Skip to main content

Skills dans ce dépôt

yanacuti1121/Yana-AI - Page 9

SkillsMP a collecté 1 566 skills depuis yanacuti1121/Yana-AI. Ouvrez un skill pour examiner sa source et ses détails.

yanacuti1121/Yana-AI

Affichage de 40 skills collectés sur 1 566.

métier
Analystes en sécurité de l'information
description

Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept, analyze, and modify network traffic for testing encryption enforcement, certificate validation, and detection capabilities.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Performs memory forensics analysis using Volatility 3 to extract evidence of malware execution, process injection, network connections, and credential theft from RAM dumps captured during incident response. Covers memory acquisition, process analysis, DLL…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network communication, authentication, cryptography, and platform-specific…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Conducts comprehensive network penetration tests against authorized target environments by performing host discovery, port scanning, service enumeration, vulnerability identification, and controlled exploitation to assess the security posture of network…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen Kerberos tickets (TGT or TGS) to authenticate to services without knowing the user's password. By extracting Kerberos tickets fro

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Design and execute a social engineering penetration test including phishing, vishing, smishing, and physical pretexting campaigns to measure human security resilience and identify training gaps.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Plan and execute authorized vishing (voice phishing) pretext calls to assess employee susceptibility to social engineering and evaluate security awareness controls.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Spearphishing simulation is a targeted social engineering attack vector used by red teams to gain initial access. Unlike broad phishing campaigns, spearphishing uses OSINT-derived intelligence to craf

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Conducts authorized wireless network penetration tests to assess the security of WiFi infrastructure by testing for weak encryption protocols, captive portal bypasses, evil twin attacks, WPA2/WPA3 handshake capture, rogue access point detection, and…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative f

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configure AWS Verified Access to provide VPN-less zero trust network access to internal applications using identity and device posture verification with Cedar policy language.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

A Certificate Authority (CA) is the trust anchor in a PKI hierarchy, responsible for issuing, signing, and revoking digital certificates. This skill covers building a two-tier CA hierarchy (Root CA +

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configures host-based intrusion detection systems (HIDS) to monitor endpoint file integrity, system calls, and configuration changes for security violations. Use when deploying OSSEC, Wazuh, or AIDE for endpoint monitoring, building file integrity monitoring…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Hardware Security Modules (HSMs) are tamper-resistant physical devices that safeguard cryptographic keys and perform cryptographic operations in a hardened environment. Keys stored in an HSM never lea

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request identity verification for Compute Engine, App Engine, Cloud Run, and GKE services using access levels, context-aware policies, and programmatic access with service accounts.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Harden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding, LDAP si

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configure microsegmentation policies to enforce least-privilege workload-to-workload access using tools like VMware NSX, Illumio, and Calico, preventing lateral movement in zero trust architectures.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploy Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. This skill covers Duo integration methods, adaptive authentication policies, device trust

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Designs and implements VLAN-based network segmentation on managed switches to isolate network zones, enforce access control between segments, and reduce the attack surface by limiting lateral movement paths in enterprise network environments.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic shaping to enforce network segmentation, control traffic flow, and protect internal network zones in enterprise and small-to-medium business environments.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Installs, configures, and tunes Snort 3 intrusion detection system to monitor network traffic for malicious activity using custom and community rulesets, preprocessors, and alert output plugins on authorized network segments.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Deploys and configures Suricata IDS/IPS with Emerging Threats rulesets, EVE JSON logging, and custom rules for real-time network traffic inspection, threat detection, and integration with SIEM platforms for centralized security monitoring.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

TLS 1.3 (RFC 8446) is the latest version of the Transport Layer Security protocol, providing significant improvements over TLS 1.2 in both security and performance. It reduces handshake latency to 1-R

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configures Microsoft Defender for Endpoint (MDE) advanced protection settings including attack surface reduction rules, controlled folder access, network protection, and exploit protection. Use when hardening Windows endpoints beyond default Defender…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configures Windows Event Logging with advanced audit policies to generate high-fidelity security events for threat detection and forensic investigation. Use when enabling audit policies for logon events, process creation, privilege use, and object access to…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Configuring Zscaler Private Access (ZPA) to replace traditional VPN with zero trust network access by deploying App Connectors, defining application segments, configuring access policies based on user identity and device posture, and integrating with IdPs.

Langue du texte source : anglais

mis à jour
métier
Développeurs de logiciels
description

Real-time data streaming to/from isolated containers for AI agent sandboxing. Docker ephemeral exec patterns, stdin/stdout pipe attachment, nsjail namespace jail setup, streaming output with live tail, container health monitoring, and clean teardown. Sources:…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed security breach. Implements short-term and long-term containment using network segmentation, endpoint isolation, credential revocation, and…

Langue du texte source : anglais

mis à jour
métier
Analystes en études de marché et spécialistes en marketing
description

One brief → platform-native content for TikTok, Xiaohongshu (小红书), X/Twitter thread, LinkedIn — simultaneously. Each platform gets a specialist with native format, tone, and hooks. No generic copy-paste. Inspired by msitarzewski/agency-agents marketing…

Langue du texte source : vietnamien

mis à jour
métier
Autres occupations informatiques
description

Learning system v1 — học từ session patterns, tạo reusable skills/commands từ repeated workflows. Phiên bản cũ hơn continuous-learning-v2.

Langue du texte source : vietnamien

mis à jour
métier
Autres occupations informatiques
description

Instinct-based learning system that observes sessions via hooks, creates atomic instincts with confidence scoring, and evolves them into skills/commands/agents. v2.1 adds project-scoped instincts to prevent cross-project contamination.

Langue du texte source : anglais

mis à jour
métier
Analystes en assurance qualité des logiciels et testeurs
description

Design and implement consumer-driven contract tests — Pact consumer interactions, provider verification, Pact Broker publishing, and CI/CD integration. Use when asked to "contract testing", "Pact", "consumer-driven contracts", "provider verification", "Pact…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks, and offense management to detect multi-stage attacks across network, endpoint, and application log sources. Use when SOC analysts need to…

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Correlates disparate security incidents, IOCs, and adversary behaviors across time and organizations to identify unified threat campaigns, attribute them to common threat actors, and extract shared indicators for improved detection. Use when multiple…

Langue du texte source : anglais

mis à jour
métier
Spécialistes en gestion de projets
description

Convene 6 intellectual personas across multiple LLM providers for hard decisions. Each persona runs on a different provider for genuinely different reasoning — not costume changes on one model. Inspired by council-of-high-intelligence (CC0).

Langue du texte source : anglais

mis à jour
métier
Administrateurs de réseaux et de systèmes informatiques
description

Crossplane universal control plane for cloud resource management via Kubernetes. Composite Resources (XR), Compositions, provider configuration, and managing AWS/GCP/Azure resources with kubectl. Sources: crossplane/crossplane (Apache-2.0).

Langue du texte source : anglais

mis à jour
métier
Développeurs de logiciels
description

PKI, RSA, AES, and X.509 certificate patterns using node-forge. RSA key generation, AES-256-GCM encryption/decryption, self-signed certificate creation, PEM/DER encoding, and local config file encryption. Sources: digitalbazaar/forge.

Langue du texte source : anglais

mis à jour
Affichage de 40 skills collectés sur 1 566.