Skip to main content
Manusで任意のスキルを実行
ワンクリックで
GitHub リポジトリ

dfir-skills

dfir-skills には Fuzzdkk から収集した 12 個の skills があり、リポジトリ単位の職業カバレッジとサイト内 skill 詳細ページを表示します。

収集済み skills
12
Stars
3
更新
2026-04-10
Forks
0
職業カバレッジ
1 件の職業カテゴリ · 100% 分類済み
リポジトリエクスプローラー

このリポジトリの skills

alert
情報セキュリティアナリスト

SOC alert triage and investigation guidance. Paste an alert description and observables to get structured investigation steps, hypothesis generation, and recommended queries for your SIEM/EDR.

2026-04-10
dfir-report
情報セキュリティアナリスト

Generate a comprehensive DFIR incident report by consolidating findings from all analysis skills (memory, disk, network, log, malware, IOCs, timeline). Produces an executive and technical report.

2026-04-10
disk-forensics
情報セキュリティアナリスト

Analyze disk images and filesystem artifacts using Sleuthkit (mmls, fls, icat), binwalk, strings, and bulk_extractor. Recover deleted files, build timelines, and examine partition structures.

2026-04-10
evidence-acquisition
情報セキュリティアナリスト

Acquire and preserve digital evidence following forensic best practices. Disk imaging, memory capture, log collection, and chain of custody documentation. Inspired by SIFT workstation methodology.

2026-04-10
ioc-extract
情報セキュリティアナリスト

Extract, deduplicate, and classify Indicators of Compromise (IOCs) from any evidence source — files, logs, memory dumps, PCAPs, reports, or pasted text. Outputs structured IOC lists in multiple formats.

2026-04-10
log-analysis
情報セキュリティアナリスト

Analyze system and security logs (auth.log, syslog, Windows EVTX, Apache/Nginx, JSON logs). Detect brute force, lateral movement, privilege escalation, and anomalous activity.

2026-04-10
malware-triage
情報セキュリティアナリスト

Perform static analysis and triage of suspicious files. Extract hashes, strings, metadata, PE headers, ELF info, embedded URLs, and indicators using strings, file, exiftool, readelf, objdump, radare2, and binwalk.

2026-04-10
memory-forensics
情報セキュリティアナリスト

Analyze memory dumps using Volatility 3 and strings. Enumerate processes, network connections, injected code, and suspicious artifacts from RAM captures.

2026-04-10
network-forensics
情報セキュリティアナリスト

Analyze PCAP/PCAPNG network captures using tshark. Detect C2 beacons, data exfiltration, lateral movement, DNS tunneling, and suspicious traffic patterns.

2026-04-10
reverse-engineering
情報セキュリティアナリスト

Reverse engineer binaries using radare2 (r2), rabin2, objdump, readelf, and strings. Analyze PE/ELF executables, shellcode, scripts, and documents. Covers disassembly, control flow, imports, crypto detection, and anti-analysis techniques.

2026-04-10
timeline
情報セキュリティアナリスト

Build a unified forensic timeline from multiple evidence sources — filesystem MACBtimes, logs, memory artifacts, and network events. Produces a chronological attack narrative.

2026-04-10
tools
情報セキュリティアナリスト

List all available DFIR/SOC skills and installed forensic tools with descriptions and use cases. Quick reference for the analyst.

2026-04-10