Skip to main content
spydir
Profil créateur GitHub

spydir

Vue par dépôt de 9 skills collectés dans 1 dépôts GitHub.

skills collectés
9
dépôts
1
mis à jour
27 août 2026
carte des dépôts

Où se trouvent les skills

Principaux dépôts par nombre de skills collectés, avec leur part dans ce catalogue créateur et leur couverture métier.

explorateur de dépôts

Dépôts et skills représentatifs

brute-force-logon
non classé

Investigate whether an account experienced a burst of failed logons, particularly one followed by an eventual success, consistent with password brute forcing or credential stuffing. Use when given authentication logs and asked to check for brute force,…

27 août 2026
concurrent-logons
non classé

Investigate whether a single account has overlapping active sessions on multiple different hosts at the same time, which is impossible for one person acting alone and suggests credential sharing or compromise. Use when given authentication/session logs and…

27 août 2026
impossible-travel
non classé

Investigate whether an account logged in from two locations too far apart to have been physically traveled in the elapsed time between logons (impossible travel). Use when given geolocated authentication logs and asked to check for account compromise,…

27 août 2026
indiscriminate-lateral-movement
non classé

Investigate whether an account is fanning out to an unusually large number of distinct hosts from a single source in a short time window (indiscriminate lateral movement). Use when given authentication log exports and asked to check for lateral movement,…

27 août 2026
non-badged-logon
non classé

Investigate whether an account performed an interactive (console) logon without a corresponding building badge-in, which can indicate account/credential sharing, a remote actor using stolen local credentials, or badge-system evasion. Use when given…

27 août 2026
share-enumeration
non classé

Investigate whether an account is probing hidden/administrative network shares (admin$, c$, ipc$) across one or many systems, consistent with post-compromise discovery or lateral-movement staging. Use when given share-access logs and asked to check for share…

27 août 2026
targeted-lateral-movement
non classé

Investigate whether an account moved through a directed chain of hosts (A to B, then B to C) rather than a broad fan-out, which is the signature of an operator pivoting toward a specific target. Use when given authentication logs and asked to trace a pivot…

27 août 2026
user-account-guessing
non classé

Investigate whether a source machine attempted authentication using an unusually large number of distinct accounts against one or more systems, consistent with username enumeration or password spraying. Use when given authentication logs and asked to check…

27 août 2026
Affichage de 8 skills collectés sur 9.
1 dépôts affichés sur 1
Tous les dépôts sont affichés