attacks.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Business Email Compromise (BEC) is a sophisticated fraud scheme where attackers impersonate executives, vendors, or trusted partners to trick employees into transferring funds, sharing sensitive data,

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writing style, behavioral patterns, and contextual anomalies that evade traditional rule-based filters.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Detonate granular AWS, Azure, GCP, and Kubernetes attack techniques to validate detections with Stratus Red Team.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Map AWS and Azure attack paths and find exploitable misconfigurations with CloudFox.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Systematically remove malware, backdoors, and attacker persistence mechanisms from infected systems while ensuring complete eradication and preventing re-infection.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Exploit privileged pods, host mounts, runC CVEs, and exposed Docker sockets to break out of a container and reach the underlying host during authorized container-security assessments.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Evaluates and selects Threat Intelligence Platform (TIP) products based on organizational requirements including feed integration capability, STIX/TAXII support, workflow automation, analyst interface, and total cost of ownership. Use when conducting a TIP…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Executes authorized attack simulations against Active Directory environments to identify misconfigurations, weak credentials, dangerous privilege paths, and exploitable trust relationships that could lead to domain compromise. The tester uses BloodHound for…

Langue du texte source : anglais

mis à jour
Affichage de 40 skills collectés sur 1 033.